
GIAC Certified Firewall Analyst - GCFW Exam Questions
QUESTION NO: 1
Which of the following techniques allows probing firewall rule-sets and finding entry points into the targeted system or network?
Which of the following techniques allows probing firewall rule-sets and finding entry points into the targeted system or network?
Correct Answer: D
QUESTION NO: 2
In which of the following steps of firewall log analysis process is aggregation for nodes defined?
In which of the following steps of firewall log analysis process is aggregation for nodes defined?
Correct Answer: D
QUESTION NO: 3
Which of the following features does the Nmap utility have?
Each correct answer represents a complete solution. Choose all that apply.
Which of the following features does the Nmap utility have?
Each correct answer represents a complete solution. Choose all that apply.
Correct Answer: A,C,D
QUESTION NO: 4
Which of the following devices works as a transparent bridge between the wireless clients and the wired network?
Which of the following devices works as a transparent bridge between the wireless clients and the wired network?
Correct Answer: A
QUESTION NO: 5
Which of the following actions can be taken as the countermeasures against the ARP spoofing attack?
Each correct answer represents a complete solution. Choose all that apply.
Which of the following actions can be taken as the countermeasures against the ARP spoofing attack?
Each correct answer represents a complete solution. Choose all that apply.
Correct Answer: B,C,D
QUESTION NO: 6
Which of the following tools is used to detect wireless LANs using the 802.11b, 802.11a, and 802.11g WLAN standards on the Windows platform?
Which of the following tools is used to detect wireless LANs using the 802.11b, 802.11a, and 802.11g WLAN standards on the Windows platform?
Correct Answer: C
QUESTION NO: 7
Distributed Checksum Clearinghouse (DCC) is a hash sharing method of spam email detection.
Which of the following protocols does the DCC use?
Distributed Checksum Clearinghouse (DCC) is a hash sharing method of spam email detection.
Which of the following protocols does the DCC use?
Correct Answer: C
QUESTION NO: 8
Which of the following applications cannot proactively detect anomalies related to a computer?
Which of the following applications cannot proactively detect anomalies related to a computer?
Correct Answer: B




