Infrastructure Security Devices Flashcards

1
Q

What is port security on a switch?

A

Allows defined number of MAC addresses into port

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is 802.1x?

A

Requires authentication at the switch (Layer 2)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a stateful firewall?

A

Remembers outbound traffic to dynamically let corresponding inbound traffic in using (L3 - L4)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a load balancer?

A

Distributes load across multiple servers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are some of the types of load balancer balancing?

A

Round robin

Least connection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is CIA?

A

Confidentiality
Integrity
Availability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is a proxy server?

A
Traffic goes through proxy to inspect entire protocol stack, creates/relays new session
Rule implementation (i.e content filtering, monitoring)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a VPN contentrator?

A

Endpoint for all VPN connections

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is a NIDS?

A

Network Intrusion Detection System
Receives copy of traffic
Cannot inspect encrypted traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is a NIPS?

A

Network Intrusion Prevention System
Directly intercepts traffic
Cannot inspect encrypted traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is HIDS and HIPS?

A

Host based IDS and IPS
Protects only that system
Advantageous for encrypted network traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is signature based IDS/IPS?

A

Database of malicious things to look for

Compares traffic to database

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is a behaviour/anaomaly/heuristic based IDS/IPS?

A

Creates baseline of network activity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is a protocol analyser?

A

Packet sniffer, can identify fragmentation, flooding, protocols

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is promiscuous mode?

A

Functionality on computer to allow an network interfaces traffic to be inspected, accepts frames not identical to NICs MAC address

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a UTM?

A

Unified Threat Management

17
Q

What is a web application firewall?

A

Can forward/drop traffic via inspecting application layer (L3 - L7)