hardMultiple ChoiceObjective-mapped
220-1102 Practice Question: A company's security policy requires that all…
A company's security policy requires that all workstations use a host-based firewall to block incoming connections except for specific allowed applications. A technician needs to configure this on a Windows 10 PC. Which tool should they use?
⚠ Common exam trap
CompTIA often tests the distinction between basic firewall settings (accessible via Control Panel) and the Advanced Security console, where candidates mistakenly choose the simpler interface or confuse firewall management with antivirus or group policy tools.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Windows Defender Firewall with Advanced Security
The Windows Defender Firewall with Advanced Security (wf.msc) is the correct tool because it provides granular control over inbound rules, allowing the technician to block all incoming connections by default and then create explicit allow rules for specific applications. This meets the security policy requirement for a host-based firewall that blocks incoming traffic except for permitted applications.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Windows Defender Antivirus settings
Why it's wrong here
Windows Defender Antivirus is a host-based anti-malware solution primarily focused on detecting, preventing, and removing viruses, spyware, ransomware, and other malicious software from the system. Its settings manage real-time protection, cloud-delivered protection, and exclusions for files and processes. However, it does not provide any functionality for configuring network firewall rules, such as blocking specific ports, protocols, or applications from communicating over the network. Its scope is internal system security against malicious code, not network traffic filtering.
- ✓
Windows Defender Firewall with Advanced Security
Why this is correct
This Microsoft Management Console (MMC) snap-in, accessible via wf.msc, is the definitive tool for granularly configuring the host-based firewall on a Windows workstation. It allows technicians to create highly specific inbound and outbound rules based on applications, service ports, protocols (TCP/UDP), IP addresses, and even user or computer accounts. This advanced interface is essential for implementing detailed security policies that require precise control over network traffic flow, such as allowing specific applications while blocking others.
- ✗
Group Policy Editor
Why it's wrong here
While Group Policy, particularly the Local Group Policy Editor (gpedit.msc), can be used to configure and enforce firewall settings on a workstation, it is primarily a policy management tool. A technician tasked with creating and implementing specific, complex inbound and outbound rules for applications or services would directly use the Windows Defender Firewall with Advanced Security console. Group Policy is more suited for deploying a standardized set of firewall rules across multiple machines or enforcing a baseline, rather than the interactive, granular rule creation implied by the policy requirement.
- ✗
Network and Sharing Center
Why it's wrong here
The Network and Sharing Center provides a high-level overview of network connectivity, allows users to change adapter settings, and configure basic network profiles (Public, Private). While it displays the current status of the Windows Firewall and allows toggling it on or off for different network profiles, it offers no interface for creating or modifying specific inbound or outbound firewall rules. It is designed for general network management and status, not for the detailed, application-specific traffic control required by a comprehensive security policy.
Go deeper
Related to this question
Learn chapter
Windows Editions and Features
Key term
Windows Defender
Windows Defender is a built-in antimalware and security tool in Microsoft Windows that protects your computer from viruses, spyware, and other malicious software without needing to install anything extra.
Key term
Firewall
A firewall is a network security system that monitors and controls incoming and outgoing traffic based on predetermined security rules to protect trusted internal networks from untrusted external networks.
About these practice questions
This 220-1202 question is part of Courseiva's 495-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 220-1202 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1202 exam.