Chapter 9 (Firewalls) Flashcards
is a firewall a single computer sys or a set of two ore more sys working together
can be both
what are the 3 main design goals when making a firewall
all traffic inside to outside and vise versa must pass through the firewall
only authorized traffic allowed to pass
firewall itself is immune to penetration
what is a firewall access policy
lists type of traffic authorized to pass through the firewall
what are 4 characteristics that a firewall access policy could use to filter traffic
what are some limits on firewall capabilities
cant protect against attacks which bypass firewall
cannot fully protect against internal threats
portable device can be infected outside of network and then brought in
what does a packet filtering firewall applies its rules to
each incoming and outgoing ip packet
what are the 2 default policies of a packet filtering firewall
discard: prohibit unless expressly permitted
forward: permit unless expressly prohibiited
what are the 2 main advantages of packet filtering
simple
transparent to users and are very fast
what is 1 main disadvantages of packet filtering
cannot prevent attacks that employ app specific vulnerablities or functions
what does a stateful inspection firewall do
reviews packet info but also records info about tcp connections
what is a bastion host
system identified as critical strong point in the network’s security
serves as platform for app level or circuit level gateway
runs locked down OS
what is a host based firewall
used to secure individual host
available in operating systems
what is a personal firewall
controls traffic between personal comp and internet or enterprise network
usually a software module