Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Pre-Test NS123

Total questions: 47

Worksheet time: 23mins

Name
Class
Date
1.

Identify which security model would describe the protected assets are minimal, user are trusted and threats are minimal. (CLO1, C1)

a)

Open access

b)

Hybrid access

c)

Closed access

d)

Restrictive access

2.

Name the elements or goals of information security. (CLO1, C1)

a)

Vulnerability, integrity and availability

b)

Confidentiality, integrity and availability

c)

Confidentiality, usability and integrity

d)

Reliability, integrity and accountability

3.

Identify which assessment that would suit with the statement, “Actions by adversaries who try to exploit vulnerabilities to damage events”. (CLO1, C2)

a)

Risk assessment

b)

Assets identification

c)

Threat assessment

d)

Vulnerability assessment

4.

Assets have to be identified and valued. Select the data that has the less value if the data falls into the wrong hands. (CLO1, C1)

a)

Telephone number

b)

Birth date

c)

Full name

d)

Identification number

5.

Choose the BEST statement that defines social engineering. (CLO1, C1)

a)

Gathering information from discarded manuals and printouts

b)

Illegal copying of software

c)

Using people skills to obtain proprietary information

d)

Destroying or altering data

6.

Some attacks, take advantage of human shortcomings to gain access that should otherwise be denied. Identify the term use to describe this type of attacks. (CLO1, C2)

a)

IDS system

b)

Social engineering

c)

Perimeter security

d)

Biometrics

7.

How configuration weakness is exploited?

a)

Default settings

b)

Firewall holes

c)

Unwritten policy

d)

Lack of continuity

8.

Which security weakness that can create unforeseen security threats?

a)

Technology

b)

Administration

c)

Configuration

d)

Security policy

9.

Determine the threats that occur when someone has authorized access to the network with either an account on a server or physical access to the network.

a)

Data disclosure

b)

Internal

c)

Structured

d)

Information theft

10.

Which of the following can be used to ask the user to enter sensitive information in a commonly trusted screen.

a)

Trust exploitation

b)

E-mail bombs

c)

Social engineering

d)

Trojan Horse

11.

Choose the key element that distinguishes a computer worm from a computer virus.

a)

Execute arbitrary code and installs copies of itself in the memory of infected computer

b)

Use a variety of tools, scripts and program to launch attacks

c)

Written to look like something else that in fact is an attack tool

d)

Require human interaction to facilitate the spread of malicious code

12.

Define the type of program exists primarily to propagate and spread itself to other systems. (CLO1, C1)

a)

Virus

b)

Worm

c)

Trojan horse

d)

Logic bomb

13.

Interpret an active response in an Intrusion Detection System (IDS). (CLO1, C2)

a)

Sending an alert to a console

b)

Shunning attackers

c)

Reconfiguring a router to block an IP address

d)

Making an entry in the security audit file

14.

Identify the device use to monitors network traffic in a passive manner. (CLO1, C1)

a)

Web Browser

b)

Firewall

c)

Sniffer

d)

IDS

15.

Choose the BEST functions will a packet filter performs as a firewall. (CLO1, C1)

a)

Prevents unauthorized packets from entering the network

b)

Allows all packets to leave the network

c)

Allows all packets to enter the network

d)

Eliminates collisions in the network

16.

Which of the following does packet filtering based on permit or deny rule including examining the packet content?

a)

Stateless

b)

Stateful

c)

Hybrid

d)

Special

17.

Identify which categories of weaknesses that have those issues; hardware issue, operating system issue.

a)

Configuration Weaknesses

b)

Technology Weaknesses

c)

Application Weaknesses

d)

Security policy Weaknesses

18.
What technology can you use temporarily to connect networks from two different companies?
a)
VPN
b)
HTTP
c)
DHCP
d)
passive router
19.
Which VPN technology is the most common and the easiest to set up?
a)
PPTP
b)
L2TP with IPSec
c)
SSTP
d)
CHAP
20.
Which type of firewall blocks packets based on rules that are based on IP addresses or ports?
a)
packet filtering
b)
stateful packet inspection
c)
NAT filtering
d)
Application-level gateway
21.
What acts as a middleman that translates between internal and external addresses and that caches previously accessed web pages so that it can provide those more quickly in the future?
a)
NAT server
b)
stateful packet inspector
c)
proxy server
d)
NIDS
22.
What type of device is used to detect malicious network activities and reports only those issues to the administrator?
a)
NIDS
b)
NIPS
c)
Internet content filter
d)
NAT server
23.
What type of device is designed to inspect traffic, detect malicious activities, and take steps to mitigate the malicious activity?
a)
NIDS
b)
NIPS
c)
Internet content filter
d)
NAT server
24.
What protocol is used with L2TP to provide encryption?
a)
IPSec
b)
MPPE
c)
HTTPS
d)
MSC-CHAP
25.
An _________ is the internal network for an organization.
a)
Intranet
b)
Internet 
c)
PPTP
d)
NAT
26.
What does NAT do?
a)
It encrypts and authenticates IP packets.
b)
It provides caching and reduces network traffic.
c)
It translates public IP addresses to private addresses and vice versa.
d)
It analyzes incoming and outgoing traffic packets.
27.
Which technology enables you to filter communications between a program and the Internet?
a)
RADIUS server
b)
Antivirus software
c)
Software firewall
d)
BitLocker To Go
28.
Which type of firewall allows for inspection of all characteristics of a packet?
a)
NAT
b)
Stateful
c)
Stateless
d)
Windows Defender
29.
This scenario is:
a)
man in the middle
b)
phishing
c)
denial of service
30.
Which provides the highest level of security in a firewall?
a)
Stateful inspection
b)
Outbound packet filters
c)
Stateless inspection
d)
Inbound packet filters
31.
A(n) __________ can consist of an external firewall and an internal firewall.
a)
demilitarized zone (DMZ)
b)
honeypot
c)
posture assessment
d)
quarantine network
32.
The honeypot concept is enticing to administrators because
a)
It enables them to observe attacks
b)
It traps an attacker in a network.
c)
It bounces attacks back at the attacker
d)
It traps a person physically between two locked doors.
33.
James has detected an intrusion in his company network. What should he check first?
a)
DNS logs
b)
Firewall logs
c)
The Event Viewer
d)
Performance logs
34.
Where is the optimal place to have a proxy server?
a)
In between two private networks
b)
In between a private network and a public network
c)
In between two public networks
d)
On all of the servers
35.
Of the following, which is a collection of servers that was set up to attract attackers?
a)
DMZ
b)
Honeypot
c)
Honeynet
d)
VLAN
36.
Which of the following will detect malicious packets and discard them?
a)
Proxy server
b)
NIDS
c)
NIPS
d)
PAT
37.
Which of the following devices would detect but not react to suspicious behavior on the network? (Select the most accurate answer.)
a)
NIPS
b)
Firewall
c)
NIDS
d)
HIDS
e)
UTM
38.
Which of the following best describes an IPS?
a)
A system that identifies attacks
b)
A system that stops attacks in progress
c)
A system that is designed to attract and trap attackers
d)
A system that logs attacks for later analysis
39.
Allowing or denying traffic based on ports, protocols, addresses, or direction of data is an example of what?
a)
Port security
b)
Content inspection
c)
Firewall rules
d)
Honeynet
40.

A group of black hat hackers sets up devices that enables to review logs from computers located on the Internet. The information gathered is used to find out about new malware attacks. What have the implemented?

a)

Research Honeypot

b)

Protocol analyzer

c)

Firewall

d)

Honeynet

41.

Name this diagram.

a)

One box firewall

b)

Non-routing Dual-home Host firewall

c)

Victim Machines

d)

External bastion host

42.
Firewalls remove viruses
a)
False
b)
True
43.
What Can't a Firewall Do?
a)
Can't protect against viruses.
b)
Stop hackers from accessing your computer.
c)
Determines which programs can access the Internet.
44.

Interpret the term “tunneling”.

a)

An optional feature that increases network performance when turned on.

b)

A marketing strategy to sell VPN products cheaply in return for expensive service contracts.

c)

The encapsulation of packets inside packets of a different protocol to create and maintain the virtual circuit.

d)

The method used by system administrator to detect hackers on the network.

45.

Choose the CORRECT statement regarding the difference between Virtual Private Network (VPNs) and firewall.

a)

Firewalls are user-configurable; VPNs cannot be configured

b)

Firewalls are new type of VPN

c)

Firewalls block messages; VPNs open pathways for messages

d)

No difference between firewall and VPNs exists

46.

Interpret types of bastion host that has multiple network connections but does not pass traffic between networks.

a)

Victim machines

b)

Internal bastion host

c)

One-box firewall

d)

Non-routing dual-homed hosts

47.

Choose the CORRECT protocol that will provides authentication and encryption across the Internet.

a)

L2TP (Layer 2 Tunneling Protocol)

b)

PPTP (Point-to-Point Protocol)

c)

IPSec (Internet Protocol Security)

d)

L2F (Layer 2 Forwarding)