Get ready for the Watchguard Network Security Test. Study with flashcards and multiple choice questions, each with hints and explanations. Prepare for success!

Practice this question and more.


If you disable the Outgoing policy, which policies must you add to allow trusted users to connect to commonly used websites? (Select three.)

  1. HTTP port 80

  2. NAT policy

  3. FTP port 21

  4. HTTPS port 443

The correct answer is: FTP port 21

Disabling the Outgoing policy on a network firewall can restrict all outbound traffic, including access to websites. In order to allow trusted users to connect to commonly used websites after disabling this policy, you need to create specific rules that permit the necessary protocols. In this context, commonly used websites typically rely on HTTP and HTTPS protocols for communication. Adding a policy for HTTP (port 80) directly allows users to access websites using standard web traffic. Similarly, allowing HTTPS (port 443) is crucial as it secures the users' connection to websites, enabling encrypted transactions that are essential for most modern web interactions. The inclusion of FTP (port 21) might not be relevant when considering general website access, as it pertains more to file transfer rather than standard web browsing. A Network Address Translation (NAT) policy may be necessary for translating private IP addresses to publicly routable addresses, but it doesn't directly permit web access. Therefore, enabling HTTP and HTTPS ports (along with NAT as needed) would allow users to visit websites effectively while adhering to security practices.