security Flashcards

1
Q

WPA2-Enterprise, unlike WPA2-PSK, requires what to function?

A

Deploying WPA2-Enterprise requires a RADIUS server, which handles the task of authenticating network users access.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

host-based firewalls/IDS/IPS are what?

A

applications, which can be installed on your servers or workstations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

A ___ is a firewall that operates at Layers 3 and 4 of the OSI network model: network and transport.

A

packet filter

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a circuit-level gateway?

A

A circuit-level gateway is a device that operates as a middleman between two or more systems to help conceal the true identity of the client and server.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What can change the IP address and the TCP/UDP port number of the traffic to allow two networks to communicate that otherwise could not?

A

circuit-level gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does “state” refer to in a stateful firewall?

A

In this context, the word state refers to the connection state of a conversation between two computers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

To reduce the number of firewall rules needed to support TCP communication, firewall vendors implemented a feature known as ___.

A

stateful inspection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does stateful inspection do?

A

This feature allows a firewall to identify traffic as conversational and automatically create temporary firewall rules to permit the response traffic to flow back to the sender.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Firewalls that can read application data and inspect the contents of a packet are known as…

A

layer 7 firewall/application-aware firewalls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which three levels of the OSI model does stateful inspection require?

A

In order for a firewall to understand whether there is a conversation going on between two endpoints, it must be able to analyze the address (Layer 3), it must be able to analyze the type of traffic—usually TCP or UDP—which requires Layer 4 inspection, and it must be able to analyze Layer 5 data in order to recognize that a session has been requested and established.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

802.1x does what? What does it need to function?

A

It is an authentication protocol for NAC. It requires an authentication server such as RADIUS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is IPSec?

A

A tunneling protocol used for VPNs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What 3 capabilities of IPSec?

A

Encryption
Data integrity check through hashing
Source authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

stateless firewall

A

Uses ACL rules to block based on ports, protocol, IP address, and other IP header info.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

stateful firewall

A

Protocol-aware.

Keeps track of active TCP connections with state tables.

Packet filter allows traffic that matches accepted states.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Blocks traffic based on static information

A

stateless

17
Q

Blocks traffic based on data flows and connection status

A

stateful