📝 Section Review: Inspection & Threat Detection
اہم نکاتKey TakeawaysKey Takeaways
- Default global policy پہلے سے common protocols (DNS, FTP, HTTP) inspect کرتی ہے — اپنی add کرنے سے پہلے جانیں کیا on ہے۔Default global policy pehle se common protocols (DNS, FTP, HTTP) inspect karti hai — apni add karne se pehle jano kya on hai.The default global policy already inspects common protocols (DNS, FTP, HTTP) — know what's on before adding your own.
- Application inspection dynamic ports کھولتی ہے (جیسے FTP data channels) جنہیں ACLs اکیلے handle نہیں کر سکتیں۔Application inspection dynamic ports kholti hai (jaise FTP data channels) jinhe ACLs akele handle nahi kar sakti.Application inspection opens dynamic ports (e.g. FTP data channels) that ACLs alone cannot handle.
- Service-policy binding کے بغیر policy-map کچھ نہیں کرتا — attachment وہ step ہے جو لوگ بھول جاتے ہیں۔Service-policy binding ke baghair policy-map kuch nahi karta — attachment woh step hai jo log bhool jate hain.A policy-map without a service-policy binding does nothing — attachment is the step people forget.
- Threat detection attack rates دیکھتا ہے اور scanners کو automatically shun کر سکتا ہے — ہمیشہ اپنے management hosts کو except کریں۔Threat detection attack rates dekhta hai aur scanners ko automatically shun kar sakta hai — hamesha apne management hosts ko except karo.Threat detection watches attack rates and can shun scanners automatically — always except your own management hosts.
- FirePOWER ASA کو IPS والا next-gen firewall بناتا ہے — concept سمجھیں چاہے lab اسے run نہ کر سکے۔FirePOWER ASA ko IPS wala next-gen firewall banata hai — concept samjho chahe lab ise run na kar sake.FirePOWER turns the ASA into a next-gen firewall with IPS — understand the concept even if the lab can't run it.
خود جانچ (مشق)Self-Check (Practice)Self-Check (Practice)
یہ مشقی سوالات ہیں، امتحانی سوالات نہیں۔These are practice questions, not exam questions.These are practice questions, not exam questions.
❓ MPF کے تین building blocks اور ان کے roles بتائیں۔MPF ke teen building blocks aur unke roles batao.Name the three MPF building blocks and their roles.
Class-map (traffic match کریں)، policy-map (ہر class کے لیے inspect/police جیسے actions define کریں)، service-policy (policy کو interface یا globally attach کریں)۔Class-map (traffic match karo), policy-map (har class ke liye inspect/police jaise actions define karo), service-policy (policy ko interface ya globally attach karo).Class-map (match the traffic), policy-map (define actions like inspect/police per class), service-policy (attach the policy to an interface or globally).
❓ Basic vs scanning threat detection؟Basic vs scanning threat detection?Basic vs scanning threat detection?
Basic threat detection ہر interface پر drops، scans اور SYN attacks کی rates track کرتا ہے؛ scanning threat detection sweeping hosts track کرتا ہے اور attackers کو auto-shun کر سکتا ہے۔ `show threat-detection rate` / `show threat-detection shun` سے دیکھیں۔Basic threat detection har interface par drops, scans aur SYN attacks ki rates track karta hai; scanning threat detection sweeping hosts track karta hai aur attackers ko auto-shun kar sakta hai. `show threat-detection rate` / `show threat-detection shun` se dekho.Basic threat detection tracks per-interface rates of drops, scans, and SYN attacks; scanning threat detection tracks sweeping hosts and can auto-shun attackers. View with `show threat-detection rate` / `show threat-detection shun`.
❓ FirePOWER ASA میں کیا add کرتا ہے؟FirePOWER ASA mein kya add karta hai?What does FirePOWER add to an ASA?
FirePOWER (SFR module) ASA میں next-gen IPS، URL filtering اور malware inspection add کرتا ہے؛ traffic MPF `sfr` action سے اسے بھیجا جاتا ہے۔ ASAv labs میں یہ concept-only ہے۔FirePOWER (SFR module) ASA mein next-gen IPS, URL filtering aur malware inspection add karta hai; traffic MPF `sfr` action se usay bheja jata hai. ASAv labs mein ye concept-only hai.FirePOWER (SFR module) adds next-gen IPS, URL filtering, and malware inspection to the ASA; traffic is sent to it via an MPF `sfr` action. On ASAv labs it's concept-only.