NETSEC-PRO · Question #13
Which functionality does an NGFW use to determine whether new session setups are legitimate or illegitimate?
The correct answer is B. SYN cookies. To prevent SYN flood attacks, the NGFW uses SYN cookies to validate legitimate session SYN cookies allow the firewall to verify the legitimacy of new session requests without allocating resources until the handshake is completed. This prevents SYN flood attacks from exhausting sy
Question
Which functionality does an NGFW use to determine whether new session setups are legitimate or illegitimate?
Options
- ASYN bit
- BSYN cookies
- CRandom Early Detection (RED)
- DSYN flood protection
How the community answered
(48 responses)- A10% (5)
- B81% (39)
- C2% (1)
- D6% (3)
Explanation
To prevent SYN flood attacks, the NGFW uses SYN cookies to validate legitimate session SYN cookies allow the firewall to verify the legitimacy of new session requests without allocating resources until the handshake is completed. This prevents SYN flood attacks from exhausting system resources. SYN cookies mitigate resource exhaustion by ensuring only legitimate connections are
Topics
Community Discussion
No community discussion yet for this question.