Firewalls & Security interview questions

54 real Firewalls & Security questions from the Networking bank, as asked in Indian campus drives and tech interviews. Every question has a verified answer and an AI-tutor explanation on placd — free to start.

1. What is Firewall?

Junior
  1. A.a firewall that evaluates each packet in isolation against rules
  2. B.probing a host's ports to discover open services, often a recon step
  3. C.a device or software that filters traffic based on a set of rules
  4. D.a policy that blocks all traffic except what is explicitly allowed
Reveal the answer + AI explanation — free account

3. Which statement is correct?

Junior
  1. A.Firewall — a device or software that filters traffic based on a set of rules
  2. B.Firewall — a firewall adding deep packet inspection, application awareness, and IPS
  3. C.Firewall — applying fine-grained security policy between individual workloads
  4. D.Firewall — absorbing or filtering volumetric attack traffic to keep services available
Reveal the answer + AI explanation — free account

4. What is Access control list (ACL)?

Junior
  1. A.a firewall that evaluates each packet in isolation against rules
  2. B.a firewall adding deep packet inspection, application awareness, and IPS
  3. C.an ordered list of permit/deny rules applied to traffic
  4. D.probing a host's ports to discover open services, often a recon step
Reveal the answer + AI explanation — free account

6. Which statement is correct?

Junior
  1. A.Access control list (ACL) — a perimeter network segment that isolates public-facing servers from the internal LAN
  2. B.Access control list (ACL) — a firewall that tracks connection state to allow return traffic automatically
  3. C.Access control list (ACL) — a web application firewall that filters HTTP traffic to block attacks like SQL injection
  4. D.Access control list (ACL) — an ordered list of permit/deny rules applied to traffic
Reveal the answer + AI explanation — free account

7. What is Default deny?

Junior
  1. A.a perimeter network segment that isolates public-facing servers from the internal LAN
  2. B.applying fine-grained security policy between individual workloads
  3. C.a persistent encrypted tunnel connecting two networks over the Internet
  4. D.a policy that blocks all traffic except what is explicitly allowed
Reveal the answer + AI explanation — free account

9. Which statement is correct?

Junior
  1. A.Default deny — a policy that blocks all traffic except what is explicitly allowed
  2. B.Default deny — an ordered list of permit/deny rules applied to traffic
  3. C.Default deny — a protocol suite that authenticates and encrypts IP packets for VPN tunnels
  4. D.Default deny — a security policy permitting only explicitly approved sources or actions
Reveal the answer + AI explanation — free account

10. What is DMZ?

Junior
  1. A.a perimeter network segment that isolates public-facing servers from the internal LAN
  2. B.a persistent encrypted tunnel connecting two networks over the Internet
  3. C.a web application firewall that filters HTTP traffic to block attacks like SQL injection
  4. D.probing a host's ports to discover open services, often a recon step
Reveal the answer + AI explanation — free account

12. Which statement is correct?

Junior
  1. A.DMZ — a perimeter network segment that isolates public-facing servers from the internal LAN
  2. B.DMZ — applying fine-grained security policy between individual workloads
  3. C.DMZ — a model that never trusts and always verifies, regardless of network location
  4. D.DMZ — a protocol suite that authenticates and encrypts IP packets for VPN tunnels
Reveal the answer + AI explanation — free account

13. What is Stateful firewall?

Mid
  1. A.a policy that blocks all traffic except what is explicitly allowed
  2. B.a firewall that tracks connection state to allow return traffic automatically
  3. C.a device or software that filters traffic based on a set of rules
  4. D.applying fine-grained security policy between individual workloads
Reveal the answer + AI explanation — free account

15. Which statement is correct?

Mid
  1. A.Stateful firewall — a firewall that tracks connection state to allow return traffic automatically
  2. B.Stateful firewall — a firewall adding deep packet inspection, application awareness, and IPS
  3. C.Stateful firewall — probing a host's ports to discover open services, often a recon step
  4. D.Stateful firewall — a perimeter network segment that isolates public-facing servers from the internal LAN
Reveal the answer + AI explanation — free account

16. What is Stateless / packet-filter firewall?

Mid
  1. A.an ordered list of permit/deny rules applied to traffic
  2. B.a firewall that evaluates each packet in isolation against rules
  3. C.an inline system that detects and actively blocks malicious traffic
  4. D.an encrypted tunnel that securely connects networks or remote users over the Internet
Reveal the answer + AI explanation — free account

18. Which statement is correct?

Mid
  1. A.Stateless / packet-filter firewall — a firewall that evaluates each packet in isolation against rules
  2. B.Stateless / packet-filter firewall — a firewall adding deep packet inspection, application awareness, and IPS
  3. C.Stateless / packet-filter firewall — applying fine-grained security policy between individual workloads
  4. D.Stateless / packet-filter firewall — a security policy permitting only explicitly approved sources or actions
Reveal the answer + AI explanation — free account

19. What is VPN?

Mid
  1. A.a perimeter network segment that isolates public-facing servers from the internal LAN
  2. B.a firewall adding deep packet inspection, application awareness, and IPS
  3. C.probing a host's ports to discover open services, often a recon step
  4. D.an encrypted tunnel that securely connects networks or remote users over the Internet
Reveal the answer + AI explanation — free account

21. Which statement is correct?

Mid
  1. A.VPN — a persistent encrypted tunnel connecting two networks over the Internet
  2. B.VPN — an encrypted tunnel that securely connects networks or remote users over the Internet
  3. C.VPN — applying fine-grained security policy between individual workloads
  4. D.VPN — an ordered list of permit/deny rules applied to traffic
Reveal the answer + AI explanation — free account

22. What is IPsec?

Mid
  1. A.absorbing or filtering volumetric attack traffic to keep services available
  2. B.a protocol suite that authenticates and encrypts IP packets for VPN tunnels
  3. C.a system that monitors traffic and alerts on suspicious activity
  4. D.a persistent encrypted tunnel connecting two networks over the Internet
Reveal the answer + AI explanation — free account

24. Which statement is correct?

Mid
  1. A.IPsec — probing a host's ports to discover open services, often a recon step
  2. B.IPsec — a device or software that filters traffic based on a set of rules
  3. C.IPsec — a protocol suite that authenticates and encrypts IP packets for VPN tunnels
  4. D.IPsec — an encrypted tunnel that securely connects networks or remote users over the Internet
Reveal the answer + AI explanation — free account

25. What is Next-generation firewall (NGFW)?

Senior
  1. A.applying fine-grained security policy between individual workloads
  2. B.a firewall that evaluates each packet in isolation against rules
  3. C.a firewall adding deep packet inspection, application awareness, and IPS
  4. D.a system that monitors traffic and alerts on suspicious activity
Reveal the answer + AI explanation — free account

26. Which term means: "a firewall adding deep packet inspection, application awareness, and IPS"?

Senior
  1. A.Zero trust network
  2. B.Next-generation firewall (NGFW)
  3. C.Stateful firewall
  4. D.Intrusion Prevention System (IPS)
Reveal the answer + AI explanation — free account

27. Which statement is correct?

Senior
  1. A.Next-generation firewall (NGFW) — a security policy permitting only explicitly approved sources or actions
  2. B.Next-generation firewall (NGFW) — a perimeter network segment that isolates public-facing servers from the internal LAN
  3. C.Next-generation firewall (NGFW) — a protocol suite that authenticates and encrypts IP packets for VPN tunnels
  4. D.Next-generation firewall (NGFW) — a firewall adding deep packet inspection, application awareness, and IPS
Reveal the answer + AI explanation — free account

28. What is Zero trust network?

Senior
  1. A.a device or software that filters traffic based on a set of rules
  2. B.a model that never trusts and always verifies, regardless of network location
  3. C.a firewall adding deep packet inspection, application awareness, and IPS
  4. D.a perimeter network segment that isolates public-facing servers from the internal LAN
Reveal the answer + AI explanation — free account

30. Which statement is correct?

Senior
  1. A.Zero trust network — an inline system that detects and actively blocks malicious traffic
  2. B.Zero trust network — a model that never trusts and always verifies, regardless of network location
  3. C.Zero trust network — absorbing or filtering volumetric attack traffic to keep services available
  4. D.Zero trust network — a persistent encrypted tunnel connecting two networks over the Internet
Reveal the answer + AI explanation — free account

Showing 30 of 54 Firewalls & Security questions — the full set, with answers, explanations and an AI tutor on every question, is inside.

Free to start

Answers, AI explanations, and a scored voice mock interview

Sign up free to check your answers with explanations, ask the AI tutor anything on any question, and take one full AI mock interview — scored like a real panel.

Practice Firewalls & Security free