Firewalls - CompTIA Security+ SY0-701 - 4.5

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/5

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 4:20 PM on 4/1/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No analytics yet

Send a link to your students to track their progress

6 Terms

1
New cards

Network based Firewalls

• Filter traffic by port number or application

- Traditional vs. NGFW

• Encrypt traffic

- VPN between sites

• Most firewalls can be layer 3 devices (routers)

- Often sits on the ingress/egress of the network

- Network Address Translation (NAT)

- Dynamic routing

2
New cards

Next Generation Firewall (NGFW)

The OSI Application Layer (Layer 7) - All data in every packet

• Can be called different names

- Application layer gateway

- Stateful multilayer inspection, deep packet inspection

• Broad security controls

- Allow or disallow application features

- Identify attacks and malware

- Examine encrypted data

- Prevent access to URLs or URL categories

3
New cards

Ports and protocols

• Make forwarding decisions based on protocol

(TCP or UDP) and port number

- Traditional port-based firewalls

- Add to an NGFW for additional security

policy options

• Based on destination protocol and port

- Web server: tcp/80, tcp/443

- SSH server: tcp/22

- Microsoft RDP: tcp/3389

- DNS query: udp/53

- NTP: udp/123

<p>• Make forwarding decisions based on protocol</p><p>(TCP or UDP) and port number</p><p>- Traditional port-based firewalls</p><p>- Add to an NGFW for additional security</p><p>policy options</p><p>• Based on destination protocol and port</p><p>- Web server: tcp/80, tcp/443</p><p>- SSH server: tcp/22</p><p>- Microsoft RDP: tcp/3389</p><p>- DNS query: udp/53</p><p>- NTP: udp/123</p>
4
New cards

Firewall Rules

A logical path

- Usually top-to-bottom

Can be very general or very specific

- Specific rules are usually at the top

Implicit deny

- Most firewalls include a deny at the bottom

- Even if you didn't put one

Access Control List (ACLs)

- Allow or disallow traffic

- Groupings of categories (Source IP, Destination IP, port number, Time of Day, Application, etc.)

<p>A logical path</p><p>- Usually top-to-bottom</p><p>Can be very general or very specific</p><p>- Specific rules are usually at the top</p><p>Implicit deny</p><p>- Most firewalls include a deny at the bottom</p><p>- Even if you didn't put one</p><p>Access Control List (ACLs)</p><p>- Allow or disallow traffic</p><p>- Groupings of categories (Source IP, Destination IP, port number, Time of Day, Application, etc.)</p>
5
New cards

Screened Subnet

An additonal layer of security between you and the internet

- Public access to public resources

- Private data remains inaccessible

<p>An additonal layer of security between you and the internet</p><p>- Public access to public resources</p><p>- Private data remains inaccessible</p>
6
New cards

IPS rules

Intrusion Prevention System

- usually integrated into a NGFW

Different ways to find malicious traffic

- Look at the traffic as it passes by

Signature based

- Look for a perfect match

Anomaly based

- Build a baseline of what's normal

- Unusual patterns are flagged

Explore top notes

note
Chapter 13: Acids and Bases
Updated 1090d ago
0.0(0)
note
Rocks
Updated 1040d ago
0.0(0)
note
Synaptic Transfer
Updated 1318d ago
0.0(0)
note
Property Recap
Updated 699d ago
0.0(0)
note
BI206L Lab Exam #2 Study Guide
Updated 592d ago
0.0(0)
note
Chapter 13: Acids and Bases
Updated 1090d ago
0.0(0)
note
Rocks
Updated 1040d ago
0.0(0)
note
Synaptic Transfer
Updated 1318d ago
0.0(0)
note
Property Recap
Updated 699d ago
0.0(0)
note
BI206L Lab Exam #2 Study Guide
Updated 592d ago
0.0(0)

Explore top flashcards

flashcards
Unit 4 vocabulary
55
Updated 1155d ago
0.0(0)
flashcards
NUR-111: Unit 1
90
Updated 440d ago
0.0(0)
flashcards
LOTF Vocabulary List #2
20
Updated 154d ago
0.0(0)
flashcards
Biosci 221 Exam 3
68
Updated 1064d ago
0.0(0)
flashcards
Wijsbegeerte begrippen deel III
40
Updated 823d ago
0.0(0)
flashcards
biology review: test 1
67
Updated 951d ago
0.0(0)
flashcards
William Billiam exam 4
22
Updated 206d ago
0.0(0)
flashcards
Unit 4 vocabulary
55
Updated 1155d ago
0.0(0)
flashcards
NUR-111: Unit 1
90
Updated 440d ago
0.0(0)
flashcards
LOTF Vocabulary List #2
20
Updated 154d ago
0.0(0)
flashcards
Biosci 221 Exam 3
68
Updated 1064d ago
0.0(0)
flashcards
Wijsbegeerte begrippen deel III
40
Updated 823d ago
0.0(0)
flashcards
biology review: test 1
67
Updated 951d ago
0.0(0)
flashcards
William Billiam exam 4
22
Updated 206d ago
0.0(0)