Web Firewall, Flood Gate, Block Traffic Pvt IP, Create Block Rules Flashcards

1
Q

Why block all outgoing traffic from private IP addresses?

A

Typically, there is no need to block outgoing traffic from private IPs in a network, as this traffic is normal. Blocking outgoing traffic doesn’t address security threats at the border router.

Memory Hook: “Outgoing Ok” - Outgoing private IP traffic is usually okay, not a threat.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the role of a flood guard on switches?

A

Flood guards prevent MAC flooding on switches by limiting the number of MAC addresses learned per port, protecting against certain DoS attacks. Not related to IP spoofing or border router security.

Memory Hook: “Switch Guard, Not Net Guard” - Flood guards protect switches, not network borders.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does a web application firewall (WAF) do?

A

A WAF protects web applications by filtering harmful web traffic, monitoring, and blocking attacks like SQL injection and cross-site scripting. It does not handle IP spoofing at the network level.

Memory Hook: “Web Watcher” - WAFs watch over web apps, not the network border.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Why block all incoming traffic from private IP addresses on a border router?

A

Incoming traffic from private IP addresses on the internet is likely spoofed, as these addresses are non-routable and reserved for internal network use. Blocking them prevents spoofing attacks.

Memory Hook: “Private Block Party” - No entry for private IPs pretending to be someone else.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly