GCFW GIAC Certified Firewall Analyst Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

A network security analyst is tasked with troubleshooting intermittent connectivity issues for an internal application server (IP address 172.16.10.50) that is supposed to be accessible from specific development subnets (10.10.0.0/24 and 10.10.1.0/24) but blocked from all other internal network segments. After reviewing firewall logs, the analyst observes that while traffic from the development subnets is correctly permitted by a specific allow rule, requests originating from unauthorized internal segments are also being blocked, but the server remains inaccessible even from the authorized subnets. The firewall employs stateful inspection and processes rules in a top-down manner. Which of the following misconfigurations is the most probable cause for the authorized development subnets being unable to reach the application server?

A broad "deny all" rule targeting the application server's IP address (172.16.10.50) is positioned above the specific "allow" rules for the development subnets.
The stateful inspection engine is incorrectly configured to ignore the source IP address in its connection tracking.
The firewall is failing to properly identify traffic originating from the development subnets due to an outdated application signature database.
A rule allowing all outbound traffic from the internal network to the internet is placed below the specific deny rule for the application server.

About the GCFW GIAC Certified Firewall Analyst Certification

These free practice questions are designed to help you assess your readiness for the GCFW GIAC Certified Firewall Analyst exam by Other. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.