CertNova
Menu
← Back to PBQ types

Network Diagram PBQs: Implementing and Operating Cisco Security Core Technologies (SCOR 350-701)

easy

Question 1 of 3

You are a network security engineer deploying a Cisco zone-based firewall for a small enterprise branch office. The network is divided into three security zones: the Outside zone connects to the untrusted internet and hosts the edge router; the Inside zone contains trusted employee endpoints and internal resources such as file servers; and the DMZ hosts services that must be reachable from both the internet and the internal network. An edge router and a file server are already in place. Assign the remaining devices to the correct security zone based on Cisco zone-based firewall best practices.

Network Topology

Outside Zone

Untrusted internet-facing perimeter — public services and edge devices

Edge Router🔒

DMZ Zone

Semi-trusted services accessible from both internet and internal network

Drop devices here

Inside Zone

Trusted employee endpoints, internal servers, and file shares

File Server🔒

Available Devices

Drag devices into the correct network zone above

Public Web Server
Email Gateway
Employee Workstation

Progress

0 of 3 devices placed

Drag devices into the correct network zones

0 of 3 marked complete