CISSP · Question #1361
CISSP Question #1361: Real Exam Question with Answer & Explanation
The correct answer is C: Next-generation firewall. A next-generation firewall (NGFW) is a type of device that can provide content filtering and threat protection, and manage multiple IPSec site-to-site connections. A NGFW can inspect and block malicious or unwanted traffic based on application, user, or content level. A NGFW can
Question
Which of the following types of devices can provide content filtering and threat protection, and manage multiple IPSec site-to-site connections?
Options
- ALayer 3 switch
- BVPN headend
- CNext-generation firewall
- DProxy server
- EIntrusion prevention
Explanation
A next-generation firewall (NGFW) is a type of device that can provide content filtering and threat protection, and manage multiple IPSec site-to-site connections. A NGFW can inspect and block malicious or unwanted traffic based on application, user, or content level. A NGFW can also establish and maintain secure tunnels between different networks using IPSec, a protocol that encrypts and authenticates the data packets. A NGFW is the best option to provide the functionality of content filtering, threat protection, and IPSec site-to-site connections.
Topics
Community Discussion
No community discussion yet for this question.