Correct Answer: D
A next-generation firewall (NGFW) is a network security device that provides capabilities beyond a traditional, stateful firewall. Unlike a traditional firewall that filters traffic using only state, port, and protocol, an NGFW includes additional features such as application awareness and control, integrated intrusion prevention, and cloud-delivered threat intelligence. This means that an NGFW can block modern threats like advanced malware and application-layer attacks, making intrusion prevention one of its key characteristics.
The feature set for NGFWs build upon traditional firewall features by including critical security functions like intrusion prevention, VPN, and anti-virus, and even encrypted web traffic inspection to help prevent packets containing malicious content from entering the network