Module 09. Network Security Appliances
and Technologies Test
firewall - answer Hardware and/or software that guards a private network by analyzing
the information leaving and entering the network
geographical consideration - answer Firewall rules that are in effect depending on the
location of an endpoint.
content/URL filtering - answer A process used by a firewall to monitor websites
accessed through HTTP to create custom filtering profiles.
Stateless packet filtering - answer A firewall that looks at the incoming packet and
permits or denies it based on specific conditions.
Stateful packet filtering - answer A firewall technology that keeps a record of the state of
a connection between an internal computer and an external server and then makes
decisions based on the connection as well as the rule base.
open source firewalls - answer A firewall that is freely available.
proprietary firewalls - answerA firewall that is owned by an entity who has an exclusive
right to it.
software firewall - answerA firewall that runs as a program or service on a device, such
as a computer or router.
Hardware firewalls - answerstand-alone device that's an appliance that's installed into a
network
host-based firewall - answerA software firewall that runs as a program on the local
computer to block or filter traffic coming into and out of the computer.
appliance firewall - answerA separate hardware device designed to protect an entire
network.
virtual firewall - answerA firewall that runs in the cloud. Virtual firewalls are designed for
settings, such as public cloud environments, in which deploying an appliance firewall
would be difficult or even impossible.
web application firewall (WAF) - answerA firewall that filters by examining the
applications using HTTP.
, network address translation gateway - answerA cloudbased technology that performs
NAT translations for cloud services.
next generation firewall (NGFW) - answerA firewall that has additional functionality
beyond a traditional firewall such as the ability to filter packets based on applications.
Unified threat management (UTM) - answerAn integrated device that combines several
security functions.
forward proxy - answerA computer or an application program that intercepts user
requests from the internal secure network and then processes those requests on behalf
of the users.
reverse proxy - answerA proxy that routes requests coming from an external network to
the correct internal server.
honeypot - answerA computer typically located in an area with limited security and
loaded with software and data files that appear to be authentic, yet they are actually
imitations of real data files, to trick attackers into revealing their attack techniques.
honeyfiles - answerSoftware and data files on a honeypot that appear to be authentic
but are actually imitations of real data files.
fake telemetry - answerFictitious data on a honeypot of how certain software features
are used, application crashes, and general usage statistics and behavior.
honeynet - answerA network set up with intentional vulnerabilities.
DNS sinkhole - answerA technique that changes a normal DNS request to a
preconfigured IP address pointing to a device that will drop all received packets.
inline - answerA system that is connected directly to the network and monitors the flow
of data as it occurs.
passive - answerA system that is connected to a device that receives a copy of network
traffic.
out-of-band management - answerUsing an independent and dedicated channel to
reach a device for management purposes.
Anomaly monitoring - answerA monitoring technique used by an intrusion detection
system (IDS) that creates a baseline of normal activities and compares actions against
the baseline. Whenever there is a significant deviation from the baseline, an alarm is
raised.
and Technologies Test
firewall - answer Hardware and/or software that guards a private network by analyzing
the information leaving and entering the network
geographical consideration - answer Firewall rules that are in effect depending on the
location of an endpoint.
content/URL filtering - answer A process used by a firewall to monitor websites
accessed through HTTP to create custom filtering profiles.
Stateless packet filtering - answer A firewall that looks at the incoming packet and
permits or denies it based on specific conditions.
Stateful packet filtering - answer A firewall technology that keeps a record of the state of
a connection between an internal computer and an external server and then makes
decisions based on the connection as well as the rule base.
open source firewalls - answer A firewall that is freely available.
proprietary firewalls - answerA firewall that is owned by an entity who has an exclusive
right to it.
software firewall - answerA firewall that runs as a program or service on a device, such
as a computer or router.
Hardware firewalls - answerstand-alone device that's an appliance that's installed into a
network
host-based firewall - answerA software firewall that runs as a program on the local
computer to block or filter traffic coming into and out of the computer.
appliance firewall - answerA separate hardware device designed to protect an entire
network.
virtual firewall - answerA firewall that runs in the cloud. Virtual firewalls are designed for
settings, such as public cloud environments, in which deploying an appliance firewall
would be difficult or even impossible.
web application firewall (WAF) - answerA firewall that filters by examining the
applications using HTTP.
, network address translation gateway - answerA cloudbased technology that performs
NAT translations for cloud services.
next generation firewall (NGFW) - answerA firewall that has additional functionality
beyond a traditional firewall such as the ability to filter packets based on applications.
Unified threat management (UTM) - answerAn integrated device that combines several
security functions.
forward proxy - answerA computer or an application program that intercepts user
requests from the internal secure network and then processes those requests on behalf
of the users.
reverse proxy - answerA proxy that routes requests coming from an external network to
the correct internal server.
honeypot - answerA computer typically located in an area with limited security and
loaded with software and data files that appear to be authentic, yet they are actually
imitations of real data files, to trick attackers into revealing their attack techniques.
honeyfiles - answerSoftware and data files on a honeypot that appear to be authentic
but are actually imitations of real data files.
fake telemetry - answerFictitious data on a honeypot of how certain software features
are used, application crashes, and general usage statistics and behavior.
honeynet - answerA network set up with intentional vulnerabilities.
DNS sinkhole - answerA technique that changes a normal DNS request to a
preconfigured IP address pointing to a device that will drop all received packets.
inline - answerA system that is connected directly to the network and monitors the flow
of data as it occurs.
passive - answerA system that is connected to a device that receives a copy of network
traffic.
out-of-band management - answerUsing an independent and dedicated channel to
reach a device for management purposes.
Anomaly monitoring - answerA monitoring technique used by an intrusion detection
system (IDS) that creates a baseline of normal activities and compares actions against
the baseline. Whenever there is a significant deviation from the baseline, an alarm is
raised.