nerdexam
Check_Point

156-215.80 · Question #125

Fill in the blanks: The Application Layer Firewalls inspect traffic through the ________ layer(s) of the TCP/IP model and up to and including the ________ layer.

The correct answer is A. Lower; Application. Application Layer Firewalls inspect traffic starting from the lower layers of the TCP/IP model (Network Access and Internet) and continue up through and including the Application layer.

Introduction to Check Point Technology

Question

Fill in the blanks: The Application Layer Firewalls inspect traffic through the ________ layer(s) of the TCP/IP model and up to and including the ________ layer.

Options

  • ALower; Application
  • BFirst two; Internet
  • CFirst two; Transport
  • DUpper; Application

How the community answered

(34 responses)
  • A
    94% (32)
  • C
    3% (1)
  • D
    3% (1)

Why each option

Application Layer Firewalls inspect traffic starting from the lower layers of the TCP/IP model (Network Access and Internet) and continue up through and including the Application layer.

ALower; ApplicationCorrect

Application Layer Firewalls perform deep packet inspection beginning at the lower layers of the TCP/IP model - specifically the Network Access and Internet layers - and extend inspection all the way up to and including the Application layer. This full-stack inspection is what distinguishes them from simpler packet-filtering firewalls that only examine lower-layer headers.

BFirst two; Internet

'First two; Internet' is incorrect because the Internet layer is the second layer in TCP/IP, meaning inspection would stop at IP addressing and routing, which does not reach the Application layer and does not describe an Application Layer Firewall.

CFirst two; Transport

'First two; Transport' is incorrect because stopping at the Transport layer describes a stateful inspection firewall, not an Application Layer Firewall, which must inspect up to the Application layer.

DUpper; Application

'Upper; Application' is incorrect because Application Layer Firewalls do not begin at upper layers - they inspect the full TCP/IP stack starting from the lower layers to gain complete session context.

Concept tested: Application Layer Firewall TCP/IP inspection depth

Source: https://www.cisco.com/c/en/us/products/security/firewalls/what-is-a-firewall.html

Topics

#Application Layer Firewall#TCP/IP model#OSI layers#traffic inspection

Community Discussion

No community discussion yet for this question.

Full 156-215.80 Practice