Network Diagram PBQs: CompTIA Security+ (SY0-701)
mediumQuestion 1 of 3
Your organization is redesigning its network to improve its security posture after a recent audit. The network has three zones: a DMZ for public-facing services, an Internal network for employee workstations and file servers, and a Management network for administrative access. Several network devices need to be placed into the correct zone. The DNS server that handles public record lookups should be in the DMZ. The IDS/IPS should monitor DMZ traffic. The RADIUS server must be on the Management network for centralized authentication. The WAF should protect web services in the DMZ. The file server belongs on the Internal network.
Network Topology
DMZ
Public-facing services — web, DNS, email relay
Internal Network
Employee workstations, file shares, printers
Management Network
Admin access, authentication, monitoring
Drop devices here
Available Devices
Drag devices into the correct network zone above
Progress
0 of 5 devices placedDrag devices into the correct network zones
0 of 3 marked complete

