Section 3 Flashcards
What is a Sniifer?
Capture and display network traffic packet by packet.
Whitelist
Only receive email from trusted senders
SMTO standards checking
Block anything that does’nt follow RFC standards
rDNS
Block email where the sender’s domain does’nt match the ip address.
Tarpitting
Intentionally slow down the server conversation.
Recipient filtering
Block all email not addressed to a valid recipient email address.
WAF - Web application firewall
Not like a normal firewall, Applies rules to HTTP conversations
Allow or deny based on expected input
What are Application-aware sercuirty devices
Looks at all data in every packet
Every packet must be analyzed,catgorized,and a security decision is determined.
Network-based firewalls
Control traffic flows based on the applicaiton.
Host-basewd firewalls
Work witht he OS to detemine the application.