Chapter 9 (Firewalls) Flashcards

1
Q

is a firewall a single computer sys or a set of two ore more sys working together

A

can be both

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

what are the 3 main design goals when making a firewall

A

all traffic inside to outside and vise versa must pass through the firewall

only authorized traffic allowed to pass

firewall itself is immune to penetration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

what is a firewall access policy

A

lists type of traffic authorized to pass through the firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

what are 4 characteristics that a firewall access policy could use to filter traffic

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

what are some limits on firewall capabilities

A

cant protect against attacks which bypass firewall

cannot fully protect against internal threats

portable device can be infected outside of network and then brought in

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

what does a packet filtering firewall applies its rules to

A

each incoming and outgoing ip packet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

what are the 2 default policies of a packet filtering firewall

A

discard: prohibit unless expressly permitted
forward: permit unless expressly prohibiited

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

what are the 2 main advantages of packet filtering

A

simple

transparent to users and are very fast

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

what is 1 main disadvantages of packet filtering

A

cannot prevent attacks that employ app specific vulnerablities or functions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

what does a stateful inspection firewall do

A

reviews packet info but also records info about tcp connections

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

what is a bastion host

A

system identified as critical strong point in the network’s security

serves as platform for app level or circuit level gateway

runs locked down OS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

what is a host based firewall

A

used to secure individual host

available in operating systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

what is a personal firewall

A

controls traffic between personal comp and internet or enterprise network

usually a software module

How well did you know this?
1
Not at all
2
3
4
5
Perfectly