Which of the following statements does not represent the logical management of a firewall?
Answer Options
All physical access to the firewall should be tightly controlled.
All firewall policies should be documented.
Firewall logs should be regularly monitored.
Firewalls should allow traffic by default and deny traffic explicitly.
Correct Answer: A
Explanation
All physical access to a firewall should be controlled tightly so that it is not tampered with, which could allow external threats to enter the network. This control should include vendors and approved administrators. Physical access to the firewall is a security principle and therefore not a consideration for the management of a firewall. All firewall policies should be documented as a part of the firewall management process. Firewall logs should be regularly monitored for suspicious activity as part of the firewall management process. Firewalls can allow or deny traffic by default; this is a consideration when managing a firewall.