NEW
Font size
S
M
L
XL
WorksheetsSecurity+ Ch 7
Total questions: 20
Worksheet time: 10mins
Name
Class
Date
1.
Which of the following TCP/IP protocols do not relate to security?
a)
IP
b)
SNMP
c)
HTTPS
d)
FTP
2.
Aideen sent an email to her supervisor explaining the Domain Name System Security Extensions (DNSSEC). Which of the following statements would Aideen have NOT included in her email?
a)
It is fully supported in BIND9
b)
It adds additional resource records
c)
It adds message header information
d)
It can prevent a DNS transfer attack
3.
What is the recommended secure protocol for voice and video applications?
a)
Secure Real-time Transport Protocol (SRTP)
b)
Hypertext Transport Protocol Secure (HTTPS)
c)
Network Time Protocol (NTP)
d)
Secure/Multipurpose Internet Mail Extensions (S/MIME)
4.
Which type of log can provide details regarding requests for specific files on a system?
a)
Audit log
b)
Access log
c)
Event log
d)
SysFile log
5.
Which type of device log contains the most beneficial security data?
a)
Firewall log
b)
Email log
c)
Switch log
d)
Router log
6.
Which type of cloud is offered to specific organizations that have common concerns?
a)
Public cloud
b)
Hybrid cloud
c)
Private cloud
d)
Community cloud
7.
Which of these is NOT correct about an SSL accelerator?
a)
It is a separate hardware card that inserts into a webserver
b)
It contains one or more co-processors to handle SSL/TLS processing
c)
It can be installed as a "virtual SSL/TLS server" alongside a forward proxy server
d)
It replaces FTP using Secure Sockets Layer (FTPS) as a file transport layer resting "on top" of SSL/TLS
8.
Catriona needed to monitor network traffic. She did not have the resources to install an additional device on the network. Which of the following solutions would meet her needs?
a)
Network tap
b)
Port mirroring
c)
Aggregation switch
d)
Correlation engine
9.
Which version of SNMP is considered the most secure?
a)
SNMPv2
b)
SNMPv3
c)
SNMPv4
d)
SNMPv5
10.
Which Domain Name System (DNS) attack replaces a fraudulent IP address for a symbolic name?
a)
DNS replay
b)
DNS masking
c)
DNS poisoning
d)
DNS forwarding
11.
Which of these is the most secure protocol for transferring files?
a)
FTPS
b)
SFTP
c)
TCP
d)
FTP
12.
Which of the following can be used to prevent a buffer overflow attack?
a)
DEP
b)
FIM
c)
VPN
d)
DNS forwarding
13.
Which of the following is NOT a service model in cloud computing?
a)
Software as a Service (SaaS)
b)
Hardware as a Service (HaaS)
c)
Platform as a Service (Paas)
d)
Infrastructure as a Service (IaaS)
14.
Eachna is showing a new security intern the log file from a firewall. Which of the following entries would she tell him do not need to be investigated?
a)
Suspicious outbound connections
b)
IP addresses that are being rejected and dropped
c)
Successful logins
d)
IP addresses that are being rejected and dropped
15.
Which type of hypervisor does not run on an underlying operating system?
a)
Type I
b)
Type II
c)
Type III
d)
Type IV
16.
Which application stores the user's desktop inside a virtual machine that resides on a server and is accessible from multiple locations?
a)
Application cell
b)
Container
c)
VDE
d)
VDI
17.
Kyle asked his supervisor which type of computing model was used when the enterprise first started. She explained that the organization purchased all the hardware and software necessary to run the company. What type of model was she describing to Kyle?
a)
Virtual services
b)
Off premises
c)
On premises
d)
Hosted services
18.
DNSSEC addes additional ____ and message header info, which can be used to verify that the requested data has not been altered in transmission.
a)
resource records
b)
field flags
c)
hash sequences
d)
zone transfers
19.
What function of a switch does a software defined network separate?
a)
Host and virtual
b)
Control plane and data plane
c)
RAM and hard drive
d)
Network level and resource level
20.
Which of the following is NOT a security concern of virtualized environments?
a)
Virtual machines must be protected from both the outside world and from other virtual machines on the same physical computer.
b)
Physical security appliances are not always designed to protect virtual systems.
c)
Virtual servers are less expensive than their physical counterparts.
d)
Live migration can immediately move one virtualized server to another hypervisor.
Reset
