I ran into a really tough practice exam question over the weekend. Unfortunately, I didn't get the exact question written down, but it was basically showing a static ACL and asking what type of vulnerability the ACL was configured to protect against. Since the ACL showed a "deny ip" statement for the address range of the inside network for traffic coming in the outside interface, I chose "IP spoofing" as the attack the ACL was designed to block, but the practice exam gave "TCP SYN Attack" as the correct answer. Now, I'm more than willing to admit either I or the practice exam were wrong, but I'm wondering if anyone has any good resources for identifying what kinds of vulnerabilities certain types of static ACL's are designed to block...I kinda feel like I'm flying blind there...
Thanks!