Font size
Worksheets!PS3c
Total questions: 91
Worksheet time: 58mins
VPN stands for?
Virtual Public Network
Virtual Private Network
Virtual Protocol Network
Virtual Perimeter Network
What are the acronyms for the 3 most common VPN protocols?
PPTP, LLTP, IPsec
PPTP, L2PP, IPseg
PPTP, L2TP, IPsec
PTPP, L2TT, IPsec
What does PPTP stand for?
Point-to-point Tunnel Protocols
Point-to-paint tunnelling protocols
Point-to-point tunninling protocols
Point-to-Point Tunnelling Protocols
What is the main benefit of VPN’s compared to dedicated networks utilizing frame relay, leased lines, and traditional dial-up?
Better network performance
Less downtime on average
Reduced cost
Improved security
In VPN’s the term of ‘tunnelling’ refers to?
An optional feature that increases network performance if it is turned on.
The encapsulation of packets inside packets of a different protocols to create and maintain the virtual circuit.
The method a system administrator uses to detect hackers on the network.
A marketing strategy that involves selling VPN products for very low prices in return for expensive service contract.
An _________ is a network that allows authorized access from outside users.
intranet
internet
extranet
none of the above
What is/are the reasons that we needed VPN for our
phone?
Protect password of the accounts
Help to stay safe on public Wi-Fi
Help to overcome geo-blocking restrictions
All of the above
___________are also used for hide user’s physical location.
Firewall
Antivirus
Incognito mode
VPN
This is the meaning of TOR browser.
The Orange Route
Thyme Onion Rockets
The Only Route
The Onion Router
If a public Wi-Fi network (such as in an airport or café) requires a password to access, is it generally safe to use that network for sensitive activities such as online banking?
Yes, it is safe.
No, it is not safe.
Not sure.
Firewalls cannot prevent malicious software from accessing a computer or network via the internet
True
False
Firewalls provide protection against outside attackers by shielding your computer or network from malicious or unnecessary network traffic
True
False
Firewalls can be configured to block data from certain locations (i.e., computer network addresses), applications, or ports while allowing relevant and necessary data through
True
False
Provides Low Security
Packet Filtering Firewall
Application/Proxy Firewall
A Proxy Server
filters web content requests like URL, domain, media, etc.
is placed in front of web servers to hide, protect, offload and distribute access to web servers
probes a computer for open ports
Filtering of ports and system service calls on a single computer operating system
Network address Translation Firewall
Application Layer Firewall
Host-based Firewall
Filtering based on application, program or service
Context Aware Application Firewall
Application Layer Firewall
Host-based Firewall
Network Layer Firewall
A single, conceptual computing device connected to a network
Node
Link
Host
Who do Firewalls Guard Against, give one:
(a)
The actual physical Computing device involved in a node
Node
Link
Host
A computer network used for communication among computer and different information technological devices close to one person
Personal Area Network
Local Area Network
Metropolitan Area Network
Wide Area Network
What do firewalls protect?
Fire
Actual Money
Clothing
a network that connects computers and devices in a limited geographical area such as a home, school, office building, or closely positioned group of buildings
Personal Area Network
Local Area Network
Metropolitan Area Network
Wide Area Network
Give One Network Advantage:
(WRONG SPELLING WRONG)
(a)
The actual physical Computing device involved in a node
Node
Link
Host
What do firewalls protect?
(a)
Who do Firewalls Guard Against, give one:
(a)
a network security device that monitors incoming and outgoing network traffic and decides whether to allow or block specific traffic based on a defined set of security rules.
Personal Area Network
Local Area Network
Metropolitan Area Network
Wide Area Network
Firewall
a type of firewall that runs pseudo-applications which mimic the proper behavior of real application
a computer network that covers a large geographic area such as city, country or spans even intercontinental distances.
Personal Area Network
Local Area Network
Metropolitan Area Network
Wide Area Network
It is designed to prevent unauthorized outside users from accessing a network or workstation.
Personal Area Network
Local Area Network
Metropolitan Area Network
Wide Area Network
Firewall
A set of communication channels that interconnects computing devices and enables them to exchange data electronically
Computer Network
Firewall
Security
Encryption
Computer
In your own words, what exactly is a firewall?
A firewall is a (a) level protection measure
Firewalls can (a) messages coming from certain websites or areas in the world
Messages or parts of the world that are blocked are kept on a list known as a
Black list
Blocked list
Grey List
White List
Advantage of firewall - can be (a) for individual needs
Advantage of firewall - Software can usually be (a) set up
Disadvantage of firewall - Can be (a) for sophisticated firewalls
Disadvantage of firewall - Can (a) down a network
What is an essential component of IT security, the first line of defense from the network outside the protected perimeter?
Firewall
VPN
DNS
Router
What does NGFW stand for?
Next-Generation Firewall
Next-Generation Fireman
New Genetic Faults
New-Generation Football
Stateless firewalls operate in _____ in the OSI model
Layer 3
Layer 2
Layer 7
Layer 5
What is the policy called, when everything is allowed unless specifically denied?
Default Allow
Default Deny
Default Borrow
Default Buy
What is the policy called, when everything is blocked except the traffic that has been explicitly defined in the rulesets?
Default Allow
Default Deny
Default Borrow
Default Buy
Would a Layer 3 firewall be able to detect malicious traffic?
Yes
No
What does WAF stand for?
Web Application Firewall
Web Appliance Firewall
Website Application Floor
World Associate Firewall
You allow only a small set of approved IP addresses through the firewall. How would you call this approach?
Default Deny
Default Allow
Default Borrow
Default Buy
What type of firewall is designed to specifically filter HTTP traffic to a website?
Web Application Firewall
Software-defined Networking
OS Integrated Firewall
How was the game?
For physical security
logical access, broadcast domains and VLANs should be controlled
MAC addresses permitted to connect to a switch port should be limited
media, equipment, and environment should be controlled
implement security policies to control incoming and outbound traffic
Layer 2 security can involve (select two)
limiting the MAC addresses permitted to connect to a switch port
filtering the IP addresses entering a switch port
filtering packets based on port numbers on the switch
disabling unused ports on the switch
An attack where the attacker impersonates another computer or user to attack the target is called
Password harvesting
Denial of Service (DoS)
Spear Phishing
Spoofing
What are the three different types of IDSs ?
Signature based
Anomaly based
Behavior based
Routing based
A behavior based IDS
filters all abnormal traffic entering the network
matches monitored traffic with attack patterns to detect attacks
reports deviations from predefined normal behavior as an anomaly
matches monitored traffic with access control lists to detect attacks
Business continuity plan
is used to respond to security incidents as they occur
provides a road map for business continuity in case of a disaster
outlines the response procedures in case of a security incident
analyse incident data and determine the required response
Business impact analysis
is carried out after a security incident to determine the business losses
is carried out during the security incident to minimize the impact on the business
is carried out before preparing an incident response strategy
is carried out as and when the management wishes
Contingency planning includes
security policies, risk assessment, an incident response plan and a project plan
business impact analysis, an incident response plan, a disaster recovery plan, and a business continuity plan
an incident response plan, a project plan, a business continuity plan and a security plan
a disaster recovery plan, a business continuity plan, a security plan and a project plan
Identify two vulnerability scanning tools
Metaspolit
Wireshark
GFI LanGuard
Nessus
Select all that is correct
NetFlow is fast because it analyses only packet headers and records only small amounts of packet information
SNMP is used to communicate with end / intermediary devices to gather information about them
DNS was introduced for managing IP devices and allows you to manage devices remotely
Software like Wireshark and NetworkMiner are used to sniff a network
A network technician is replacing security devices that protect the DMZ for a client. The client has an application that allows external users to access the application remotely. After replacing the devices, the external users are unable to connect remotely to the application. Which of the following is MOST likely misconfigured?
A. Content filter
B. Firewall
C. DNS
D. DHCP
A network technician is creating a new subnet for 488 host machines. The technician is told to use a class B address scheme when making the subnet and is instructed to leave as much room as possible for additional subnets of the same size. Which of the following subnets would fulfill these requirements?
A. 10.5.4.0/22
B. 10.233.2.0/23
C. 172.16.0.0/22
D. 172.18.0.0/23 E. 192.168.25.0/24
D. 172.18.0.0/23
A company is installing several APs for a new wireless system that requires users to authenticate to the domain. The network technician would like to authenticate to a central point. Which of the following would work BEST to achieve these results?
A. A TACACS+ device and a RADIUS server
B. A TACACS and a proxy server
C. A RADIUS server and an access point
D. A RADIUS server and a network controller
A new threat is hiding traffic by sending TLS-encrypted traffic outbound over random ports. Which of the following technologies would be able to detect and block this traffic?
A. Intrusion detection system
B. Application aware firewall
C. Stateful packet inspection
D. Stateless packet inspection
A network administrator wants to deploy a wireless network in a location that has too much RF interference at 2.4 GHz. Which of the following standards requires the use of 5 GHz band wireless transmissions? (Select TWO)
A. 802.11a
B. 802.11ac
C. 802.11b
D. 802.11g
E. 802.11n
A technician is trying to determine the IP address of a customer’s router. The customer has an IP address of 192.168.1.55/24. Which of the following is the address of the customer’s router?
A. 192.168.0.55
B. 192.168.1.0
C. 192.168.1.1
D. 192.168.5.5
255.255.255.0
As part of a transition from a static to a dynamic routing protocol on an organization’s internal network, the routing protocol must support IPv4 and VLSM. Based on those requirements, which of the following should the network administrator use? (Choose two.)
A. OSPF
B. IS-IS
C. RIPv1
D. BGP
E. VRRP
Which of the following is considered a classless routing protocol?
A. IGRP
B. IS-IS
C. RIPv1
D. STP
A network technician needs to protect IP based servers in the network DMZ from being discovered by an intruder utilizing a ping sweep. Which of the following should the technician do to protect the network from ping sweeps?
A. Block echo replies inbound to the DMZ
B. Disable UDP on the servers
C. Block ICMP at the firewall
D. Disable TCP/IP on the server
A network topology that utilizes a central device with point-to-point connections to all other devices is which of the following?
A. Star
B. Ring
C. Mesh
D. Bus
Which of the following network infrastructure implementations would be used to support files being transferred between Bluetooth-enabled smartphones?
A. PAN
B. LAN
C. WLAN
D. MAN
The human resource department has been moved to an area which is more than 60 meters away from the nearest IDF. In order to comply with the SLA which requires that 10Gb speeds be provided, which of the following media will need to utilized?
A. CAT6a
B. CAT5e
C. 802.11n
D. 802.11ac
A technician needs to secure web traffic for a new e-commerce website. Which of the following will secure traffic between a web browser and a website?
A. SSL
B. DNSSEC
C. WPA2
D. MTU
A network technician has been tasked with designing a WLAN for a small office. One of the requirements of this design is that it is capable of supporting HD video streaming to multiple devices. Which of the following would be the appropriate wireless technology for this design?
A. 802.11g
B. 802.11ac
C. 802.11b
D. 802.11a
Extra digit added to numerical data that is used to check data , integrity after input, transmission, storage and processing.
check digit
check sum
data packet
ISDN
links two or more computer systems within a limited geographical area, similar to LAN.
WAN
MU-LAN
VLAN
WLAN
Network communication method that creates and transmits small units of data, called packets, through a network, independently of the overall message.
integrated services digital network
packet switching
data packet
microwave transmission
International rules that ensure the transfer of data between systems.
protocol
packet switching
networking
rpacket
Communications protocols used to connect hosts on the Internet.
TCP/IP
FTP/WWE
SSL/JPG
HTTP/HTML
the following three are the most commonly used network components that play an essential part in the creation of a network:
Hub, Switch and Router.
cube, Switch and psp.
server, Switch and client.
MODEM, GPU and HTTP.
Can identify which network device is connected to which part. This allows the ____________ to transmit data to the exact port and network device for which it is intended.
Hub
Switch
Router
Server
A VPN provides a secure connection to employees of the company, while an extranet limits access to the company network to selected (authenticated) outsiders.
True
False
Which are benefits of using a layered network model?
A . it specifies how changes to one layer must be propagated through the other layers
B . A manufacturer can focus on technologies of a particular layer.
C . it focuses on details rather than general functions of networking
D . Makes protocol design easier.
E . Easy to manage.
A and B
B, D, and E
A and C
All of the above
What is symmetric encryption?
When users use the same key to encrypt communication.
When users use the same line of communication.
When users use the same operating systems.
