Final answer:
DMZs allow users from inside and outside an organization to access certain services. It is true that internal users can access DMZ resources and that DMZs are designed for external users to access specific services. However, DMZs should not allow all internet traffic, and they do not need to have identical security configurations.
Step-by-step explanation:
The Demilitarized Zone (DMZ) is an important concept in network security used to add an additional layer of protection. A DMZ is a physical or logical sub-network that contains and exposes an organization's external-facing services to an untrusted network, usually the internet. Understanding the statements related to DMZs will clarify their function and design:
However, statement a is incorrect. DMZs should not permit all traffic from the internet; rather, only specific traffic necessary to access the services should be allowed. Unrestricted access could lead to security breaches.