189k views
5 votes
Which of the following would be best placed in the DMZ of an IT environment?

a) Database server
b) Internal DNS server
c) Web server
d) Email server

1 Answer

2 votes

Final answer:

A web server is commonly placed in the DMZ of an IT environment because it needs to be accessible from the internet but should be separated from the internal network to mitigate security risks. Other servers like databases, internal DNS, or email servers generally contain sensitive data and are not suited for placement in the DMZ.

Step-by-step explanation:

Among the choices provided, the c) Web server would be best placed in the Demilitarized Zone (DMZ) of an IT environment. The DMZ is a physical or logical subnet that contains and exposes an organization's external-facing services to an untrusted network, typically the internet. The purpose is to add an additional layer of security to the organization's internal LAN by separating it from external traffic.

A web server is designed to process requests via HTTP from clients, which are typically browsers, and to deliver web content, like HTML pages, to the user's device. It's a common practice to place web servers in the DMZ because they need to be accessible from the internet, but should also be isolated to reduce security risks. In contrast, a database server, internal DNS server, or email server often contains sensitive information that should be protected behind additional security layers and not exposed directly to the outside world.

User Redturbo
by
8.7k points