Review Questions

1:The Cisco IOS Firewall feature set is built around the concept of preventing what?
2:When an attacker opens a large number of half-open TCP connections, this is what type of attack?
3:TCP intercept, by default, drops which connection first?
4:What feature in the Cisco IOS Firewall gives you intelligent filtering of TCP and UDP packets?
5:What is the default setting for the low value of half-open connections before TCP intercept aggressive mode stops?
6:What is spoofing?
7:Can CBAC can be used to prevent SMTP attacks?
8:Which Cisco IOS Firewall feature allows you to run CBAC-supported applications across nonstandard ports?

Get CCIE Practical Studies: Security (CCIE Self-Study) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.