2. ACLs filter packets by using a __________ base to determine whether to allow a packet to pass.
3. The ACK flag is normally sent at the end of the three-way ______________ to indicate that a
connection is established.
4. A primary objective of a rule base is to ______________ communications based on complex rules.
5. The rule base should permit access to public servers in the _________ and enable users to access the
Internet.
MATCHING
1. software that forwards network packets and caches Web pages to speed up
network performance
2. the end point of a computer-to–computer connection defined by an IP address and port address
3. a packet-filtering rule that comes last in a rule base and covers any packets
that have not been covered by preceding rules
4. hardware devices with firewall functionality
5. filters that are similar to stateless packet filters, except that they also determine whether to allow or
block packets based on information about current connections
6. hardware or software configured to block unauthorized access to a network
7. simple filters that determine whether to allow or block packets based on information in protocol
headers
8. the collection of rules that filter traffic at an interface of a firewall