How to best block unknown programs from executing?

Which of the following would be the best way to block unknown programs from executing?

  1. Access control list
  2. Application allow list Source Reference Answer
  3. Host-based firewall
  4. DLP solution

Community Votes

B
100%

100% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

The exam tests your ability to distinguish between execution-prevention controls and perimeter or data controls — application allow listing is the only option that proactively blocks unknown executables by default.

An application allow list (whitelisting) is the most effective control for blocking unknown or unauthorized programs from executing on a host. Community consensus on SY0-701 exam dumps confirms this as the definitive answer for preventing execution of untrusted software.

Many candidates choose 'Access control list' (A) because ACLs sound restrictive, but ACLs govern user or network access to resources, not program execution — they do not prevent unknown binaries from running.

Community Discussion (3 comments)

123456789User 👍 7 Selected: B
Application allow list only allows trusted applications or files to run
4320d25 👍 4 Selected: B
An application allow list (also called whitelisting) restricts a system to only allow specific, pre-approved programs to run. Any program not on the allow list will be blocked from executing, making it highly effective at preventing unknown or unauthorized software from running on a system.
Zach123654 👍 3 Selected: B
GPT!!!

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

Application allow listing (whitelisting) enforces a default-deny posture for program execution: only pre-approved, known-good applications are permitted to run. Any unknown, newly downloaded, or unauthorized executable is automatically blocked, which directly answers the question. This is a core endpoint hardening technique referenced in CompTIA Security+ SY0-701 objectives.

Why the Other Options Are Wrong

Access control lists (A) control access to files, folders, or network resources based on identity — they do not inspect or block executable code from running. A host-based firewall (C) filters network traffic by port, protocol, or application signature, but cannot prevent a locally launched unknown program from executing. A DLP solution (D) monitors and controls data in motion, at rest, or in use to prevent data exfiltration — it is not designed to block program execution.

Community Comment Notes

Top-voted comments unanimously confirm B as correct, with comment [2] explicitly noting that allow listing restricts systems to only pre-approved programs, making it highly effective against unknown software. Comment [1] reinforces the definition in concise form, and comment [3] aligns with GPT-style reasoning that allow listing is the execution-focused control. No dissenting opinions appear in the vote distribution (100% for B).

Official Reference

Exam Strategy

When a question asks how to block unknown or unauthorized programs from executing, immediately look for 'application allow list' or 'whitelisting' in the options. Eliminate ACLs, firewalls, and DLP quickly — they govern access, traffic, or data, not program execution.

Related Analysis

Practice All SY0-701 Questions

Access 100 questions with complete answers and detailed explanations.

View Full SY0-701 Practice Test →

← Back to SY0-701 Study Guide