Firewalls 101 Flashcards

(8 cards)

1
Q

It is a device within a network responsible for determining what traffic is allowed to enter and exit.

A

Firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Firewall Category

A

Stateful
Stateless

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

This type of firewall uses the entire information from a connection; rather than inspecting an individual packet, this firewall determines the behaviour of a device based upon the entire connection.

This firewall type consumes many resources in comparison to stateless firewalls as the decision making is dynamic. For example, a firewall could allow the first parts of a TCP handshake that would later fail.

If a connection from a host is bad, it will block the entire device.

A

Stateful

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

This firewall type uses a static set of rules to determine whether or not individual packets are acceptable or not. For example, a device sending a bad packet will not necessarily mean that the entire device is then blocked.

Whilst these firewalls use much fewer resources than alternatives, they are much dumber. For example, these firewalls are only effective as the rules that are defined within them. If a rule is not exactly matched, it is effectively useless.

However, these firewalls are great when receiving large amounts of traffic from a set of hosts (such as a Distributed Denial-of-Service attack)

A

Stateless

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What layers of the OSI model do firewalls operate at?

A

3 & 4

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What category of firewall inspects the entire connection?

A

stateful

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What category of firewall inspects individual packets?

A

stateless

How well did you know this?
1
Not at all
2
3
4
5
Perfectly