Exam 2 Flashcards
SYN FLOOD solutions
micro blocks, bandwidth throttling, SYN cookies, RST cookies, stack tweaking, stateful packet inspection firewall
micro blocks
minimize requests
bandwidth throttling
limit from same IP
SYN cookies
not kept in memory
RST cookies
legit users TRY AGAIN
Stack Tweaking
shorten time in buffer
stateful packet inspection firewall
packet CONTEXT and CONTENT
HTTP
content transferred slowly
Network Host-Based Firewall
software based solution that runs on top of OS
Dual-Homed Host
DMZ
Router-base firewall
inspect/control traffic;easy
Screened Host
Bastion Host and Screened Host
network address translation
masks internal IP; supersedes proxy servers
preemptive blocking
detects intrusions through foot printing but can block legitimate traffic
infiltration
goes into hacker world