Security Flashcards

1
Q

Types of firewalls

A

Physical firewall
Software firewall
Virtual firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Host based firewall

A

Only protects one computer is in the software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Network firewall

A

Usually a hardware device protecting the entire network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Packet filtering firewall

A

Operates layers 3&4 of OSI model
Filter by :
Protocol: IP ,TCP, UDP, ICMP

Source and destination ip address

Source and destination TCP or UDP port number

Look at address and header of packet but doesn’t actually inspect the data of a packet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Stateful inspection firewall

A

Operates layer 3, 4, 5 of osi model

Inbound and outbound traffic are compared to determine if a connection should be allowed based on an established session.

They look at a address and header of packet but don’t actually inspect said packet

Protects inside network from outside world but still allows traffic originating from inside the network to go outside and return

I search for google.com and google.com replies it will be let through if yahoo.com replies it will be blocked

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Application level firewall

A

Layer 7 of OSI

Actually inspects the content within the packets to find malware, viruses

Can block program level traffic

Incorporates the function of a proxy server which allows us to set up web filtering based on what websites are allowed( white list) and what websites are not (black list) or the type of website like porn or racism sites

Most thorough of the three

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

IDS OR intrusion detection system

A

Alerts only against network threats but is passive and only reports the problem

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

IPS OR intrusion prevention system

A

Active device that provides an automated response to threat immediately and still alerts human.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly