Security Flashcards
Types of firewalls
Physical firewall
Software firewall
Virtual firewall
Host based firewall
Only protects one computer is in the software
Network firewall
Usually a hardware device protecting the entire network
Packet filtering firewall
Operates layers 3&4 of OSI model
Filter by :
Protocol: IP ,TCP, UDP, ICMP
Source and destination ip address
Source and destination TCP or UDP port number
Look at address and header of packet but doesn’t actually inspect the data of a packet
Stateful inspection firewall
Operates layer 3, 4, 5 of osi model
Inbound and outbound traffic are compared to determine if a connection should be allowed based on an established session.
They look at a address and header of packet but don’t actually inspect said packet
Protects inside network from outside world but still allows traffic originating from inside the network to go outside and return
I search for google.com and google.com replies it will be let through if yahoo.com replies it will be blocked
Application level firewall
Layer 7 of OSI
Actually inspects the content within the packets to find malware, viruses
Can block program level traffic
Incorporates the function of a proxy server which allows us to set up web filtering based on what websites are allowed( white list) and what websites are not (black list) or the type of website like porn or racism sites
Most thorough of the three
IDS OR intrusion detection system
Alerts only against network threats but is passive and only reports the problem
IPS OR intrusion prevention system
Active device that provides an automated response to threat immediately and still alerts human.