Exam 9: Firewalls and Intrusion Prevention Systems

arrow
  • Select Tags
search iconSearch Question
flashcardsStudy Flashcards
  • Select Tags

__________ looks for deviation from standards set forth in RFCs.

Free
(Multiple Choice)
4.7/5
(34)
Correct Answer:
Verified

B

__________ scans for attack signatures in the context of a traffic stream rather than individual packets.

Free
(Multiple Choice)
4.8/5
(27)
Correct Answer:
Verified

D

A prime disadvantage of an application-level gateway is the additional processing overhead on each connection.

Free
(True/False)
4.8/5
(31)
Correct Answer:
Verified

True

A traditional packet filter makes filtering decisions on an individual packet basis and does not take into consideration any higher layer context.

(True/False)
4.8/5
(30)

A __________ gateway sets up two TCP connections,one between itself and a TCP user on an inner host and one between itself and a TCP user on an outside host.

(Multiple Choice)
4.8/5
(40)

The _________ attack is designed to circumvent filtering rules that depend on TCP header information.

(Multiple Choice)
4.7/5
(35)

The __________ protocol is an example of a circuit-level gateway implementation that is conceptually a "shim-layer" between the application layer and the transport layer and does not provide network-layer gateway services.

(Essay)
4.8/5
(41)

The primary role of the personal firewall is to deny unauthorized remote access to the computer.

(True/False)
4.8/5
(36)

The firewall can protect against attacks that bypass the firewall.

(True/False)
4.7/5
(28)

A _________ firewall applies a set of rules to each incoming and outgoing IP packet and then forwards or discards the packet.

(Essay)
4.9/5
(33)

Identified as a critical strong point in the network's security,the _________ serves as a platform for an application-level or circuit-level gateway.

(Essay)
4.8/5
(37)

The _________ defines the transport protocol.

(Multiple Choice)
4.9/5
(39)

A ___________ makes use of both signature and anomaly detection techniques to identify attacks.

(Essay)
4.9/5
(32)

The ________ IP address is the IP address of the system that originated the IP packet.

(Essay)
4.7/5
(42)

The firewall follows the classic military doctrine of _________ because it provides an additional layer of defense.

(Essay)
4.8/5
(33)

An example of a circuit-level gateway implementation is the __________ package.

(Multiple Choice)
4.9/5
(32)

The countermeasure to tiny fragment attacks is to discard packets with an inside source address if the packet arrives on an external interface.

(True/False)
4.9/5
(35)

A single device that integrates a variety of approaches to dealing with network-based attacks is referred to as a __________ system.

(Essay)
4.9/5
(39)

Snort Inline adds three new rule types: drop,reject,and _________.

(Essay)
4.8/5
(29)

__________ protocols operate in networking devices,such as a router or firewall,and will encrypt and compress all traffic going into the WAN and decrypt and uncompress traffic coming from the WAN.

(Essay)
4.9/5
(37)
Showing 1 - 20 of 45
close modal

Filters

  • Essay(0)
  • Multiple Choice(0)
  • Short Answer(0)
  • True False(0)
  • Matching(0)