Saturday, November 24, 2007

Networks: Firewalls

What type of network device can be configured as a perimeter firewall?

1. >>FTP server - WRONG
2. Router - Correct
3. DNS server
4. Hub

Explanation : A perimeter firewall is a device configured to filter TCP/IP traffic coming into and going out of your network. Its purpose is to isolate the network segment from other networks or the Internet. Most routers, whether implemented through hardware and software, can be configured as a perimeter firewall.

A Domain Name System (DNS) server cannot be configured as a perimeter firewall unless the computer is also configured to act as a network router, which is discouraged because of possible performance and security concerns. A DNS server is responsible for domain (DNS) name to IP address mapping and resolution.

A hub cannot act as a perimeter firewall. A hub is a relatively simple device designed to connect cables in a cable plant and provide a path over which network computers communicate. Typical hubs, by design, simply pass on all incoming traffic.

A File Transfer Protocol (FTP) server cannot be configured as a perimeter firewall unless the computer is also configured to act as a network router, which is discouraged because of possible performance and security concerns. An FTP server supports file uploads and download with network client computers.
Objective: Networks