All quizzes
Free quiz · 28 questions in the bank

Firewall quiz

Test your Firewall knowledge with a free interactive quiz — 28 questions with answers and explanations. No signup needed to play.

Question 1/12Score 0

Why do many security teams treat unrestricted egress as at least as important to fix as unrestricted ingress?

In this round
  1. Why do many security teams treat unrestricted egress as at least as important to fix as unrestricted ingress?
  2. Which of these is the default behavior for most modern systems — cloud security groups, iptables/nftables with conntrack, and consumer router NAT?
  3. What specifically does a Web Application Firewall (WAF) protect against that a general network firewall typically does not?
  4. What capability distinguishes a next-generation firewall (NGFW) from a traditional stateful packet filter?
  5. What is a key limitation of a basic packet-filtering firewall operating at layers 3/4?
  6. What is the primary function of a firewall?
  7. A firewall uses first-match-wins rule evaluation. A broad "allow all HTTP traffic" rule is placed above a more specific "deny HTTP from region X" rule. What happens?
  8. Why does a stateless packet filter typically require two separate rules to allow a single outbound TCP connection to succeed?
  9. Why might a team explicitly use a NACL to deny traffic from a known-malicious IP range, in addition to relying on security groups?
  10. Why is logging denied and allowed traffic (flow logs, firewall logs) considered a critical part of firewall operations, not an optional extra?
  11. Why is leaving egress traffic completely unrestricted (default-allow-all outbound) a security risk, even if ingress is tightly locked down?
  12. How does a proxy (application-layer gateway) firewall differ from a packet-filtering firewall?
Gaps to close?
Read the curated Firewall notes — core concepts, patterns, interview prep.
Firewall notes

More quizzes

.NETAccessibilityAgile MethodologyAirflowAlertmanagerAlgorithms