Shared Flashcard Set

Details

Security + || 3.2 Firewalls and Load Balancers
Security + || 3.2 Firewalls and Load Balancers
20
Computer Science
Undergraduate 4
12/11/2018

Additional Computer Science Flashcards

 


 

Cards

Term
What firewalls inspect the header of each packet to locate the source and destination IP Addresses, protocol id, type of packet, routing protocols etc?
Definition
Packet Filtering Firewalls
Term
What are the following?:

•Restricts traffic allowed on network

•Used to implement security zones

•Configured with access control rules

•Different types of firewall
Definition
Basic Firewall Attributes
Term
What are the following?:

oCan examine TCP headers

oState table

o(Can also apply packet filtering rules)

o Better protects against DOS
Definition
Attributes of Stateful Inspection Firewalls
Term
What are the following?:

•“Stateful Multilayer Inspection” or “Deep Packet Inspection”

•Can examine packet payload and monitor connections (stateful)

•Requires filter for each application type
Definition
Attributes of Aware Firewalls
Term
SOHO
Definition
Small Office Home Office
Term
What are the following?:

•Rule-based management

•Firewall rules (tuples)

•Access Control List

•Flood guard

•Implicit deny

•Troubleshooting
Definition
Elements of Firewall Configuration
Term
What are the following?:

•Able to inspect code in HTTP packets

•Matches suspicious code to vulnerability database

•Can be implemented as software on host or as appliance
Definition
Attributes of Web Application Firewalls
Term
What are the following?:

oBreaks end-to-end connection between hosts

oProxy opens the connection with the server on behalf of the client (or vice versa)

oMost stateful firewalls are implemented as proxies

oMost can also cache and pre-fetch content to improve performance
Definition
Capabilities of Proxies
Term
What is a packet filtering firewall forwards or blocks only?
Definition
Proxies and Gateways
Term
What are the following?:

oSpoof victim's IP address and attempt to open connections with multiple servers

oThose servers direct their SYN/ACK responses to the victim
Definition
Attributes of Amplified SYN flood
Term
NTP
Definition
Network Time Protocol
Term
What is ping amplifying a network using victim IP?
Definition
Smurfing
Term
What are the following?:

oDirect responses at victim

oQueries can be constructed to generate large response packets
Definition
Capabilities of Bogus DNS / NTP queries
Term
What are host files?
Definition
Local DNS Entries
Term
What is an Amplification Attack?
Definition
Distributed Reflection DoS (DRDoS)
Term
What does a Bogus DNS Server Allow A Hacker To Do?
Definition
Redirect you anywhere they want
Term
What drops traffic to protect other hosts in the routing domain?
Definition
DDos Mitigator
Term
What distributes requests across farm or pool of servers (nodes)?
Definition
Load Balancers
Term
What do Clusters do?
Definition
•Provides stateful fault tolerance

•Configure nodes for failover
Term
Round Robin DNS
Definition
DNS server returns IP from a group in response to name queries
Supporting users have an ad free experience!