Troubleshooting Application Access to Internal Resources

Access Control & Security Policies
Answer Correct answer: A — Modify the allow/deny list for those specific resources to grant the necessary permissions for the application to access the internal resource.

When a newly developed application was tested, a specific internal resource was unable to be accessed. Which of the following should be done to ensure the application works correctly?

  1. Modify the allow/deny list for those specific resources. Correct Answer
  2. Follow the secure coding practices for the internal resource.
  3. Configure the application in a sandbox environment.
  4. Utilize standard network protocols.

Community Votes

A
100%

100% of anonymous learners picked answer A. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

The question tests the ability to distinguish between application logic errors and network-level access restrictions, with the trap being confusion over protocols or coding practices.

When an application fails to access a specific internal resource during testing, the issue typically stems from restrictive access policies. This page establishes that modifying allow/deny lists is the correct remediation step.

Many learners choose D (Utilize standard network protocols) because they assume connectivity issues are always protocol-related, ignoring the explicit mention of 'specific' resources which implies access control.

Community Discussion (7 comments)

fryderyk 👍 5
" was unable to be accessed" Does that imply the application was denied access? There could be a ton of other reasons the application could not access the internal resource. Terrible question.
spearous 👍 1 Selected: D
chose D. i think this question is not good. even if we choose, how do we know it is firewall issues? it could be using a wrong port, or wrong protocol, so very hard to say for sure. I would start with D to eliminate every possibilities. However, if you think from security+ point of view, it could be A.
shady23 👍 1 Selected: A
A. Modify the allow/deny list for those specific resources.
7308365 👍 1
A. Modify the allow/deny list for those specific resources.
Benrosan 👍 3 Selected: A
Terrible phrasing once again. I believe they're saying that the application is unable to access internal resources.
dfc6822 👍 2
A. Modify the allow/deny list for those specific resources. If a newly developed application is unable to access a specific internal resource during testing, it may be necessary to modify the allow/deny list to ensure that the application has the necessary permissions to access that resource. The allow/deny list typically controls which resources or entities are allowed or denied access by the application. Adjusting the allow/deny list can help resolve access issues and ensure that the application works correctly.
Hs1208 👍 2 Selected: A
Modify the allow/deny list for those specific resources (Option A): If the application is unable to access a specific internal resource, it may be due to access control restrictions

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

The scenario describes a situation where a newly developed application cannot reach a specific internal resource. In the context of CompTIA Security+ (SY0-601), this points directly to an access control issue rather than a development or transport layer problem. The most effective way to grant necessary access while maintaining security is to update the allow/deny list (such as an ACL, firewall rule, or application-specific permission set) to explicitly permit the application to communicate with that resource.

Why the Other Options Are Wrong

Option B (Secure coding) addresses vulnerabilities within the code itself, not external access permissions. Option C (Sandbox environment) is used for isolation and testing safety, but it does not solve the problem of accessing a production internal resource; in fact, sandboxes often restrict such access by design. Option D (Standard network protocols) is irrelevant because the issue is likely not about the protocol type (e.g., HTTP vs FTP) but rather whether the application is authorized to use the network path to that specific resource.

Community Comment Notes

The community widely agrees on Option A, though many express frustration with the question's phrasing. As user fryderyk noted, "was unable to be accessed" could imply various reasons, but the consensus leans towards access denial. User dfc6822 correctly reasoned that modifying the allow/deny list is necessary to ensure the application has the required permissions. Another commenter, spearous, initially chose D but conceded that from a Security+ perspective, access control (A) is the intended answer.

Exam Strategy

Focus on keywords like 'specific resource' and 'unable to be accessed' to identify access control problems. Always look for configuration changes (like lists or rules) before assuming fundamental architectural or coding flaws.

Frequently Asked Questions

Why isn't using standard network protocols the answer?

The issue is access to a 'specific' resource, implying authorization failure, not a transport layer compatibility issue.

Does this apply to firewalls only?

No, 'allow/deny list' is a general term for access controls including ACLs, firewall rules, and application-level permissions.

Related Analysis

← Back to SY0-601 Study Guide