Courseiva
hardMultiple ChoiceObjective-mapped

220-1102 Practice Question: A company's security policy requires that all…

A company's security policy requires that all workstations use a host-based firewall to block incoming connections except for specific allowed applications. A technician needs to configure this on a Windows 10 PC. Which tool should they use?

⚠ Common exam trap

CompTIA often tests the distinction between basic firewall settings (accessible via Control Panel) and the Advanced Security console, where candidates mistakenly choose the simpler interface or confuse firewall management with antivirus or group policy tools.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Windows Defender Firewall with Advanced Security

The Windows Defender Firewall with Advanced Security (wf.msc) is the correct tool because it provides granular control over inbound rules, allowing the technician to block all incoming connections by default and then create explicit allow rules for specific applications. This meets the security policy requirement for a host-based firewall that blocks incoming traffic except for permitted applications.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Windows Defender Antivirus settings

    Why it's wrong here

    Windows Defender Antivirus is a host-based anti-malware solution primarily focused on detecting, preventing, and removing viruses, spyware, ransomware, and other malicious software from the system. Its settings manage real-time protection, cloud-delivered protection, and exclusions for files and processes. However, it does not provide any functionality for configuring network firewall rules, such as blocking specific ports, protocols, or applications from communicating over the network. Its scope is internal system security against malicious code, not network traffic filtering.

  • Windows Defender Firewall with Advanced Security

    Why this is correct

    This Microsoft Management Console (MMC) snap-in, accessible via wf.msc, is the definitive tool for granularly configuring the host-based firewall on a Windows workstation. It allows technicians to create highly specific inbound and outbound rules based on applications, service ports, protocols (TCP/UDP), IP addresses, and even user or computer accounts. This advanced interface is essential for implementing detailed security policies that require precise control over network traffic flow, such as allowing specific applications while blocking others.

  • Group Policy Editor

    Why it's wrong here

    While Group Policy, particularly the Local Group Policy Editor (gpedit.msc), can be used to configure and enforce firewall settings on a workstation, it is primarily a policy management tool. A technician tasked with creating and implementing specific, complex inbound and outbound rules for applications or services would directly use the Windows Defender Firewall with Advanced Security console. Group Policy is more suited for deploying a standardized set of firewall rules across multiple machines or enforcing a baseline, rather than the interactive, granular rule creation implied by the policy requirement.

  • Network and Sharing Center

    Why it's wrong here

    The Network and Sharing Center provides a high-level overview of network connectivity, allows users to change adapter settings, and configure basic network profiles (Public, Private). While it displays the current status of the Windows Firewall and allows toggling it on or off for different network profiles, it offers no interface for creating or modifying specific inbound or outbound firewall rules. It is designed for general network management and status, not for the detailed, application-specific traffic control required by a comprehensive security policy.

Go deeper

Related to this question

About these practice questions

This 220-1202 question is part of Courseiva's 495-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 220-1202 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1202 exam.