iSACA Cybersecurity Fundamentals Certification Practice Exam

Disable ads (and more) with a membership for a one time $2.99 payment

Discover the essentials of the iSACA Cybersecurity Fundamentals Certification. Engage with flashcards and MCQs, with hints and explanations, to ensure exam readiness!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Which is a disadvantage of a packet-filtering firewall?

  1. It can be complex to configure

  2. It can hide the network from outside intrusion

  3. It is vulnerable when filters are misconfigured

  4. It provides too much control over IP traffic

The correct answer is: It is vulnerable when filters are misconfigured

Packet-filtering firewalls are designed to allow or block traffic based on predetermined security rules. A disadvantage of these firewalls is their vulnerability when filters are misconfigured. This misconfiguration can lead to unintentional exposure of sensitive network traffic or resources, allowing unwanted access from outside sources or blocking legitimate traffic necessary for business operations. When filters are not set correctly, they might either allow harmful traffic to pass through or block legitimate traffic that users need to establish connections. This makes it crucial to have a clear understanding of the traffic patterns and security requirements of the network to ensure appropriate configurations are made. Proper management and regular audits of these rules are necessary to mitigate this vulnerability and to maintain network security. Other options present different aspects of packet-filtering firewalls, but they do not directly address a significant security flaw as misconfiguration does. For instance, while configuration complexity may be an issue, it does not inherently create security vulnerabilities unless coupled with improper management. The ability of the firewall to hide the network and control over IP traffic also does not align with the core disadvantage associated with the threat of misconfiguration.