Section 6: Specialized Network Devices Flashcards
VPN
Virtual Private Network - Creates a secure VPN or virtual tunnel over an untrusted network like the Internet
VPN Concentrator (
Terminates VPN tunnels and allows for multiple VPN connections in one location. Some firewalls support this function. Logically, when performing this function the firewall is now functioning as a concentrator.
VPN Headend
Headend is a specific type of VPN concentrator used to terminate IPSec VPN tunnels within a router or other device.
Firewall
▪ Network security appliance at network boundary
▪ Can be software or hardware
▪ Can be Stateful or Stateless
▪Allows traffic that originates from inside the network and go out to the Internet
▪Blocks traffic originated from the Internet from getting into the network
NGFW
Next-Gen Firewall -
▪ Conducts deep packet inspection at Layer 7
▪ Detects and prevents attacks
▪ Much more powerful than basic stateless or stateful firewalls
▪ Continually connects to cloud resources for latest information on threats
IDS
Intrusion Detection System
▪ Recognizes attacks through signatures and anomalies (Only see and log intrusion)
IPS
Intrusion Prevention System
▪ Recognizes attacks through signatures and anomalies and can respond (Can see log and respond to an intrusion)
Proxy Server
▪ A specialized device that makes requests to an external network on behalf of a client
(Two functions: 1)Security - can perform content filtering; 2) Can cache content to improve performance - not as efficient as Content Engine)
Content Engine/Caching Engine
▪ Dedicated appliance that performs the caching functions of a proxy server. (Good for speeding up local access when network performance isn’t ideal.)
Content Switch/Load Balancer
▪ Distributes incoming requests across various servers in a server farm