Sim-Ex™ Practice Exams for CCSA : Practice Questions

Stealth Rule and Rule Base

Home     Previous     Up     Next

Q6. What is the purpose of stealth rule in the Rule Base of VPN/FireWall?

A. It drops all communication attemps not described by the other rules in the Rule Base.

B. It is the first rule in the Rule Base that prevents traffic from directly accessing the firewall itself.

C. It is the first rule in the Rule Base that drops all packets belonging to other Protocol Stacks

D. It filters networks by Destination IP addresses

Correct Answer: B

Explanation:

Implicit Drop Rule is added by VPN-1/FireWall-1 at the bottom of the Rule Base. The purpose of this rule is to drop all packets that are not described by earlier rules in the Rule Base.
Compare this with the stealth rule, which is the first rule in the Rule Base. The purpose of this is to prevent traffic from directly accessing the firewall itself.

Home     Previous     Up     Next


Disclaimer: Simulationexams.com is not affiliated with any certification vendor, and Sim-Ex™ Practice Exams are written independently by SimulationExams.com and not affiliated or authorized by respective certification providers. Sim-Ex™ is a trade mark of SimulationExams.com or entity representing Simulationexams.com.CCSA®, CCSE® are registered trademarks of CheckPoint™