wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Network Security 3

Total questions: 32

Worksheet time: 17mins

Name
Class
Date
1.

What provides confidentiality in a network, ensuring only the intended recipient can read the data?

a)

Hash

b)

Redundant Hardware

c)

Encryption

d)

Non-Repudiation

2.

To provide integrity of data, hashing is often used. Which of the following is a commonly used 128-bit hash digest?

a)

SHA-1

b)

MD-5

c)

CRAMMD5

d)

SHA-256

3.

Wireless network sniffing and wiretapping are attacks on which part of the CIA triad?

a)

Confidentiality

b)

Integrity

c)

Availability

4.

A TCP SYN flood is a type of attack where multiple TCP sessions are initiated, but the three-way handshake is never completed. This is an example of a(n) _________ attack.

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Non-Repudiation

5.

What is the most important things you can do to increase your network's security?

a)

Increase physical controls

b)

Utilized AES 128-bit encryption

c)

Increase user training

d)

Create an effective security policy

6.

What is a common vulnerability scanner used to detect unknown vulnerabilities and missing software patches?

a)

NESSUS

b)

Windows Defender

c)

McAfee Ant-Virus

d)

BitLocker

7.

Access control lists provide a set of rules that permit or deny certain types of traffic. Which of the following is not a criteria used by a router or firewall's ACL?

a)

Source IP

b)

Destination Port

c)

Source Port

d)

Destination OS

8.

What is NOT a detection method used by an IDS or IPS examines the incoming data streams for?

a)

Signature-based detection

b)

Snort-based detection

c)

Policy-based detection

d)

Anomaly-based detection

9.

If a user was at home and needed to remotely connect back to their corporate network, which type of VPN would they most likely utilize?

a)

Client to site

b)

Site to client

c)

Site to Site

d)

AES

10.

Which of the following is NOT a type of VPN?

a)

TLS

b)

IPsec

c)

PPP

d)

L2TP

11.

Which of the following security technique provides the highest "confidentiality service"?

a)

Hashing

b)

Encryption

c)

Key exchange

d)

Firewall

12.

Which of the following is not a feature of a VPN?

a)

It is a secure network

b)

It may use tunneling techniques

c)

It is deployed over a shared infrastructure

d)

It does not provide any cost savings to alternate connectivity options

13.

What is the function of VPN client (software)?

(choose all applicable)

a)

Encrypts data

b)

Alters the IP address

c)

Transmits data packages

d)

Alters the MAC address

14.

Which of the below scenarios require the use of VPN the most?

a)

WiFi in home

b)

WiFi in school

c)

WiFi in a workplace

d)

WiFi in a coffee shop

15.
Which of the following approaches may be used to do peer authentication during Phase 1 of ISAKMP? 
a)
Pre-Shared Keys
b)
Digital Certificates
c)
Peer authentication is not performed during Phase 1 of ISAKMP
d)
Digital Cert + PSK
16.
Which of the following is not a Layer 2 tunneling protocol?
a)
PPTP
b)
IPSEC
c)
L2TP
d)
L2F
17.
What do you call a cryptographic function that has the following features:
- Takes a variable sized message as input and produces a fixed length output- Output will be identical for an identical input
- A one way function that is difficult to reverse (invert)
a)
Encryption
b)
Key Exchange
c)
Hashing
d)
Scrambling
18.
Which of the following process is used in IPSEC to negotiate symmetric keys securely between endpoints over an unsecure intermediate media? 
a)
Diffie-Hellman Key Exchange
b)
Advanced Encryption Standard (AES)
c)
Secure Hashing Algorithm (SHA)
d)
RSA
19.
Hashing functions like MD5 and SHA are used in IPSEC to provide which of the following services: 
a)
Data confidentiality (privacy from eavesdropping)
b)
Data Integrity (data protected from being changed during transit)
c)
Securely negotiating a key over a un-secure media
d)
Anti replay protection
20.
A type of attack that sends enough requests to overload a resource or even stopping its operation.
a)
Denial of Service (DoS)
b)
Distributed DoS (DDoS)
c)
SYN Flood 
d)
Spoofing
21.

Encryption is a way of __________.

a)

Securing Information on a network

b)

protecting against malware threats

c)

preventing a network attack

d)

safeguarding computer systems

22.

What type of encryption uses different keys?

a)

MD5 Encryption

b)

Asymmetric Encryption

c)

Symmetric Encryption

d)

SHA-1 encryption

23.

The process of converting plaintext to ciphertext.

a)

cryptography

b)

cyphertext

c)

decryption

d)

encryption

24.

A method for determining a solution to a problem by sequentially testing all possible solutions.

a)

brute force

b)

relative frequency

c)

cipher

d)

paired keys

25.

Which of the following algorithms is comonly used in e-mail systems.

a)

SHA-1

b)

MD5

c)

SHA-256

d)

CRAMMD5

26.

How many bits is the effective length of the key used in the Message Digest five (MD5) algorithm?

a)

168

b)

128

c)

56

d)

64

27.

A hacker takes over a session between you and another person then disconnects the other person from communication. The other person still believes they are talking to you.

a)

Hijack Attack

b)

In-Between-Attack

c)

Baiting

d)

Spoof Attack

28.

Most types of attacks are considered __________ , where the hacker performs the attack from a remote system.

a)

home-based attacks

b)

network-based attacks

c)

international-based attacks

d)

social engineering attacks

29.

What attack does this image represent?

a)

Man-In-The-Middle Attack

b)

Baiting Attack

c)

Spoof Attack

d)

Hijack Attack

30.

Malware is _____________.

a)

A type of spyware program that monitors keystrokes with the intent of stealing passwords, login IDs or credit card information.

b)

Software that’s intended to render a system temporarily or permanently useless.

c)

The process of hacking a smartphone, tablet, etc., to run unauthorized software and to make other tweaks to the operating system.

31.

Spyware is ___________.

a)

An unwanted piggyback program that downloads with the software you want to install from the Internet and then runs in the background of your system.

b)

Unwanted or junk e-mail.

c)

A program that downloads on your computer when a user installs a freeware program, game or utility.

32.

Social Engineering

a)

Any technique that uses social skills to generate human interaction for the purpose of enticing individuals to reveal sensitive information.

b)

When someone uses personal information about someone else to assume the victim’s identity for the purpose of defrauding another.

c)

The process of sending e-mail messages to lure Internet users into revealing personal information such as credit card or Social Security numbers or other sensitive information that could lead to identity theft.