Network Security Firewall
A firewall may be designed to operate as a filter at the level of IP packets or may
operate at a higher protocol layer? - answer True
The packet filter is typically set up as a list of rules based on matches to fields in the IP
or TCP header? - answer True
The direction control determines the types of Internet services that can be accessed,
inbound or outbound? - answer False
The firewall cannot fully protect against internal threats? - answer True
A firewall may not act as a packet filter? - answer False
A stateful packet inspection firewall reviews the same packet information as a packet
filtering firewall but also records information about TCP connections? - answer True
One advantage of a packet filtering firewall is its simplicity? - answer True
Packet filter firewalls examine upper layer data therefore they can prevent attacks that
employ application specific vulnerabilities or functions? - answer False
Due to the small number of variables used in access control decisions packet filter
firewalls are susceptible to security breaches caused by improper configurations? -
answerTrue
Packet filters tend to be more secure than application level gateways? - answerFalse
A circuit level proxy can be a stand alone system or it can be a specialized function
performed by an application level gateway for certain applications? - answerTrue
An example of application level gateway implementation is the SOCKS package? -
answerFalse
Firewall functionality can also be implemented as a software module in a router or LAN
switch? - answerTrue
The primary role of the personal firewall is to deny unauthorized remote access to the
computer? - answerTrue
, The external firewall adds more stringent filtering capability in order to protect enterprise
servers and workstations from external attack? - answerFalse
_________ can be an effective means of protecting a local system or network of
systems from network based security threats while at the same time affording access to
the outside world via wide area networks and the Internet.
A) VPNs
B) Proxys
C) Firewalls
D) SOCKS - answerC) Firewalls
The _________ is the address of the system that originated the IP packet.
A) Interface
B) Source and destination transport level address
C) IP protocol field
D) Source IP address - answerD) Source IP address
The technique that controls how particular services are used is the _________ control.
The firewall may filter e-mail to eliminate spam, or it may enable external access to only
a portion of the information on a local Web server.
A) direction
B) user
C) behavior
D) service - answerC) behavior
The _________ is the transport level port number which defines applications such as
SNMP or TELNET.
A) Source IP address
B) IP protocol field
C) Source and destination transport level address
D) Interface - answerC) Source and destination transport level address
A _________ firewall applies a set of rules to each incoming and outgoing IP packet
and then forwards or discards the packet.
A) host-based
B) packet filtering
C) distributed
D) stateful inspection - answerB) packet filtering
The __________ defines the transport protocol.
A firewall may be designed to operate as a filter at the level of IP packets or may
operate at a higher protocol layer? - answer True
The packet filter is typically set up as a list of rules based on matches to fields in the IP
or TCP header? - answer True
The direction control determines the types of Internet services that can be accessed,
inbound or outbound? - answer False
The firewall cannot fully protect against internal threats? - answer True
A firewall may not act as a packet filter? - answer False
A stateful packet inspection firewall reviews the same packet information as a packet
filtering firewall but also records information about TCP connections? - answer True
One advantage of a packet filtering firewall is its simplicity? - answer True
Packet filter firewalls examine upper layer data therefore they can prevent attacks that
employ application specific vulnerabilities or functions? - answer False
Due to the small number of variables used in access control decisions packet filter
firewalls are susceptible to security breaches caused by improper configurations? -
answerTrue
Packet filters tend to be more secure than application level gateways? - answerFalse
A circuit level proxy can be a stand alone system or it can be a specialized function
performed by an application level gateway for certain applications? - answerTrue
An example of application level gateway implementation is the SOCKS package? -
answerFalse
Firewall functionality can also be implemented as a software module in a router or LAN
switch? - answerTrue
The primary role of the personal firewall is to deny unauthorized remote access to the
computer? - answerTrue
, The external firewall adds more stringent filtering capability in order to protect enterprise
servers and workstations from external attack? - answerFalse
_________ can be an effective means of protecting a local system or network of
systems from network based security threats while at the same time affording access to
the outside world via wide area networks and the Internet.
A) VPNs
B) Proxys
C) Firewalls
D) SOCKS - answerC) Firewalls
The _________ is the address of the system that originated the IP packet.
A) Interface
B) Source and destination transport level address
C) IP protocol field
D) Source IP address - answerD) Source IP address
The technique that controls how particular services are used is the _________ control.
The firewall may filter e-mail to eliminate spam, or it may enable external access to only
a portion of the information on a local Web server.
A) direction
B) user
C) behavior
D) service - answerC) behavior
The _________ is the transport level port number which defines applications such as
SNMP or TELNET.
A) Source IP address
B) IP protocol field
C) Source and destination transport level address
D) Interface - answerC) Source and destination transport level address
A _________ firewall applies a set of rules to each incoming and outgoing IP packet
and then forwards or discards the packet.
A) host-based
B) packet filtering
C) distributed
D) stateful inspection - answerB) packet filtering
The __________ defines the transport protocol.