Network Defense And Counter Measures Chapter 10

11 September 2022
4.7 (114 reviews)
20 test answers

Unlock all answers in this set

Unlock answers (16)
question
In what type of attack are zombies usually put to use?
answer
DDoS
question
What is a critical step you should take on the OS you choose for a bastion host?
answer
ensure all security patches are installed
question
Reverse Firewalls allow all incoming traffic except what the ACLs are configured to deny. T / F
answer
False
question
Which type of security device can speed up Web page retrieval and shield hosts on the internal network?
answer
Proxy Server
question
Why is a bastion host the system most likely to be attacked?
answer
it is available to external users
question
A screened host has a router as part of the configuration. T / F
answer
True
question
Which of the following is a disadvantage of using a proxy server?
answer
May require client configuration
question
Which of the following is true about private IP addresses?
answer
They are not routable on the Internet
question
Which of the following is true about a dual-homed host?
answer
Serves as a single point of entry to the network
question
Which type of NAT is typically used on devices in the DMZ?
answer
One-to-one NAT
question
The TCP normalization feature forwards abnormal packets to an administrator for further inspection.
answer
False
question
Which network device works at the Application layer by reconstruction packets and forwarding them to Web servers?
answer
Proxy server
question
What is a step you can take to harden a bastion host?
answer
Remove unnecessary services
question
Proxy servers Take action based only on IP header information.
answer
False
question
Which of the following is best described as software that prioritizes and schedules requests and then distributes them to servers based on each server's current load and processing power.
answer
load-balancing software
question
Which type of firewall configuration protects public servers by isolating them from the internal network?
answer
screened subnet DMZ
question
What best describes a DMZ?
answer
a subnet of publicly accessible servers placed outside the internal network
question
What should you consider installing if you want to inspect packets as they leave the network?
answer
Reverse Firewall
question
Which type of translation should you use if you need 50 computers in the corporate network to be able to access the Internet using a single public IP address?
answer
Port address translation.
question
A dual-homed host has a single NIC with two MAC addresses. T / F
answer
False