Shared Flashcard Set

Details

Enterprise Security
Network Security, Firewalls & VPNs
35
Computer Networking
Graduate
05/17/2018

Additional Computer Networking Flashcards

 


 

Cards

Term
What is trust in computer/network security?
Definition
Confidence that others will act in accordance with the rules, or that a resource is authentic
Term
Why understand TCP/IP and OSI as a security professional?
Definition
To fully understand the mechanisms of filtering employed by firewalls
Term
List the seven domains of a typical IT infrastructire
Definition
User domain
Workstation domain
LAN domain
LAN-WAN domain
Remote Access domain
WAN domain
System/App domain
Term
User domain
Definition
All actual users (employees, 3rd parties, etc.)
Term
Workstation Domain
Definition
Desktop computer
laptop VoIP
other endpoint device
Term
LAN domain
Definition
local area network (typically 10/100/1K ethernet), 802.1x wireless, etc.
Term
LAN - WAN domain
Definition
Inter-connectivity between the LAN and WAN
Routers, firewalls, DMZ, IDS/IPS
Term
Remote Access Domain
Definition
Authorized and authenticated remote access to IT infrastructure, systems & data
Term
WAN Domain
Definition
Typically outsourced to service providers (ISPs) for end-to-end connectivity, bandwidth
Term
Systems & Applications Domain
Definition
Hardware, OS software, client/server apps, data housed in data center or on servers
Term
Defense-in-Depth
Definition
A Layered approach to security
Multiple layers/levels, and/or multiple components
Can also include a mix pf multiple vendors
Term
Honeypot
Definition
Well-monitored system that appears to be valuable, but serves as a trap.
Distracts hackers from the real target
Helps analyze the attack
Term
Six steps to incident response
Definition
Preparation
Detection
Containment
Eradication
Recovery
Follow-up
Term
Hybrid VPN
Definition
Consists of both trusted and secure segments
Term
Trusted VPN segment
Definition
Wholly owned and operated
Term
Secure VPN segment
Definition
Encryption over public conection
Term
What is the primary difference between a VPN and a local network connection
Definition
speed
Term
Name the benefits of deploying a VPN
Definition
Cost
High productivity
Secure remote access
Term
VPN Authentication
Definition
Process of confirming the identity of the userVPN Authorizato
Term
VPN Authorization
Definition
Controlling what users can and cannot do
Term
What components create a digital signature that verifies authenticity and integrity?
Definition
Private key and hashing
Term
What are the two most important characteristics of VPN authentication
Definition
Scalable
Interoperable
Term
What form of attack can potentially evade IPS?
Definition
Insertion
Term
Most exploits are based on the exisitance of...?
Definition
System anamolies
Term
Which exploit takes advantage of variable MTUs?
Definition
DoS
Term
What is a benefit
Definition
Term
Stateful Inspection
Definition
Automatically tracking sessions (or states). This allows inbound responses to previous outbound requests (AKA dynamic packet filtering)
Term
Common firewall security strategies
Definition
Security thru obscurity
Least privilege
Simplicity
Defense in Depth
Diversity or Defense
Chokepoint
Weakest Link
Fail-safe
Forced Univversal PArticipation
Term
Revere Proxy
Definition
Hides the identity of a web server accessed from the internet
Term
Reverse Proxy use, possible reasons
Definition
load balancing/distribution
Reverse caching
Security (obfuscates internal identities)
Encryption
Term
What are firewall rules sometimes called?
Definition
Access Control Lists (ACLs)
Term
Order of the firewall rule:
Definition
protocol
Source address
Source port
Destination address
Destination port
Action
Term
3 reasons firewall data should be logged
Definition
Validate proper configuration
Tracking/trend analysis
Reactive tracking - tracing to attacks
Term
Unified Threat Management
Definition
Firewall as primary, all-encompassing gateway solution. A single device for:
firewall filtering
IPS
Antivirus
Anti-spam
VPN end-point hosting
content filtering
load balancing
logging
Term
Firewall ordering rules
Definition
Default deny last
Supporting users have an ad free experience!