wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Lesson 2 and 3

Total questions: 15

Worksheet time: 5mins

Name
Class
Date
1.

Which of the following best describes a DHCP Starvation attack?

a)

An attack that creates DHCP requests for IP addresses using false MAC addresses, to drain the DHCP pool.

b)

An attack that broadcasts DHCP requests with spoofed IP addresses, until the DHCP server crashes.

c)

An attack that changes a DHCP server configuration to prevent distribution of IP addresses.

d)

An attack that distributes fake IP addresses via a rogue DHCP server.

2.

Which of the following methods can be used to perform a DoS attack?

a)

Poisoning ARP tables.

b)

Decrypting the network access password.

c)

Sniffing packets associated with the server.

d)

VLAN Hopping.

3.

What does AAA stand for?

a)

Authentication, Authorization, and Accounting

b)

Attention, Authentication, and Authorization

c)

Authentication, Authorization, and Auditing

d)

Affirmation, Authorization, and Accounting

4.

What are the differences between TACACS+ and RADIUS? (Choose two)

a)

TACACS+ uses TCP by default, RADIUS uses UDP by default.

b)

TACACS+ logs commands, RADIUS does not log commands.

c)

RADIUS encrypts entire packets, TACACS+ encrypts credentials.

d)

TACACS+ does not support command authorization, RADIUS supports command authorization.

5.

The Yersinia attack tool primarily exploits which kind of vulnerabilities?

a)

Social engineering

b)

Network protocol vulnerabilities

c)

Masquerading vulnerabilities

d)

Software vulnerabilities

6.

Which of the following countermeasures or controls can be used to mitigate CAM Table Overflow?

a)

Configuring static MAC addresses

b)

Implementing 802.1x

c)

Configuring port security

d)

All of these

7.

interface fastEthernet 0/1 will do?

a)

It will configure bit flipping for 0s and 1s.

b)

It will configure the Cisco Fast and Easy Security feature.

c)

It will allow configuration of the fastEthernet 0/1 port on the switch.

d)

It will make the Ethernet interface on 0/1 faster.

8.

Which of the following ways can be used to execute VLAN hopping? (choose two)

a)

Switch Spoofing

b)

Double Tagging

c)

Hopscotch Tagging

d)

Double Spoofing

e)

Switch Tagging

9.

How does switch spoofing work?

a)

It manipulates a Cisco proprietary protocol called Dynamic Trunking Protocol (DTP).

b)

The switch is configured to be a different virtual switch on a remote network, causing disruption to network trunks in cloud environments.

c)

An attacker sends a large amount of traffic to a specific address, causing theswitch’s CAM table to overflow.

d)

An attacker uses a victim’s STP cookie to log in to a website, posing as the victim.

10.

Which of the following is a step in the DHCP Spoofing attack process?

a)

The attacker sends forged DHCP responses to devices on the network.

b)

A large amount of DHCP discover packets are sent.

c)

Disabling a VPN server's ability to act as a DHCP server.

d)

Forged responses are sent with a new MAC address for a switch and a NetBIOS server.

11.

Which of the following components receives credentials from a user and submits them to the authenticator?

a)

Supplicant

b)

Sender

c)

Authenticator

d)

Authentication Server

12.

During an attack investigation, it was concluded that the switch started acting like a hub. What could have happened to it?

a)

The switch’s CAM table was flooded.

b)

The switch’s violation mode switched to “shutdown.”

c)

NTP authentication.

d)

LLDP stopped working.

13.

What is the purpose of the Port Security feature?

a)

It restricts the number of MAC addresses that can access a specific port.

b)

It prevents SSH connections to the switch.

c)

It prevents Telnet connections to the switch.

d)

It prevents switch shutdown.

14.

Which of the following is a method of mitigating NTP attacks?

a)

NTP Authentication

b)

False Update Prevention

c)

Router Authentication

d)

NTP Access Control

15.

A rogue DHCP server does which of the following?

a)

Manipulates network settings by assigning improper IP addresses and settings.

b)

Starves the DHCP pool.

c)

Assigns proper MAC addresses and settings to clients.

d)

Acts as the default gateway.