Final Exam Flashcards
What are some firewall best practices?
Principle of least privilege Trust but verify Change management Rule cleanup Logging Alerting Patches and updates Secure remote management
What are the types of firewalls?
Static packet filtering Stateful packet inspection Next generation firewall (NGFW) Web Application Firewall (WAF) Zero trust security model
What is Palo Alto PAN-OS?
The operating platform of Palo Alto’s next-generation firewall software that runs on all current generation physical and virtual appliances which supports small business firewall appliances from 100 Mbps to carrier grade chassis that support over 200 Gbps.
What are the different ways to control PAN-OS?
From the command line, through a webGUI, Panorama API, as well as through SNMP.
What features does PAN-OS support?
IPv4 and IPv6 network protocols Zone-Based Architecture Virtual Private Networking (VPN) High Availability QoS Traffic Shaping Virtual Routing and Firewall Configurations
PAN-OS bases its advanced firewall technologies on what three tenants?
Identifying the Application (App-ID)
Identifying the User (User-ID)
Identifying the Content (Content-ID)
What are security zones?
Allow for granular policy-based control. Traffic between zone interfaces can be independently identified and controlled.
What are security policies?
Enforced by configuring rules on the firewall.
What are PAN-OS’s default policy entries?
An intrazone-default, that allows traffic within a zone by default
An interzone-default, that denies traffic between zones by default.
What are firewall objects?
Physical and virtual network components.
What are the categories objects are divided into?
Network objects - addresses, hosts, address groups
Applications and services - applications, app types, services, protocols
Security profiles - antivirus, anti-spyware, URL/Data filtering
User - users, user groups
What are the three deployment options?
Tap
Virtual wire
Layer 3
Firewall Session Setup
- Source Zone
- Zone/DoS Protection
- Forwarding Lookup (PBF)
- Destination Zone (+DNAT check)
- Security Policy Check
Palo Alto Firewalls are stateful (T/F)
True
What are UUIDs?
Universally Unique Identifiers are assigned to a policy rule when it is created and provides a trail that captures all changes made to a rule including who made the most recent changes.