Networking, Appliances, Applications & Functions Flashcards
Service-dependent filtering
the method by which a firewall examines the port numbers in Transport layer protocol headers is
Service-dependent filtering
Which of the following criteria does a firewall capable of service-dependent filtering use to block traffic?
a. Hardware addresses
b. Protocol identifiers
c. IP addresses
d. Port numbers
Port Numbers
Explain hubs and switches in relation to collision domains
All of the devices connected to a hub are part of a single collision domain, whereas each device connected to a switch has its own collision domain.
Both switches and bridges process incoming packets by scanning their Data link layer hardware addresses and forwarding the packets out the port connected to the destination system. How many ports to switches and bridges have respectively?
Many and two
Cut-through switches are fast, because
hey look at only the first 6 bytes (the destination media access control, or MAC, address) when forwarding a frame. They do not perform a cyclical redundancy check (CRC) on the entire frame’s contents prior to forwarding it out a port leading to the destination.
Source route is a bridging technique in which
the source host, not the switch, determines the path a frame will take through a network to reach a destination.
Store-and-forward switches take in the
entire frame and verify its contents by performing a CRC calculation before forwarding it.
What security measure can scan Transport layer header fields for evidence of SYN floods
a firewall capable of stateful packet inspection
methods typically used by intrusion detection systems (IDSs) to analyze incoming network traffic
Anomaly-based detection and Signature-based detection
Security information and event management (SIEM) systems can function as a central clearinghouse for information gathered by
IDSs and other security processes
Which piece of hardware or software connects networks by translating communications from one protocol to another
Gateway
Each port on a router defines
a separate broadcast domain
a next-generation firewall (NGFW) has
Deep packet inspection (DPI)
Content filters are a firewall feature that examine
the data inside packets, rather than their origin, to locate objectionable material
Load balancers typically do not use the__________________ to direct traffic since this is a factor that does not change.
hardware configuration of the servers