wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Network and Security Foundations

Total questions: 66

Worksheet time: 2hrs 6mins

Name
Class
Date
1.
Which layer of the OSI model is responsible for the establishment, maintaining and terminating the connection between two systems?
a)
Session
b)
Presentation
c)
Network
d)
Data Link
2.
Which two layers of the OSI model are the same as the first layer of the TCP/IP model?
a)
Data Link
b)
Physical
c)
Application
d)
Session
3.
Which of the following are transport layer protocols?
a)
TCP
b)
IP
c)
UDP
d)
ICMP
e)
TFTP
4.
Starting at layer 1 and going to layer 7 what are the layers of the OSI model:
a)
application, presentation, session, transport, network, data link, physical
b)
session, presentation, data transport, MAC, network, physical
c)
physical, data link, network, transport, session, presentation, application
d)
presentation, application, session, network, transport, data link, physical
e)
application, encryption, network, transport, logical link control, physical
5.
In the OSI model, what is the primary function of the Network layer?
a)
Allows applications to establish, use, and end a connection
b)
Routes data between networks
c)
Transmits data frames
d)
Ensures that packets are delivered with no loss or duplication
6.

A switch forwards data only to the port that connects to the destination device. It knows which port to forward it to based on which value?

a)

Conf value

b)

IP address

c)

Port Number

d)

MAC Address

7.

Which type of fiber cable is normally used to connect two buildings that are several miles apart?

a)

Single-mode

b)

Fibre Channel mode

c)

Multi-mode

d)

Dual-mode

8.

Your company purchases a new bridge that filters packets based on the MAC address of the destination computer.


On which layer of the OSI model is this device functioning?

a)

Physical

b)

Data Link

c)

Network

d)

Session

9.

Which of the following hardware devices forwards a signal out all connected ports without examining the frame or packet contents?

a)

Switch

b)

Modem

c)

Hub

d)

Bridge

10.

Which command will show the hops that the packets passes through to get to its destination?

a)

ARP

b)

Route

c)

NSLOOKUP

d)

TRACERT

11.

Which network command would produce the following output?

a)

Ping

b)

ifconfig

c)

whois

d)

nslookup

12.

Nancy is responsible for the administration of many different servers in her company. Which one of the following commands can she use to gain command-line administrative access to her Linux servers in a secure manner? (Choose 2)

a)

Telnet

b)

SSH

c)

SCP

d)

RDP

13.

Tom would like to determine what network ports are open on a newly commissioned server. Which one of the following tools is best suited for that task?

a)

Nmap

b)

Wireshark

c)

Firewall Logs

d)

SCCM

14.

Which of the commands would produce the following output?

a)

tracert

b)

ping

c)

traceroute

d)

nslookup

15.

Diana is investigating suspicious software installed on a machine and would like to identify any network connections made by that machine.


Which one of the following tools can best assist her with this task by running it on the target machine?

a)

Netstat

b)

Snort

c)

Netcat

d)

Nmap

16.

Which of the following geographic network types are typically contained within city or county limits?

a)

Personal Area Network

b)

Wide Area Network

c)

Metropolitan Area Network

d)

Local Area Network

17.

Two or more computers connected together over a wide geographical area (e.g. county, country, globe). What type of network is this?

a)

LAN

b)

WAN

c)

SAN

d)

WLAN

18.

Which network is this? I allow wireless computers to communicate with each other in the same building.

a)

WLAN

b)

LAN

c)

PAN

d)

SAN

19.

You have a small network that uses a switch to connect multiple devices. Which physical topology are you using?

a)

Star

b)

Mesh

c)

Ring

d)

Bus

20.

Your manager has asked you to implement a wired network infrastructure that will accommodate failed connections.


Which of the following network topologies should you implement?

a)

Ring

b)

Bus

c)

Star

d)

Mesh

21.

Which of the following topologies connects each device to a neighboring device?

a)

Bus

b)

Star

c)

Mesh

d)

Ring

22.

Which of the following topologies connects all devices to a single cable?

a)

Star

b)

Mesh

c)

Bus

d)

Ring

23.

You have implemented a network where each device provides all other devices on the network with access to shared files.


What type of network do you have?

a)

Polling

b)

Multiple Access

c)

Peer-to-Peer

d)

Client-server

24.

Which of the following cloud computing solutions will deliver software applications to a client either over the internet or on a local area network?

a)

PaaS

b)

SaaS

c)

IaaS

25.

Which of the following describes a public cloud?

a)

Provides cloud services to a single organization

b)

Allows cloud services to be shared by several organizations

c)

Integrates one cloud service with other cloud services

d)

Provides cloud services to just about anyone

26.

You were recently hired by a small start-up company. The company has no plans to setup their own datacenter. You have been asked to find a cloud service that would provide several physical servers or virtual machines that the company would be able to install whatever operating systems and applications they need.


Which cloud service model should you use?

a)

Infrastructure as a Service

b)

Platform as a Service

c)

Software as a Service

27.

Which of the following describes a private cloud?

a)

Allows cloud services to be shared by several organizations

b)

Provides cloud services to just about anyone

c)

Integrates one cloud service with other cloud services

d)

Provides cloud services to a single organization

28.

James is working with his organization’s platforms team to select a virtualization approach for use on test systems managed by developers. He is looking for a hypervisor that can run on top of the Windows operating system already installed on their laptops. What type of hypervisor is James looking for?

a)

Type 1

b)

Type 4

c)

Type 2

d)

Type 3

29.

Barry is working with his organization’s platforms team to select a virtualization approach for use in their data center. To provide stronger security, he would like to select a hypervisor that runs directly on bare metal hardware without an intervening host operating system.

What type of hypervisor should he choose?

a)

Type 2

b)

Type 1

c)

Type 3

d)

Type 4

30.

In what type of attack does the attacker attempt to send unauthorized commands to a back-end database through a web application?

a)

Pass-the-hash

b)

Buffer overflow

c)

CSRF

d)

SQL Injection

31.

Gary is participating in a cybersecurity exercise. His job is to defend the network against attack. What role is Gary playing?

a)

Red team

b)

Blue team

c)

Black team

d)

White team

32.

Kyle is concerned that an attacker is probing his network and would like to use a decoy system to attract the attacker and analyze his or her activity. What type of tool would best meet Kyle’s needs?

a)

Honeypot

b)

Sinkhole

c)

Jump box

d)

Darknet

33.

Which of the following strategies involves sharing some of the risk burden with someone else, such as an insurance company?

a)

Risk deterrence

b)

Risk transference

c)

Risk acceptance

d)

Risk mitigation

e)

Risk avoidance

34.

Which of the following threat actors seeks to defame, shed light on, or cripple an organization or government?

a)

Black Hat

b)

Insider Threat

c)

Script Kiddie

d)

White Hat

35.

Which of the following are examples of social engineering? (Choose two)

a)

Impersonation

b)

War dialing

c)

Phishing

d)

Wiretapping

36.

Which attack floods a system with traffic in order to prevent legitimate activities or transactions from occurring?

a)

Brute force attack

b)

Privilege escalation

c)

Denial of service attack

d)

Man-in-the-middle attack

37.

Which of the following describes a man-in-the-middle attack?

a)

Malicious code is planted on a system, where it waits for a triggering event before activating.

b)

A false server intercepts communications from a client by impersonating the intended server.

c)

A person convinces an employee to reveal their login credentials over the phone.

d)

An IP packet is constructed that is larger than the valid size.

38.

A cybersecurity specialist is asked to identify the potential criminals known to attack the organization. Which type of hackers would the cybersecurity specialist be least concerned with?

a)

Gray hat hackers

b)

Black hat hackers

c)

Script kiddies

d)

White hat hackers

39.

What type of attack targets an SQL database using the input field of a user?

a)

Buffer overflow

b)

SQL injection

c)

XML injection

d)

Cross-site scripting

40.

Cynthia is working on her Western Governors University application online, when the admissions website crashes. She is unable to finish her application on time.


What part of the CIA Triad is affected?

a)

Confidentiality

b)

Authentication

c)

Availability

d)

Integrity

41.

Kim has taken her Network and Security Foundation exam and is waiting to get her results by email. By accident, Kim’s results are sent to Karen.


What part of the CIA Triad is affected?

a)

Confidentiality

b)

Authorization

c)

Availability

d)

Integrity

42.

In cybersecurity, what does CIA stand for?

a)

Confidentiality, Integrity, Availability

b)

Central Intelligence Agency

c)

Confidentiality, Integrity, Accessibility

d)

Cybersecurity Investigation Agency

43.

A company is concerned with traffic that flows through the network. There is a concern that there may be malware that exists that is not being blocked or eradicated by antivirus. What technology can be put in place to detect potential malware traffic on the network?

a)

IDS

b)

firewall

c)

Honeypot

d)

NAC

44.

If it detects a threat, an IPS can:

a)

Record the details of the threat

b)

Report the threat to security admins

c)

Take preventative action to stop the threat

d)

All of the above

45.

You want to install a firewall that can reject packets that are not part of an active session. Which type of firewall should you use?

a)

Circuit-level

b)

Application-level

c)

Packet filtering

d)

Stateful Inspection

46.

Which of the following filters based on application, program or service?

a)

Packet Filtering Firewall

b)

Application Level Firewall

c)

Stateful Inspection Firewall

d)

Intrusion Prevention System

47.

The restrictions most commonly implemented in packet-filtering firewalls are based on ____.

a)

IP source and destination address

b)

Direction (inbound or outbound)

c)

TCP or UDP source and destination port requests

d)

All of the above

48.

Tom would like to protect against an intruder tapping his network cable. Which cable provides the best protection against this type of attack?

a)

Twisted pair

b)

Coaxial

c)

Plenum

d)

Fiber

49.

Sue is inspecting her application logs and finds log records that indicate attackers may be attempting to use SQL injection attacks to access the database underlying her application.


What is the most effective security control that Sue can apply to address this risk? (Choose 2)

a)

Stateful firewall

b)

Input validation

c)

IPS

d)

Reverse Proxy System

50.

Brian would like to secure his website. Which one of the following protocols is the best choice for encrypting communication between a website and its users?

a)

TLS

b)

AES

c)

3DES

d)

TKIP

51.

Alice would like to send a message to Bob using an asymmetric cryptography algorithm. What key should she use to encrypt the message?

a)

Bob’s public key

b)

Bob’s private key

c)

Alice’s private key

d)

Alice’s public key

52.

Bob receives a message from Alice that she sent using an asymmetric cryptography algorithm. What key should he use to decrypt the message?

a)

Alice’s public key

b)

Bob’s private key

c)

Alice’s private key

d)

Bob’s public key

53.

What encryption algorithm uses the same pre-shared key to encrypt and decrypt data?

a)

hash

b)

asymmetric

c)

one-time pad

d)

symmetric

54.

In a hybrid cloud, data is traveling over the wide area network (WAN) connection between the private and public clouds is known as?

a)

Data at Rest

b)

Data in Transit

c)

Data in Use

55.

Data at rest provides an additional layer of protection by keeping data protected and inaccessible to the attacker if even the system is physically stolen.

a)

True

b)

False

56.

In a private cloud companies such as Amazon Web Services, Microsoft Azure, and Google Cloud Platform are responsible for the physical data center security concerns.

a)

True

b)

False

57.

Amazon Web Services, Microsoft Azure, and Google Cloud Platform are responsible for the physical data center security and most the physical hardware security concerns in which cloud deployment?

a)

Private Cloud

b)

Hybrid Cloud

c)

Public Cloud

d)

Community Cloud

58.

What are two states of data? (Choose 2)

a)

Suspended

b)

At rest

c)

In-transit

d)

Encrypted

e)

In-cloud

59.

Which one of the following wireless encryption protocols is considered the weakest and recommended to no longer use?

a)

WEP

b)

WEP2

c)

WPA

d)

WPA2

60.

Which of the following would provide the most effective security for a small wireless network?

a)

WPA

b)

WPA2

c)

WEP

d)

SSID

61.

Which of the following wireless security protocols has been discouraged in favor of newer standards due to known vulnerabilities resulting from implementation flaws?

a)

EAP

b)

AES

c)

WPA2

d)

WEP

62.

A wireless deauthentication attack is an example of which type of attack:

a)

Denial of service attack

b)

Downgrade attack

c)

Brute-force attack

d)

Cryptographic attack

63.

With regards to AAA, ________ defines what the user can access and in what manner.

a)

Authentication

b)

Authorization

c)

Accounting

d)

Availability

64.

With regards to AAA, _______ confirms that the user is how he or she claims to be.

a)

Authorization

b)

Accounting

c)

Authentication

d)

Accessibility

65.

What should we be concerned with keeping up to date?

a)

Office Suites

b)

Browser plugins

c)

Anti-virus

d)

All of these

66.

What are two ways to protect a computer from malware? (Choose two.)

a)

Empty the browser cache.

b)

Use antivirus software.

c)

Delete unused software.

d)

Keep software up to date.

e)

Defragment the hard disk.