Which Traffic Flow Should Be Isolated Inside an Internal Firewall?

A technician is working on a solution to isolate traffic between specific types of devices, servers, and users on the internal firewall. Which of the following traffic flows should be isolated?

  1. East-west Source Reference Answer
  2. Access/edge
  3. Core/distribution
  4. North-south

Community Votes

A
77%
D
23%

77% of anonymous learners picked answer A. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

The exam tests whether you understand that east-west traffic is internal between systems, and the common trap is choosing north-south because it involves servers, but those servers are within the same internal trust zone.

East-west traffic must be isolated when segmenting internal network traffic between devices, servers, and users. Most candidates correctly identify A (east-west), since north-south traffic refers to flows that enter or leave the network perimeter.

D. North-south – this is the popular wrong answer because candidates associate server communication with inbound/outbound traffic; however, the question specifies an internal firewall and traffic between internal roles, which is east-west.

Community Discussion (7 comments)

a87d6a4 👍 3 Selected: A
This is the correct answer because east-west traffic refers to the movement of data packets between devices or servers within the same data center or network, such as between servers or between virtual machines. Isolating east-west traffic helps to prevent unauthorized access and improve security within the internal network by ensuring that only specific devices or servers can communicate with each other. B. Access/edge refers to the flow of data between end-user devices and the network, which is less relevant to isolating traffic between internal devices or servers. C. Core/distribution refers to the layers of a network where traffic flows are aggregated and managed. While important for routing traffic, it doesn't focus on isolating device/server traffic. D. North-south refers to traffic that flows between internal networks and external entities (e.g., the internet), which is less relevant to isolating internal traffic.
interestingtimes 👍 3 Selected: A
If it's internal it's east west guys.
interestingtimes 👍 3 Selected: A
It's east west because it's the internal network. North south is only when it deals with external networks and servers.
ronnieash88 👍 1 Selected: A
I’d have. To say East-West it is speaking of data of any sort or in coming or outbound traffic. Yet it refers to an internal firewall where the goal can be to thwart or mitigate lateral attacks if access is gained on the network.
Dadadagreat 👍 1
D north south
jcre 👍 1
Server to client communication is considered North-South traffic
723b817 👍 3 Selected: D
I believe it's D because servers usually exist one level up from users.

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

East-west traffic refers to data moving between devices, servers, and users within the same data center or internal network — exactly what the question describes. Isolating this lateral traffic with an internal firewall prevents an attacker who compromises one internal asset from freely moving to others. This is a core zero-trust concept: the internal firewall is used to segment east-west communication, not just filter external boundary traffic.

Why the Other Options Are Wrong

North-south traffic (D) is ingress/egress traffic between the internal network and external networks, such as data entering from or leaving to the internet — not the internal flows described. Access/edge (B) and core/distribution (C) refer to hierarchical network layers (Cisco-style architecture), not to traffic-flow directions. Therefore, A is the only option that matches the scenario of isolating internal east-west traffic.

Community Comment Notes

Community commenters overwhelmingly supported A, with one simply stating, "If it's internal it's east west guys" and another explaining that north-south is only for external networks and servers. A few voters chose D, with one arguing that "servers usually exist one level up from users," but this confuses logical hierarchy with traffic-flow terminology. Another commenter noted that server-to-client communication is north-south, but that applies to traffic crossing the datacenter boundary, not to segmentation among internal systems.

Official Reference

Exam Strategy

Memorize the two traffic-flow terms: east-west = internal/lateral traffic between servers, devices, and internal users; north-south = traffic entering or leaving the network/data center. When the question stresses "internal firewall" or "inside the network," always choose east-west — even if servers or clients are mentioned.

Related Analysis

← Back to N10-008 Study Guide