Question 1 of 30
In a multi-tenant data center environment, a network engineer is tasked with implementing security contracts to ensure that only authorized tenants can communicate with each other while maintaining isolation. The engineer decides to create a contract that allows HTTP and HTTPS traffic between Tenant A and Tenant B. The contract specifies that traffic must be encrypted and authenticated. Given the requirements, which of the following configurations would best ensure compliance with security best practices while allowing the necessary communication?
Create a contract that permits TCP ports 80 and 443, and apply an Access Control List (ACL) that restricts traffic to only those ports, ensuring that all traffic is encrypted using TLS.
Allow all traffic between Tenant A and Tenant B without any restrictions, relying solely on the underlying network security measures.
Implement a contract that allows only ICMP traffic between the two tenants, as it is less resource-intensive and does not require encryption.
Configure a contract that permits traffic on TCP ports 80 and 443 but does not enforce encryption, assuming that the application layer will handle security.

Preparing for CISCO 300-620 Implementing Cisco Application Centric Infrastructure (DCACI)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free