Question 1
When implementing an Internet Friendly Gateway for secure external access, what is the primary purpose of placing the gateway server in a Demilitarized Zone (DMZ)?
Answer and explanation
Correct answer: B
A DMZ is a perimeter network that protects an organization's internal local-area network (LAN) from untrusted traffic. By placing the internet-facing gateway in the DMZ, it is separated from the core internal network by a second firewall. If the gateway server were to be compromised, the attacker would still need to breach the second, internal firewall to gain access to critical servers like Session Manager and Communication Manager. This layered security approach is a fundamental network security best practice.