nerdexam
(ISC)2(ISC)2

CISSP · Question #1168

CISSP Question #1168: Real Exam Question with Answer & Explanation

The correct answer is D: Static Packet Filtering. Static packet filtering is a type of filtering that examines the header of each packet and allows or denies it based on a set of predefined rules or criteria, such as the source and destination IP addresses, ports, protocols, or flags. Static packet filtering is simple, fast, and

Submitted by haru.x· Mar 5, 2026Communication and Network Security

Question

All hosts on the network are sending logs via syslog-ng to the log collector. The log collector is behind its own firewall, The security professional wants to make sure not to put extra load on the firewall due to the amount of traffic that is passing through it. Which of the following types of filtering would MOST likely be used?

Options

  • AUniform Resource Locator (URL) Filtering
  • BWeb Traffic Filtering
  • CDynamic Packet Filtering
  • DStatic Packet Filtering

Explanation

Static packet filtering is a type of filtering that examines the header of each packet and allows or denies it based on a set of predefined rules or criteria, such as the source and destination IP addresses, ports, protocols, or flags. Static packet filtering is simple, fast, and stateless, meaning that it does not keep track of the state or the context of the packets or the connections. Static packet filtering can be used to reduce the load on the firewall by filtering out unwanted or malicious traffic before it reaches the log collector. Uniform Resource Locator (URL) filtering is a type of filtering that blocks or allows access to specific websites or web pages based on their URLs or keywords. Web traffic filtering is a type of filtering that analyzes the content or the behavior of the web traffic and blocks or allows it based on a set of predefined rules or criteria, such as the type, the size, the origin, or the destination of the web traffic. Dynamic packet filtering is a type of filtering that examines the header and the payload of each packet and allows or denies it based on a set of predefined rules or criteria, as well as the state or the context of the packets or the connections. Dynamic packet filtering is more complex, slower, and stateful, meaning that it keeps track of the state or the context of the packets or the connections.

Topics

#firewall filtering#static packet filtering#network security

Community Discussion

No community discussion yet for this question.

Full CISSP PracticeBrowse All CISSP Questions