SnowPro Core (COF-C03) · Free practice question 13 of 15
Network policies for IP allowlisting
A security audit requires that Snowflake be reachable only from your corporate VPN's IP range. Which Snowflake feature enforces this restriction?
- A.SECURITY INTEGRATION
- B.NETWORK POLICY
- C.ROW ACCESS POLICY
- D.MASKING POLICY
Show answer and explanation
Correct answer: B. NETWORK POLICY
Why: NETWORK POLICY objects define allowed and blocked IP ranges and can be attached at the account or user level. SECURITY INTEGRATION wires up federated SSO, OAuth, or SCIM. ROW ACCESS POLICY and MASKING POLICY govern data visibility, not network access.
More free SnowPro Core (COF-C03) questions
- Micro-partition immutability
- SECURITYADMIN for user and role management
- Multi-cluster warehouses for concurrency
- Snowflake edition for extended Time Travel
- Recovering a truncated table with Time Travel
- Types of internal stages
- File sizing for COPY INTO
- Query result cache
- Reader accounts for non-Snowflake consumers
- LATERAL FLATTEN on VARIANT arrays
- Streams and tasks for change data capture
- Clustering keys for partition pruning
- Zero-copy cloning for QA environments
- Snowpipe auto-ingest for low latency