GATE | GATE CS 2011 | Question 2

A layer-4 firewall (a device that can look at all protocol headers up to the transport layer) CANNOT


block entire HTTP traffic during 9:00PM and 5 :0OAM


block all ICMP traffic


stop incoming traffic from a specific IP address but allow outgoing traffic to the same IP address


block TCP traffic from a specific user on a multi-user system during 9:00PM and 5:00AM

Answer: (D)


A.Can Block entire HTTP traffic by blocking TCP port 80 and it is possible because it is L4 firewall. 
D) As it is L4 firewall can not block packets based on user identity because it is the responsibility of Application layer

Last Updated : 02 Nov, 2022
