nerdexam
Cisco

350-701 · Question #837

What is an advantage of using a next-generation firewall compared to a traditional firewall?

The correct answer is D. Next-generation firewalls have threat intelligence feeds, and traditional firewalls use signature. Next-generation firewalls (NGFWs) offer enhanced features compared to traditional firewalls, Threat intelligence feeds: NGFWs integrate with dynamic threat intelligence databases to protect against known and emerging threats in real time. Application awareness and control…

Submitted by tyler.j· Mar 30, 2026Network Security

Question

What is an advantage of using a next-generation firewall compared to a traditional firewall?

Options

  • ANext-generation firewalls have stateless inspection capabilities, and traditional firewalls use
  • BNext-generation firewalls use dynamic packet filtering, and traditional firewalls use static packet
  • CNext-generation firewalls use intrusion prevention policies, and traditional firewalls use intrusion
  • DNext-generation firewalls have threat intelligence feeds, and traditional firewalls use signature

How the community answered

(29 responses)
  • A
    3% (1)
  • C
    3% (1)
  • D
    93% (27)

Explanation

Next-generation firewalls (NGFWs) offer enhanced features compared to traditional firewalls, Threat intelligence feeds: NGFWs integrate with dynamic threat intelligence databases to protect against known and emerging threats in real time. Application awareness and control: NGFWs can identify and manage traffic based on applications, not just ports and protocols. Integrated intrusion prevention: NGFWs can proactively block malicious traffic using integrated Intrusion Prevention Systems (IPS). In contrast, traditional firewalls primarily rely on: Static rule-based filtering: Focused on ports, protocols, and IP addresses. Signature detection: Detects threats based on predefined patterns or signatures, which is less adaptive than dynamic threat feeds.

Topics

#NGFW vs traditional firewall#threat intelligence feeds#signature-based detection#firewall comparison

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice