wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Part 4

Total questions: 15

Worksheet time: 9mins

Name
Class
Date
1.

How do modern cryptographers defend against brute-force attacks?

a)

Use statistical analysis to eliminate the most common encryption keys.

b)

Use a keyspace large enough that it takes too much money and too much time to conduct a successful attack.

c)

Use an algorithm that requires the attacker to have both ciphertext and plaintext to conduct a successful attack.

d)

Use frequency analysis to ensure that the most popular letters used in the language are not used in the cipher message.

2.

How does a Caesar cipher work on a message?

a)

Words of the message are substituted based on a predetermined pattern

b)

Letters of the message are rearranged based on a predetermined pattern

c)

Letters of the message are rearranged randomly.

d)

Letters of the message are replaced by another letter that is a set number of places away in the alphabet.

3.

What is the main factor that ensures the security of encryption of modern algorithms?

a)

complexity of the hashing algorithm

b)

the use of 3DES over AES

c)

secrecy of the keys

d)

secrecy of the algorithm

4.

What is the next step in the establishment of an IPsec VPN after IKE Phase 1 is complete?

a)

authentication of peers

b)

detection of interesting traffic

c)

negotiation of the IPsec SA policy

d)

negotiation of the ISAKMP policy

5.

Refer to the exhibit. What algorithm will be used for providing confidentiality?

a)

RSA

b)

Diffie-Hellman

c)

DES

d)

AES

6.

What is the purpose of this command?

"crypto ipsec transform-set MYSET esp-aes 256 esp-md5-hmac"

a)

It establishes the set of encryption and hashing algorithms used to secure the data sent through an IPsec tunnel.

b)

It defines the default ISAKMP policy list used to establish the IKE Phase 1 tunnel.

c)

It establishes the criteria to force the IKE Phase 1 negotiations to begin.

d)

It indicates that IKE will be used to establish the IPsec tunnel for protecting the traffic.

7.

Which algorithm can ensure data integrity?

a)

PKI

b)

MD5

c)

AES

d)

RSA

8.

A company implements a security policy that ensures that a file sent from the headquarters office to the branch office can only be opened with a predetermined code. This code is changed every day. Which two algorithms can be used to achieve this task? (Choose two.)

a)

AES

b)

SHA-1

c)

3DES

d)

MD5

e)

HMAC

9.

A network technician has been asked to design a virtual private network between two branch routers. Which type of cryptographic key should be used in this scenario?

a)

hash key

b)

symmetric key

c)

asymmetric key

d)

digital signature

10.

Which two options can limit the information discovered from port scanning? (Choose two.)

a)

encryption

b)

passwords

c)

authentication

d)

firewall

e)

intrusion prevention system

11.

An administrator discovers that a user is accessing a newly established website that may be detrimental to company security. What action should the administrator take first in terms of the security policy?

a)

Immediately suspend the network privileges of the user.

b)

Revise the AUP immediately and get all users to sign the updated AUP.

c)

Create a firewall rule blocking the respective website.

d)

Ask the user to stop immediately and inform the user that this constitutes grounds for dismissal.

12.

Refer to the exhibit. A network administrator configures a named ACL on the router. Why is there no output displayed when the show command is issued?

a)

The ACL is not activated.

b)

The ACL name is case sensitive.

c)

The ACL has not been applied to an interface.

d)

No packets have matched the ACL statements yet.

13.

ACLs are used primarily to filter traffic. What are two additional uses of ACLs? (Choose two.):

a)

specifying internal hosts for NAT

b)

identifying traffic for QoS

c)

specifying source addresses for authentication

d)

reorganizing traffic into VLANs

e)

filtering VTP packets

14.

What two features are added in SNMPv3 to address the weaknesses of previous versions of SNMP? (Choose two.)

a)

encryption

b)

ACL management filtering

c)

bulk MIB objects retrieval

d)

authorization with community string priority

e)

authentication

15.

What network testing tool is used for password auditing and recovery?

a)

Nessus

b)

Metasploit

c)

L0phtcrack

d)

SuperScan