1. What is Firewall ? Junior A. a firewall that evaluates each packet in isolation against rules B. probing a host's ports to discover open services, often a recon step C. a device or software that filters traffic based on a set of rules D. a policy that blocks all traffic except what is explicitly allowed Reveal the answer + AI explanation — free account
2. Which term means: "a device or software that filters traffic based on a set of rules"? Junior A. Stateless / packet-filter firewall B. Firewall C. Zero trust network D. Next-generation firewall (NGFW) Reveal the answer + AI explanation — free account
3. Which statement is correct? Junior A. Firewall — a device or software that filters traffic based on a set of rules B. Firewall — a firewall adding deep packet inspection, application awareness, and IPS C. Firewall — applying fine-grained security policy between individual workloads D. Firewall — absorbing or filtering volumetric attack traffic to keep services available Reveal the answer + AI explanation — free account
4. What is Access control list (ACL) ? Junior A. a firewall that evaluates each packet in isolation against rules B. a firewall adding deep packet inspection, application awareness, and IPS C. an ordered list of permit/deny rules applied to traffic D. probing a host's ports to discover open services, often a recon step Reveal the answer + AI explanation — free account
5. Which term means: "an ordered list of permit/deny rules applied to traffic"? Junior A. Site-to-site VPN B. Intrusion Detection System (IDS) C. Access control list (ACL) D. DMZ Reveal the answer + AI explanation — free account
6. Which statement is correct? Junior A. Access control list (ACL) — a perimeter network segment that isolates public-facing servers from the internal LAN B. Access control list (ACL) — a firewall that tracks connection state to allow return traffic automatically C. Access control list (ACL) — a web application firewall that filters HTTP traffic to block attacks like SQL injection D. Access control list (ACL) — an ordered list of permit/deny rules applied to traffic Reveal the answer + AI explanation — free account
7. What is Default deny ? Junior A. a perimeter network segment that isolates public-facing servers from the internal LAN B. applying fine-grained security policy between individual workloads C. a persistent encrypted tunnel connecting two networks over the Internet D. a policy that blocks all traffic except what is explicitly allowed Reveal the answer + AI explanation — free account
8. Which term means: "a policy that blocks all traffic except what is explicitly allowed"? Junior A. Default deny B. VPN C. Allowlist D. Intrusion Prevention System (IPS) Reveal the answer + AI explanation — free account
9. Which statement is correct? Junior A. Default deny — a policy that blocks all traffic except what is explicitly allowed B. Default deny — an ordered list of permit/deny rules applied to traffic C. Default deny — a protocol suite that authenticates and encrypts IP packets for VPN tunnels D. Default deny — a security policy permitting only explicitly approved sources or actions Reveal the answer + AI explanation — free account
10. What is DMZ ? Junior A. a perimeter network segment that isolates public-facing servers from the internal LAN B. a persistent encrypted tunnel connecting two networks over the Internet C. a web application firewall that filters HTTP traffic to block attacks like SQL injection D. probing a host's ports to discover open services, often a recon step Reveal the answer + AI explanation — free account
11. Which term means: "a perimeter network segment that isolates public-facing servers from the internal LAN"? Junior A. DMZ B. Intrusion Detection System (IDS) C. WAF D. Default deny Reveal the answer + AI explanation — free account
12. Which statement is correct? Junior A. DMZ — a perimeter network segment that isolates public-facing servers from the internal LAN B. DMZ — applying fine-grained security policy between individual workloads C. DMZ — a model that never trusts and always verifies, regardless of network location D. DMZ — a protocol suite that authenticates and encrypts IP packets for VPN tunnels Reveal the answer + AI explanation — free account
13. What is Stateful firewall ? Mid A. a policy that blocks all traffic except what is explicitly allowed B. a firewall that tracks connection state to allow return traffic automatically C. a device or software that filters traffic based on a set of rules D. applying fine-grained security policy between individual workloads Reveal the answer + AI explanation — free account
14. Which term means: "a firewall that tracks connection state to allow return traffic automatically"? Mid A. Stateful firewall B. VPN C. Access control list (ACL) D. Microsegmentation Reveal the answer + AI explanation — free account
15. Which statement is correct? Mid A. Stateful firewall — a firewall that tracks connection state to allow return traffic automatically B. Stateful firewall — a firewall adding deep packet inspection, application awareness, and IPS C. Stateful firewall — probing a host's ports to discover open services, often a recon step D. Stateful firewall — a perimeter network segment that isolates public-facing servers from the internal LAN Reveal the answer + AI explanation — free account
16. What is Stateless / packet-filter firewall ? Mid A. an ordered list of permit/deny rules applied to traffic B. a firewall that evaluates each packet in isolation against rules C. an inline system that detects and actively blocks malicious traffic D. an encrypted tunnel that securely connects networks or remote users over the Internet Reveal the answer + AI explanation — free account
17. Which term means: "a firewall that evaluates each packet in isolation against rules"? Mid A. VPN B. Stateful firewall C. DDoS mitigation D. Stateless / packet-filter firewall Reveal the answer + AI explanation — free account
18. Which statement is correct? Mid A. Stateless / packet-filter firewall — a firewall that evaluates each packet in isolation against rules B. Stateless / packet-filter firewall — a firewall adding deep packet inspection, application awareness, and IPS C. Stateless / packet-filter firewall — applying fine-grained security policy between individual workloads D. Stateless / packet-filter firewall — a security policy permitting only explicitly approved sources or actions Reveal the answer + AI explanation — free account
19. What is VPN ? Mid A. a perimeter network segment that isolates public-facing servers from the internal LAN B. a firewall adding deep packet inspection, application awareness, and IPS C. probing a host's ports to discover open services, often a recon step D. an encrypted tunnel that securely connects networks or remote users over the Internet Reveal the answer + AI explanation — free account
20. Which term means: "an encrypted tunnel that securely connects networks or remote users over the Internet"? Mid A. Intrusion Detection System (IDS) B. DMZ C. VPN D. Default deny Reveal the answer + AI explanation — free account
21. Which statement is correct? Mid A. VPN — a persistent encrypted tunnel connecting two networks over the Internet B. VPN — an encrypted tunnel that securely connects networks or remote users over the Internet C. VPN — applying fine-grained security policy between individual workloads D. VPN — an ordered list of permit/deny rules applied to traffic Reveal the answer + AI explanation — free account
22. What is IPsec ? Mid A. absorbing or filtering volumetric attack traffic to keep services available B. a protocol suite that authenticates and encrypts IP packets for VPN tunnels C. a system that monitors traffic and alerts on suspicious activity D. a persistent encrypted tunnel connecting two networks over the Internet Reveal the answer + AI explanation — free account
23. Which term means: "a protocol suite that authenticates and encrypts IP packets for VPN tunnels"? Mid A. Site-to-site VPN B. WAF C. VPN D. IPsec Reveal the answer + AI explanation — free account
24. Which statement is correct? Mid A. IPsec — probing a host's ports to discover open services, often a recon step B. IPsec — a device or software that filters traffic based on a set of rules C. IPsec — a protocol suite that authenticates and encrypts IP packets for VPN tunnels D. IPsec — an encrypted tunnel that securely connects networks or remote users over the Internet Reveal the answer + AI explanation — free account
25. What is Next-generation firewall (NGFW) ? Senior A. applying fine-grained security policy between individual workloads B. a firewall that evaluates each packet in isolation against rules C. a firewall adding deep packet inspection, application awareness, and IPS D. a system that monitors traffic and alerts on suspicious activity Reveal the answer + AI explanation — free account
26. Which term means: "a firewall adding deep packet inspection, application awareness, and IPS"? Senior A. Zero trust network B. Next-generation firewall (NGFW) C. Stateful firewall D. Intrusion Prevention System (IPS) Reveal the answer + AI explanation — free account
27. Which statement is correct? Senior A. Next-generation firewall (NGFW) — a security policy permitting only explicitly approved sources or actions B. Next-generation firewall (NGFW) — a perimeter network segment that isolates public-facing servers from the internal LAN C. Next-generation firewall (NGFW) — a protocol suite that authenticates and encrypts IP packets for VPN tunnels D. Next-generation firewall (NGFW) — a firewall adding deep packet inspection, application awareness, and IPS Reveal the answer + AI explanation — free account
28. What is Zero trust network ? Senior A. a device or software that filters traffic based on a set of rules B. a model that never trusts and always verifies, regardless of network location C. a firewall adding deep packet inspection, application awareness, and IPS D. a perimeter network segment that isolates public-facing servers from the internal LAN Reveal the answer + AI explanation — free account
29. Which term means: "a model that never trusts and always verifies, regardless of network location"? Senior A. Zero trust network B. Next-generation firewall (NGFW) C. Port scanning D. VPN Reveal the answer + AI explanation — free account
30. Which statement is correct? Senior A. Zero trust network — an inline system that detects and actively blocks malicious traffic B. Zero trust network — a model that never trusts and always verifies, regardless of network location C. Zero trust network — absorbing or filtering volumetric attack traffic to keep services available D. Zero trust network — a persistent encrypted tunnel connecting two networks over the Internet Reveal the answer + AI explanation — free accountShowing 30 of 54 Firewalls & Security questions — the full set, with answers, explanations and an AI tutor on every question, is inside.