Firewalls Flashcards

1
Q

Types of Firewalls:
Packet-filtering

A

Examines packets entering or leaving the network, either accepting or rejecting the packet based on user-defined rules.
Low level operation of the TCP/IP protocol stack, not examining the data in the packet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Stateful packet inspection

A

Monitors the state of active connections, making decisions based on the context of the traffic and state of the network.
Provides a balance between performance and security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Application-level

A

Filters incoming traffic between the network and the traffic source, operating at the application layer.
Inspects the data being sent and blocks harmful content or software.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Circuit-level

A

Circuit-level gateways or circuit-level firewall
Monitors TCP handshakes across the firewall to determine if the session is legitimate.
Operates at the session layer of the OSI model.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Is there a firewall that bundles all of these various features?

A

Next-Generation Firewalls (NGFW)
Incorporates features of traditional firewalls with quality of service (QoS) functionalities.
Includes additional features like application awareness, integrated intrusion prevention, and cloud-delivered threat intelligence.
Intrusion Detection Systems (IDS)
Monitors networks or systems for malicious activity or policy violations.
Can be network-based (NIDS) or host-based (HIDS).
Intrusion Prevention Systems (IPS)
Similar to IDS but with the ability to prevent detected threats.
Actively blocks or prevents intrusions in real-time.
Unified Threat Management (UTM)
Combines and integrates various security services and features
Firewall
IDS/IPS
Antivirus
Gateway anti-spam
Content filtering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly