New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GAQM CPEH-001 Exam - Topic 1 Question 24 Discussion

Actual exam question for GAQM's CPEH-001 exam
Question #: 24
Topic #: 1
[All CPEH-001 Questions]

All the web servers in the DMZ respond to ACK scan on port 80. Why is this happening ?

Show Suggested Answer Hide Answer
Suggested Answer: D

If they used a stateful inspection firewall this firewall would know if there has been a SYN-ACK before the ACK.


Contribute your Thoughts:

0/2000 characters
Xuan
4 months ago
I agree, stateful firewalls should be a standard by now!
upvoted 0 times
...
Terina
4 months ago
Wait, are we sure they're all responding like that? Seems odd.
upvoted 0 times
...
Ilona
4 months ago
I think it's more about the lack of IDS, honestly.
upvoted 0 times
...
Sanjuana
4 months ago
Definitely a Windows thing, they tend to be more open.
upvoted 0 times
...
Diego
5 months ago
Sounds like a classic case of no stateful firewall.
upvoted 0 times
...
Miles
5 months ago
I feel like this could relate to the operating system, but I can't recall if Windows or Unix is more likely to respond this way.
upvoted 0 times
...
Nickole
5 months ago
I think we practiced a question about stateful vs. stateless firewalls. If they're not using a stateful firewall, that might explain the ACK responses on port 80.
upvoted 0 times
...
Kenia
5 months ago
I remember reading that ACK scans can sometimes indicate a lack of proper firewall configurations, but I'm not sure which option that points to.
upvoted 0 times
...
Margo
5 months ago
I’m leaning towards the idea that the company might not have an IDS in place, but I’m not completely confident about how that connects to the ACK scan.
upvoted 0 times
...
Miss
5 months ago
I'm feeling pretty confident about this one. I just need to match up the data sources with the specific requirements outlined in the question.
upvoted 0 times
...
Sharee
5 months ago
I'm a little confused by the wording of this question. Are they asking about the specific purpose of each budget type, or just the general characteristics? I'll have to read through the options again to make sure I understand what they're looking for.
upvoted 0 times
...
Almeta
5 months ago
Consulting key stakeholders is definitely the most important consideration here. The CIO needs to get buy-in from the business leaders to make any significant changes to the IT strategy.
upvoted 0 times
...

Save Cancel