STUDY QUESTIONS3 Flashcards

1
Q

Sniffer level 1

A

ip header

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Sniffer level 2

A

ip header and payload (ip)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Sniffer level 3

A

ip header and payload (ip) +Ethernet Header

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Sniffer level 4

A

ip header + port names

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Sniffer level 5

A

ip header + port names + ip payload

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Sniffer level 6

A

all

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

AUTHENTICATION (BASES) - What types are available?

A

IP-BASED or SESSION-BASED

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

CENTRAL-NAT - How to enable?

A

Via CLI (only) if profile mode used

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

CENTRAL-NAT - If enabled, SNAT is implicit (True or false)

A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

CENTRAL-NAT (Reason for NOT able to enable it)?

A

IP Pools are used (and referenced)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is AUTO-NEGOTIATE in IPSEC?

A

Brings the tunnel up regardless of traffic (new or after SA expired)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

what is AUTOKEY KEEP ALIVE in IPSEC?

A

Avoid IPSEC tunnel to disconnect due to traffic absence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is WEB APP FIREWALL? —- WAF

A

App to detect and block web app attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What does WAF uses to block?

A

signatures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the requirement to enable WAF?

A

Enable proxy inspection mode

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

How to enable WAF?

A

Via feature visibility after enabling proxy inspection mode

17
Q

How is WAF applied or used?

A

Configured as a profile and applied to a policy

18
Q

True or False, WAF does NOT require DEEP-INSPECTION?

A

It’s FALSE

19
Q

FABRIC - Root’s unique actions?

A

ShutDown / reboot / ban