wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Module 8 - VPN and IPsec Concepts Review

Total questions: 20

Worksheet time: 11mins

Name
Class
Date
1.

What is the function of the Hashed Message Authentication Code (HMAC) algorithm in setting up an IPsec VPN?

a)

guarantees message integrity

b)

authenticates the IPsec peers

c)

protects IPsec keys during session negotiation

d)

creates a secure channel for key negotiation

2.

What are two hashing algorithms used with IPsec AH to guarantee authenticity? (Choose two.)

a)

MD5

b)

SHA

c)

AES

d)

DH

e)

RSA

3.

What two algorithms can be part of an IPsec policy to provide encryption and hashing to protect interesting traffic? (Choose two.)

a)

AES

b)

SHA

c)

DH

d)

RSA

e)

PSK

4.

Which protocol creates a virtual point-to-point connection to tunnel unencrypted traffic between Cisco routers from a variety of protocols?

a)

OSPF

b)

IPsec

c)

IKE

d)

GRE

5.

Which two end points can be on the other side of an ASA site-to-site VPN? (Choose two.)

a)

DSL switch

b)

router

c)

another ASA

d)

multilayer switch

e)

Frame Relay switch

6.

Which VPN solution allows the use of a web browser to establish a secure, remote-access VPN tunnel to the ASA?

a)

clientless SSL

b)

client-based SSL

c)

site-to-site using a preshared key

d)

site-to-site using an ACL

7.

Which IPsec security function provides assurance that the data received via a VPN has not been modified in transit?

a)

confidentiality

b)

integrity

c)

authentication

d)

secure key exchange

8.

Which two technologies provide enterprise-managed VPN solutions? (Choose two.)

a)

Frame Relay

b)

site-to-site VPN

c)

Layer 2 MPLS VPN

d)

Layer 3 MPLS VPN

e)

remote access VPN

9.

Which two types of VPNs are examples of enterprise-managed remote access VPNs? (Choose two.)

a)

IPsec VPN

b)

clientless SSL VPN

c)

GRE over IPsec VPN

d)

client-based IPsec VPN

e)

IPsec Virtual Tunnel Interface VPN

10.

Which is a requirement of a site-to-site VPN?

a)

It requires a client/server architecture.

b)

It requires the placement of a VPN server at the edge of the company network.

c)

It requires hosts to use VPN client software to encapsulate traffic.

d)

It requires a VPN gateway at each end of the tunnel to encrypt and decrypt traffic.

11.

What is the function of the Diffie-Hellman algorithm within the IPsec framework?

a)

allows peers to exchange shared keys

b)

provides strong data encryption

c)

guarantees message integrity

d)

provides authentication

12.

How is "tunneling" accomplished in a VPN?

a)

New headers from one or more VPN protocols encapsulate the original packets.

b)

All packets between two hosts are assigned to a single physical medium to ensure that the packets are kept private.

c)

Packets are disguised to look like other types of traffic so that they will be ignored by potential attackers.

d)

A dedicated circuit is established between the source and destination devices for the duration of the connection.

13.

Which statement describes a VPN?

a)

VPNs use dedicated physical connections to transfer data between remote users.

b)

VPNs use logical connections to create public networks through the Internet.

c)

VPNs use open source virtualization software to create the tunnel through the Internet.

d)

VPNs use virtual connections to create a private network through a public network.

14.

Which type of VPN supports multiple sites by applying configurations to virtual interfaces instead of physical interfaces?

a)

IPsec virtual tunnel interface

b)

dynamic multipoint VPN

c)

MPLS VPN

d)

GRE over IPsec

15.

Which type of VPN connects using the Transport Layer Security (TLS) feature?

a)

SSL VPN

b)

GRE over IPsec

c)

dynamic multipoint VPN

d)

IPsec virtual tunnel interface

16.

Which type of VPN has both Layer 2 and Layer 3 implementations?

a)

MPLS VPN

b)

IPsec virtual tunnel interface

c)

dynamic multipoint VPN

d)

GRE over IPsec

17.

Which type of VPN allows multicast and broadcast traffic over a secure site-to-site VPN?

a)

GRE over IPsec

b)

SSL VPN

c)

dynamic multipoint VPN

d)

IPsec virtual tunnel interface

18.

Which type of VPN uses the public key infrastructure and digital certificates?

a)

SSL VPN

b)

GRE over IPsec

c)

dynamic multipoint VPN

d)

IPsec virtual tunnel interface

19.

Which type of VPN involves a nonsecure tunneling protocol being encapsulated by IPsec?

a)

GRE over IPsec

b)

dynamic multipoint VPN

c)

IPsec virtual tunnel interface

d)

SSL VPN

20.

Which type of VPN routes packets through virtual tunnel interfaces for encryption and forwarding?

a)

IPsec virtual tunnel interface

b)

MPLS VPN

c)

dynamic multipoint VPN

d)

GRE over IPsec