For packets that are part of an ongoing connection, which rule would apply?

Prepare for the Network Security Examination by mastering key concepts in cybersecurity. Utilize interactive questions and detailed explanations to enhance your knowledge. Excel in your exam with our comprehensive preparation resources!

Multiple Choice

For packets that are part of an ongoing connection, which rule would apply?

Explanation:
Stateful inspection keeps track of active connections. Once a connection is established and permitted, the firewall marks it as approved, so subsequent packets that belong to that same connection are allowed automatically. This is why the appropriate rule is to pass the packet if it is part of a previously approved connection—the router isn’t re-checking a fresh ACL for every packet, it recognizes the ongoing session and permits related traffic. Dropping all packets unless an ACL explicitly permits them ignores how the firewall handles established sessions, and passing everything unless an ACL blocks it would be far too permissive and unsafe. The “either A or B” option isn’t accurate because established-connection behavior is a specific, stateful rule, not a combination of the two stateless approaches.

Stateful inspection keeps track of active connections. Once a connection is established and permitted, the firewall marks it as approved, so subsequent packets that belong to that same connection are allowed automatically. This is why the appropriate rule is to pass the packet if it is part of a previously approved connection—the router isn’t re-checking a fresh ACL for every packet, it recognizes the ongoing session and permits related traffic.

Dropping all packets unless an ACL explicitly permits them ignores how the firewall handles established sessions, and passing everything unless an ACL blocks it would be far too permissive and unsafe. The “either A or B” option isn’t accurate because established-connection behavior is a specific, stateful rule, not a combination of the two stateless approaches.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy