Q1
Single choice
A firewall team wants to allow an internal custom application on TCP/8888 without allowing any other unknown traffic on that port. The application can be reliably identified by a custom signature.
Which approach is the most secure?