DoS & DDoS Protection Flashcards

1
Q

Juniper Firewalls utilize SPI to track the state of network connections. This helps identify and drop incoming packets that do not belong to established connections, effectively blocking malformed or malicious traffic that could be part of a DoS or DDoS attack.

A

Stateful Packet Inspection (SPI)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Juniper Firewalls can be configured with DoS protection policies that define thresholds for connection rates, packet rates, and other parameters. When these thresholds are exceeded, the firewall can take actions such as rate limiting, dropping packets, or alerting administrators to mitigate the attack.

A

DoS Protection Policies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Some Juniper Firewall solutions offer dynamic detection and mitigation capabilities for DDoS attacks. They use heuristics, behavioral analysis, and real-time traffic monitoring to detect and divert DDoS traffic away from the target, allowing legitimate traffic to continue flowing.

A

Dynamic Detection and Mitigation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Juniper Firewalls can apply traffic rate limiting to specific types of traffic or sources during a DoS/DDoS attack. By limiting the rate of incoming traffic, they can prevent network resources from being overwhelmed.

A

Traffic Rate Limiting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Juniper Firewalls with application-layer protection features can inspect application-layer traffic to detect and block DDoS attacks targeting specific applications or services. They can identify and drop malicious requests.

A

Application-Layer Protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly