2 Introduction of Firewall in Computer Network Flashcards

1
Q

What is a firewall?

A
  • HW or SW network security device
  • barrier between secured internal network and outside network (eg - Internet)
  • monitors all incoming and outgoing traffic
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are 3 firewall security rules?

A
  • Accept - allow the traffic
  • Reject - block the traffic but reply with an “unreachable error”
  • Drop - block the traffic with no reply
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How firewall works? (traffic and rules)

A
  • network traffic has to be matched with defined rule

- when is matched –> associated action is applied to traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Allowed or not? (outgoing and incoming traffic)

A

outgoing - allowed in most cases (good to have some rules to prevent unwanted communication)
incoming - tougher rules (this traffic is usually TCP, UDP, ICMP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does firewall has to have set?

A
  • default policy (A, J, D)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How do packet filtering firewalls work?

Where are captured the rules?

A
  • they control network access based on source add, destination add, port and protocols (monitoring of outgoing and incoming packets)
  • rules are table (what is deny or allow)
  • the packets are treat in isolation (no as a part of stream)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How do Stateful Inspection Firewalls work?

A
  • keep track of connection state of the packet

- decision are based on defined rules and on the packet´s history in the state table

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How do Application Layer Firewall work?

A
  • ca inspect and filter packets on any OSI layer

- ability to block specific content

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are and what do hosts that run proxy servers?

A
  • application layer firewalls
  • proxy firewall prevents direct connection between either side of the firewall - each packet has to pass through the proxy (allow or block –> predefined rules)
  • can be used as NAT
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Next Gen Firewalls

A
  • trying to stop modern security breaches (malware attacks, …)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Host-based Firewalls

  • where installed and what control
  • SW or HW
  • why needed
A
  • installed on each network node (controls incoming and outgoing packets)
  • SW - part of OS
  • needed ‘cause network firewalls cannot provide protection inside a trusted network
  • protect from attacks and unauthorized access
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Network-based Firewalls

  • what protect
  • SW or HW
A
  • network level
  • filter all incoming and outgoing traffic across the network
  • protects internal network
  • 2 or more NIC
  • dedicated system with proprietary SW installed
How well did you know this?
1
Not at all
2
3
4
5
Perfectly