Which of the following packets should NOT be dropped at a firewall protecting an organization’s internal network?

Last Updated on March 29, 2022 by Admin 3

Which of the following packets should NOT be dropped at a firewall protecting an organization’s internal network?

  • Inbound packets with Source Routing option set
  • Router information exchange protocols
  • Inbound packets with an internal address as the source IP address
  • Outbound packets with an external destination IP address
Explanation:

Normal outbound traffic has an internal source IP address and an external destination IP address.

Traffic with an internal source IP address should only come from an internal interface. Such packets coming from an external interface should be dropped.

Packets with the source-routing option enabled usually indicates a network intrusion attempt.

Router information exchange protocols like RIP and OSPF should be dropped to avoid having internal routing equipment being reconfigured by external agents.

Source: STREBE, Matthew and PERKINS, Charles, Firewalls 24seven, Sybex 2000, Chapter 10: The Perfect Firewall.

0 0 votes
Article Rating
Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments