WorksheetsDay 10 Quiz - Physical & Network Security
Total questions: 27
Worksheet time: 21mins
Objective 4.3/Day 10 -
What network hardening technique helps prevent unauthorized access to unused switch ports?
Router Advertisement (RA) Guard
Port security
Dynamic ARP inspection
Control plane policing
Objective 4.3/Day 10 -
Which network hardening technique protects against unauthorized access to SNMP data?
Secure SNMP
Private VLANs
Disable unneeded network services
Dynamic ARP inspection
Objective 4.3/Day 10 -
What method should be employed to prevent rogue devices from advertising themselves as routers?
Router Advertisement (RA) Guard
Control plane policing
Disable unneeded switchports
Private VLANs
Objective 4.3/Day 10 -
Which technique involves restricting the use of unnecessary network protocols and services to reduce the attack surface?
Dynamic ARP inspection
Disable unneeded network services
Port security
Private VLANs
Objective 4.3/Day 10 -
What network hardening technique involves modifying passwords to ensure they are not easily guessed or cracked?
Change default VLAN
Password complexity/length
Enable DHCP snooping
Patch and firmware management
Objective 4.3/Day 10 -
Which network hardening method helps prevent unauthorized access to network resources based on predefined rules?
Access control list
Role-based access
Change default passwords
Firewall rules
Objective 4.3/Day 10 -
What network hardening technique involves regularly updating software and firmware to address known vulnerabilities and security issues?
Patch and firmware management
Enable DHCP snooping
Change default VLAN
Role-based access
Objective 4.3/Day 10 -
Which network hardening method involves assigning users permissions and privileges based on their roles and responsibilities within the organization?
Role-based access
Firewall rules
Change default passwords
Password complexity/length
Objective 4.3/Day 10 -
In a corporate wireless network, which network hardening technique can be used to restrict access based on the physical location of devices?
MAC filtering
Antenna placement
Geofencing
Wireless client isolation
Objective 4.3/Day 10 -
Which network hardening method involves configuring access points to broadcast at specific signal strengths to limit coverage to desired areas?
Power levels
Wireless client isolation
EAP
Captive portal
Objective 4.3/Day 10 -
What network hardening technique is used to prevent wireless clients from communicating with each other on the same network?
Antenna placement
Wireless client isolation
Preshared keys (PSKs)
EAP
Objective 4.3/Day 10 -
In a public Wi-Fi network, which network hardening method can be implemented to require users to authenticate before gaining access to the network?
Geofencing
Captive portal
EAP
Guest network isolation
Objective 4.4/Day 10 -
Match the following remote access methods and their characteristics:
Establishes a secure connection between two networks, typically used for connecting branch offices to a central location.
Site-to-site VPN
Requires users to install VPN client software on their devices to establish a secure connection to the corporate network.
Client-to-site VPN
Allows users to access corporate resources through a web browser without the need for VPN client software.
Clientless VPN
Objective 4.4/Day 10 -
Match the following remote access methods and their characteristics:
Enables users to remotely control a computer or access its desktop interface over a network connection.
Remote desktop connection
Routes all traffic from the user's device through the VPN tunnel to the corporate network.
Full tunnel
Diverts only specific traffic through the VPN tunnel, while the rest directly accesses the internet.
Split tunnel
Objective 4.4/Day 10 -
Fill in the blank with the remote access methods to match their security implications:
(a) = Provides encrypted communication for secure remote access to devices and servers.
(b) = Allows remote users to view and control a computer's desktop interface over a network connection.
(c) = Provides users with a virtualized desktop environment accessible from remote locations.
Objective 4.4/Day 10 -
Fill in the blank with the remote access methods to match their security implications:
(a) = Ensures proper verification of user identity and permission levels before granting access.
(b) = Refers to managing network devices through the same network they are connected to.
(c) = Involves managing network devices through a separate dedicated network for added security.
Objective 4.3/Day 10 -
An organization wants to prevent unauthorized devices from connecting to its network by implementing a security measure that filters based on MAC addresses. Which network hardening technique involves configuring a router or switch to only allow connections from specific MAC addresses?
Dynamic ARP inspection
Control plane policing
Port security
Secure SNMP
Objective 4.3/Day 10 -
An organization wants to enhance the security of its wireless network by implementing a method that verifies the identity of wireless clients using digital certificates. Which wireless security technique involves using digital certificates to authenticate wireless clients?
MAC filtering
EAP
Wireless client isolation
Captive portal
Objective 4.3/Day 10 -
An organization aims to protect its network from unauthorized ARP requests and ARP spoofing attacks by validating ARP packets before forwarding them. Which network hardening technique verifies the legitimacy of ARP packets before allowing them to be forwarded?
Private VLANs
Router Advertisement (RA) Guard
Dynamic ARP inspection
Access control list
Objective 4.3/Day 10 -
An organization wants to secure its wireless network by preventing unauthorized access to the network from nearby locations outside its premises. Which wireless security technique involves restricting access to the wireless network based on the geographical location of wireless clients?
MAC filtering
Power levels
Geofencing
Antenna placement
Objective 4.4/Day 10 -
An organization wants to establish secure connections between its branch offices located in different cities. Which remote access method is most suitable for creating secure connections between geographically dispersed sites?
Remote desktop connection
Client-to-site VPN
Remote desktop gateway
Virtual network computing (VNC)
Objective 4.4/Day 10 -
An organization needs to provide remote employees with secure access to internal resources without requiring the installation of additional software on their devices. Which remote access method offers a clientless approach, allowing users to access network resources through a web browser?
Site-to-site VPN
Remote desktop connection
SSH
Clientless VPN
Objective 4.4/Day 10 -
An organization wants to remotely manage its network devices and servers securely, using encrypted communication channels. Which remote access method is commonly used for secure remote management of network devices through a command-line interface?
Remote desktop gateway
Virtual desktop
SSH
In-band management
Objective 4.4/Day 10 -
An organization needs to provide employees with secure access to their desktop computers and applications from remote locations. Which remote access method allows users to access their desktop computers and applications remotely, providing a virtualized desktop environment?
Remote desktop connection
Virtual network computing (VNC)
Virtual desktop
In-band management
Objective 4.5/Day 10 -
An organization is concerned about unauthorized access to its server room, which contains critical infrastructure. Which prevention method is most effective for restricting access to the server room and ensuring physical security?
Camera
Employee training
Badge readers
Motion detection
Objective 4.5/Day 10 -
A company wants to enhance its physical security measures to detect and deter unauthorized access to its premises during non-operational hours. Which detection method would be most appropriate for monitoring and alerting security personnel about suspicious activity outside of business hours?
Asset tags
Smart lockers
Motion detection
Tamper detection
Objective 4.5/Day 10 -
An organization is upgrading its physical security measures to ensure the proper disposal of outdated IT equipment containing sensitive data. Which asset disposal method is essential for ensuring that sensitive data stored on decommissioned devices is securely erased before disposal?
Locking racks
Factory reset/wipe configuration
Sanitize devices for disposal
Biometrics
