NEW
Font size
S
M
L
XL
Worksheets98-366 Lesson 8 Network Infrastructures and Security
Total questions: 24
Worksheet time: 12mins
Name
Class
Date
1.
A configuration where by the DMZ is usually attached to a
separate connection of the company firewall. Therefore, the firewall has three connections—one to the company LAN, one to the DMZ, and one to the Internet.
separate connection of the company firewall. Therefore, the firewall has three connections—one to the company LAN, one to the DMZ, and one to the Internet.
a)
application-level gateway
b)
back-to-back configuration
c)
caching proxy
d)
3-leg perimeter configuration
2.
A firewall technology that supports address and port
translation and checks whether the type of application traffic is allowed.
translation and checks whether the type of application traffic is allowed.
a)
application-level gateway (ALG)
b)
back-to-back configuration
c)
Internet
d)
IP proxy
3.
A configuration that has a DMZ situated between two firewall
devices, which could be black box appliances or Microsoft Internet Security and Acceleration
(ISA) Servers.
devices, which could be black box appliances or Microsoft Internet Security and Acceleration
(ISA) Servers.
a)
3-leg perimeter configuration
b)
back-to-back configuration
c)
Firewalls
d)
Internet content filter
4.
A server or device that tries to serve client requests without actually contacting the remote server.
a)
virtual private network (VPN)
b)
caching proxy
c)
IP proxy
d)
NAT filtering
5.
Technology used within a firewall that, once the connection has been made, packets can flow between the hosts without further checking.
a)
extranet
b)
Intranet
c)
demilitarized zone
d)
circuit-level gateway
6.
A small network that is set up separately from a company’s private
local area network and the Internet. Also known as a perimeter network.
local area network and the Internet. Also known as a perimeter network.
a)
application-level gateway (ALG)
b)
extranet
c)
demilitarized zone (DMZ)
d)
perimeter network
7.
Similar to an intranet except that it is extended to users outside a company and possibly to entire organizations that are separate from or lateral to the company.
a)
extranet
b)
Internet content filter
c)
IP proxy
d)
Web 2.0
8.
A private computer network or single Web site that an organization implements in order to share data with employees around the world.
a)
IP proxy
b)
Internet content filter
c)
Intranet
d)
proxy server
9.
A device or server that is primarily used to protect one network from another.
a)
IP proxy
b)
perimeter network
c)
Firewalls
d)
Internet Engineering Task Force (IETF)
10.
A worldwide system of connected computer networks.
a)
Internet content filter
b)
internet
c)
Internet Engineering Task Force (IETF)
d)
Intranet
11.
Technology that can filter out various types of Internet activities, such as access to certain Web sites, email, instant messaging, and so on.
a)
internet
b)
Internet Engineering Task Force (IETF)
c)
intranet
d)
Internet content filter
12.
An organization that develops and promotes
Internet standards.
Internet standards.
a)
Internet Engineering Task Force (IETF)
b)
intranet
c)
IP proxy
d)
NAT filtering
13.
Technology that secures a network by keeping machines behind it anonymous; it does this through the use of NAT.
a)
Internet
b)
network intrusion prevention system (NIPS)
c)
virtual private network (VPN)
d)
IP proxy
14.
VPN technology that has quickly gaining popularity due
to the inclusion of IPSec as its security protocol.
to the inclusion of IPSec as its security protocol.
a)
Layer 2 Tunneling Protocol (L2TP)
b)
network intrusion detection system (NIDS)
c)
NAT filtering
d)
Point-to-Point Tunneling Protocol (PPTP) –
15.
Technology that can filter traffic according to ports (TCP and UDP).
a)
NAT filtering
b)
demilitarized zone (DMZ)
c)
caching proxy
d)
circuit-level gateway
16.
A device that can detect malicious network
activities (e.g., port scans and DoS attacks) by constantly monitoring network traffic.
activities (e.g., port scans and DoS attacks) by constantly monitoring network traffic.
a)
virtual private network (VPN)
b)
World Wide Web (WWW)
c)
network intrusion detection system (NIDS)
d)
Point-to-Point
17.
A device designed to inspect traffic, and, based
on its configuration or security policy, it can remove, detain, or redirect malicious traffic in addition to simply detecting it.
on its configuration or security policy, it can remove, detain, or redirect malicious traffic in addition to simply detecting it.
a)
packet filtering
b)
network intrusion prevention system (NIPS)
c)
network intrusion detection system (NIDS)
d)
Layer 2 Tunneling Protocol (L2TP)
18.
A server that acts as an intermediary between a LAN and the Internet.
a)
router
b)
internet
c)
proxy server
d)
packet filtering
19.
A small network that is set up separately from a company’s private local area network and the Internet. Also known as a DMZ.
a)
perimeter network
b)
DNS
c)
packet filtering
d)
intranet
20.
A commonly used VPN protocol, which is less
secure then L2TP with IPSec.
secure then L2TP with IPSec.
a)
network intrusion detection system (NIDS)
b)
Layer 2 Tunneling Protocol (L2TP)
c)
Point-to-Point Tunneling Protocol (PPTP)
d)
Internet Engineering Task Force (IETF)
21.
Technology used in today’s firewalls that keeps track of the state of network connections by examining the header in each packet. It should be able to distinguish between legitimate and illegitimate packets.
a)
network intrusion detection system (NIDS)
b)
network intrusion prevention system (NIPS)
c)
Web 2.0
d)
stateful packet inspection (SPI)
22.
A connection between two or more computers or devices that
are not on the same private network.
are not on the same private network.
a)
demilitarized zone (DMZ)
b)
virtual private network (VPN)
c)
circuit-level gateway
d)
extranet
23.
An interactive type of web experience compared to the previous version 1.0.
a)
NAT filtering
b)
stateful packet inspection (SPI)
c)
World Wide Web (WWW)
d)
Web 2.0
24.
An enormous system of interlinked hypertext documents that can
be accessed with a web browser.
be accessed with a web browser.
a)
stateful packet inspection (SPI)
b)
Web 2.0
c)
NAT Filtering
d)
World Wide Web (WWW)
Reset
