Pro Coder Quiz
CapDev Harbinger Group

ProCoder Quiz Apr 2025: Web Application Firewall

Top 3 Winners:

Tejas Satawekar, Anita Khareshiya and  Rupali Warshetti

Congratulations!!

Quiz Questions and answers are as below:


1. AWS WAF……….

a) To manage IAM roles

b) To monitor application logs

c) Ensures common threats cannot hamper an application

d) To store static website content

Answer: c) Ensures common threats cannot hamper an application


2. Which of the following is a lesser known attack that AWS WAF protects against?

a) SQL Injection

b) Data Backup Failure

c) Cross-Site Scripting (XSS)

d) DDoS

Answer: b) Data Backup Failure


3. AWS WAF directly integrates with ……………………..

a) Amazon S3

b) Amazon CloudFront

c) Amazon EC2

d) Amazon RDS

Answer:b) Amazon CloudFront


4. What are managed rule groups?

a) Billing dashboards

b) Performance testing rules

c) Pre-configured rules provided by AWS for security

d) Custom rules written by the user

Answer: c) Pre-configured rules provided by AWS for security


5. What does a WebACL do?

a) Creates a security group

b) Defines IAM access

c) Acts as a firewall policy containing rules

d) Manages Lambda executions

Answer: c) Acts as a firewall policy containing rules


6. Rate-based rules in AWS WAF ensure that:

a) the number of requests from an IP are limited

b) Increase server speed

c) Schedule Lambda functions

d) Improve billing visibility

Answer: a) the number of requests from an IP are limited


7. AWS WAF can block requests based on:

a) User password

b) IP address and geographic location

c) Network bandwidth

d) Storage size

Answer: b) IP address and geographic location


8. One key benefit of integrating AWS WAF with CloudFront is:

a) Faster database queries

b) Edge-level security filtering

c) File compression

d) CloudFormation automation

Answer: b) Edge-level security filtering


9. What feature helps in reducing bot traffic in AWS WAF?

a) EC2 Auto Scaling

b) Bot Control

c) Amazon Macie

d) Amazon Inspector

Answer: b) Bot Control


10. Which AWS service is best used to monitor WAF activity logs?

a) Amazon S3

b) AWS CodePipeline

c) Amazon CloudWatch

d) Amazon QuickSight

Answer: c) Amazon CloudWatch


11. AWS WAF is best suited for:

a) On-premise firewalls

b) Web apps hosted on AWS

c) IoT device monitoring

d) Internal corporate networks

Answer: b) Web apps hosted on AWS


12. What type of pricing does AWS WAF follow?

a) Subscription-only model

b) Pay-as-you-go model

c) Annual contract only

d) Free tier only

Answer: b) Pay-as-you-go model


13. Which of the following is a challenge with AWS WAF?

a) High performance

b) Complexity in rule tuning

c) Easy to set up

d) Unlimited free rules

Answer: b) Complexity in rule tuning


14. Which rule types can you define in AWS WAF?

a) Static only

b) IP-based, Rate-based, Geo-based

c) CloudFormation-based

d) Shell-scripted rules

Answer: b) IP-based, Rate-based, Geo-based


15. AWS WAF can protect which of the following?

a) Amazon S3 buckets

b) VPC subnets

c) REST APIs and web applications

d) EC2 key pairs

Answer: c) REST APIs and web applications


Last modified: Friday, 18 April 2025, 6:15 PM