PrepAway - Latest Free Exam Questions & Answers

Which of the following firewall rules is less likely to be found on a firewall installed between and organizat

Which of the following firewall rules is less likely to be found on a firewall installed between and
organization internal network and the Internet?

PrepAway - Latest Free Exam Questions & Answers

A.
Permit all traffic to and from local host.

B.
Permit all inbound ssh traffic

C.
Permit all inbound tcp connections.

D.
Permit all syslog traffic to log-server.abc.org.

Explanation:
Option “C” is a very bad practice in a firewall connecting one of its interfaces to a public network like
Internet. Since in that rule you are allowing all inbound TCP traffic, the hackers can send all the
attacks they want to any TCP port, they can make port scanning, Syn Attacks, and many other
dangerous DoS activities to our private network. Permit the traffic from local host is a best practice,
our firewall is the local host. Permit SSH (Secure Shell) is also good because this protocol use
cryptography.


Leave a Reply