Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

CISSP Ch. 4

Total questions: 35

Worksheet time: 35mins

Name
Class
Date
1.
Which type of firewall examines source and destination addresses, source of origin, and relationship between packets of previous similar sessions allowing for broad range of access for users and activities?
a)
Application level gateway firewalls
b)
Circuit level gateway firewalls
c)
Stateful inspection firewalls
d)
Static packet filtering firewalls
2.
Which protocol reports multicast group memberships to the router?
a)
IMAP
b)
ICMP
c)
BGP
d)
IGMP
3.
What would be the least desired intrusion response from an IDS in a critical environment?
a)
False positive
b)
Alarm
c)
Alert
d)
False negative
4.
True or False: An IDS has the ability to stop network traffic.
a)
True
b)
False
5.
Access Control Lists (ACLs) used in Packet Filtering Firewalls can degrade performance. True or False?
a)
True
b)
False
6.
Which of the following attacks is typically used for identifying the topology of the target network?
a)
Spoofing
b)
Sniffing
c)
Smurfing
d)
Scanning
7.
Which form of cabling is least susceptible to EM interference?
a)
UTP
b)
STP
c)
Coaxial
d)
Fiber optic
8.
The time taken by a router to recognize a best path in the event of any change or network outage is called __.
a)
Timeout
b)
ARP
c)
Convergence time
d)
Sliding window
9.
Which is NOT an authentication protocol for VPN?
a)
CHAP
b)
MBA-CHAPS
c)
MS-CHAP
d)
EAP-TLS
10.
Which Ethernet type is fastest?
a)
100Base TX (Fast Ethernet)
b)
10GBaseT
c)
1000BaseT
d)
10Base2
11.
Which network topology is the most commonly used today?
a)
Bus
b)
Star
c)
Hybrid
d)
Mesh
12.
This type of IDS analyzes traffic and compares it to attack or state patterns.
a)
Anomaly-based
b)
Signature-based
c)
Intrusion-based
d)
Network-based
13.
Configured to be attractive to hackers and lure them into spending time attacking while information is gathered about the attack.
a)
Sugar-net
b)
IDS
c)
Honeypot
d)
Proxy Server
14.
A device used to extend the distance of a network.
a)
Bridge
b)
Switch
c)
Router
d)
Repeater
15.
Which transfer mode forwards 53-byte fixed cells instead of various frame or packet lengths?
a)
ATM
b)
Frame Relay
c)
SONET
d)
Multiplexing
16.
In order to advertise public network addresses to the Internet, the Border Gateway Protocol (BGP) is used. What must an organization obtain that is used in conjunction with BGP in order to advertise its public network addresses to its broadband providers?
a)
Virtual Private Network
b)
Autonomous System Number
c)
Digital Subscriber Number
d)
Data Link Control
17.
Which is NOT a cabling behavior?
a)
Noise
b)
Crosstalk
c)
Eavesdropping
d)
Chatter
18.
Amendment that addressed problems that were introduced when wireless clients roam from one AP to another?
a)
802.11f
b)
802.11ac
c)
802.11a
d)
802.11
19.
The transport layer establishes a logical connection between two devices and provides transport services for data delivery. Which of the following protocols is NOT operated within the transport layer?
a)
TCP
b)
UDP
c)
SPX
d)
NFS
20.
Maps private IP addresses to public IP addresses.
a)
DNS
b)
IMAP
c)
PAT
d)
NAT
21.
Type of network that encompasses a large area such as the downtown of a city.
a)
MAN
b)
LAN
c)
WAN
d)
FLAN
22.
192.0.0.0 - 223.255.255.255
a)
Class B
b)
Class A
c)
Class C
d)
Class D
23.
In which ISO/OSI layer do routers operate?
a)
Layer 2
b)
Layer 3
c)
Layer 4
d)
Layer 5
24.
The application layer is responsible for interfacing user applications with network services or the operating system. It allows applications to communicate with the protocol stack. All of the following application-specific protocols are found within the application layer EXCEPT?
a)
HyperText Transfer Protocol (HTTP)
b)
Network file system (NFS)
c)
Simple Mail Transfer Protocol (SMTP)
d)
File Transfer Protocol (FTP)
25.
What's a rule-based IDS (intrusion detection system)?
a)
It employs pattern matching and can detect new or zero day attacks
b)
It's a system that learns the typical activities of a machine or network, spots atypical activity, and may be able to detect new or zero day attacks
c)
It uses IF/THEN programming, but is ineffective at detecting new or zero day attacks
d)
None of these.
26.
This type of attack intercepts legitimate traffic between two entities.
a)
ARP
b)
ICMP
c)
MITM
d)
SIYO
27.
Type of attack where DNS clients send requests for name-to-IP address resolution to a DNS server.
a)
DNS Cache Scanning
b)
DNS Cache Poisoning
c)
Client DNS Exploitation
d)
DoS
28.
Unsolicited e-mails, usually trying to sell something.
a)
Vienna sausages
b)
Relay
c)
Spam
d)
Wardriving
29.
Which is NOT a type of e-mail attack.
a)
Whaling
b)
Spear-phishing
c)
Cyber-fishing
d)
E-mail spoofing
30.
Which of the following protocols and transmission specifications is for wireless LANs (WLANs)?
a)
X.509
b)
None of the above
c)
IEEE 802.11
d)
ANSI 400
31.
Which of the following OSI layers handles flow control?
a)
Data Link
b)
Physical
c)
Network
d)
Transport
32.
Heuristic analysis IDS uses known attack signatures to find suspicious activity. True or false?
a)
True
b)
False
33.
Which type of firewall examines source and destination addresses, source of origin, and relationship between packets of previous similar sessions allowing for broad range of access for users and activities?
a)
Circuit level gateway firewalls
b)
Application level gateway firewalls
c)
Stateful inspection firewalls
d)
Static packet filtering firewalls
34.
What network access security method involves the analysis of a physical hardware address?
a)
Diameter
b)
RAS
c)
RADIUS
d)
MAC filtering
35.
Network traffic analysis is what kind of attack?
a)
Passive
b)
Active
c)
None
d)
Reflexive