3951
A cloud security group reviewed during an authorized home-lab assessment allows inbound TCP 5432 only from 10.50.21.0/24. What happens when 10.50.20.60 connects to that port?
View answer choices
- Allowed because security groups inspect outbound traffic only.
- Denied because no inbound rule matches the source CIDR.
- Allowed because all RFC 1918 sources are trusted.
- Denied only after the server sends a response.