STUDY QUESTIONS3 Flashcards
Sniffer level 1
ip header
Sniffer level 2
ip header and payload (ip)
Sniffer level 3
ip header and payload (ip) +Ethernet Header
Sniffer level 4
ip header + port names
Sniffer level 5
ip header + port names + ip payload
Sniffer level 6
all
AUTHENTICATION (BASES) - What types are available?
IP-BASED or SESSION-BASED
CENTRAL-NAT - How to enable?
Via CLI (only) if profile mode used
CENTRAL-NAT - If enabled, SNAT is implicit (True or false)
TRUE
CENTRAL-NAT (Reason for NOT able to enable it)?
IP Pools are used (and referenced)
What is AUTO-NEGOTIATE in IPSEC?
Brings the tunnel up regardless of traffic (new or after SA expired)
what is AUTOKEY KEEP ALIVE in IPSEC?
Avoid IPSEC tunnel to disconnect due to traffic absence
What is WEB APP FIREWALL? —- WAF
App to detect and block web app attacks
What does WAF uses to block?
signatures
What is the requirement to enable WAF?
Enable proxy inspection mode