Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

DOMAIN 4 - Communications & Network Security

Total questions: 21

Worksheet time: 25mins

Name
Class
Date
1.

What is the first phase of the TCP three-way handshake sequence?

a)

    A. SYN flagged packet

b)

   B. ACK flagged packet

c)

C. FIN flagged packet

d)

D. SYN/ACK flagged packet

2.

UDP is a connectionless protocol that operates at the Transport Layer of the OSI model and uses ports to manage simultaneous connections.

Which of the following terms is also related to UDP?

a)

Bits

b)

Logical addressing

c)

Data reformatting

d)

Simplex

3.

During a security assessment of a wireless network, Jim discovers that LEAP is in use on a network using WPA. What recommendation should Jim make?

a)

A. Continue to use LEAP. It provides better security than TKIP for WPA networks.

b)

B. Use an alternate protocol like PEAP or EAP-TLS and implement WPA2 if supported.

c)

C. Continue to use LEAP to avoid authentication issues but move to WPA2.

d)

D. Use an alternate protocol like PEAP or EAP-TLS and implement Wired Equivalent Privacy to avoid wireless security issues.

4.

Jake has been told that there is a layer 3 problem with his network. Which of the following is associated with layer 3 in the OSI model?

a)

 

A.     IP addresses

b)

B.     TCP and UDP protocols

c)

C.     MAC addresses

d)

D.     Sending and receiving bits via hardware

5.

Frank is responsible for ensuring that his organization has reliable, supported network hardware. Which of the following is not a common concern for network administrators as they work to ensure their network continues to be operational?

a)

A. If the devices have vendor support

b)

B. If the devices are under warranty

c)

C. If major devices support redundant power supplies

d)

D. If all devices support redundant power supplies

6.

Among the many aspects of a security solution, the most important is whether it addresses a specific need (i.e., a threat) for your assets. But there are many other aspects of security you should consider as well. A significant benefit of a security control is when it goes unnoticed by users. What is this called?

a)

A.     Invisibility

b)

B.     Transparency

c)

C.     Diversion

d)

D.     Hiding in plain sight

7.

What speed and frequency range are used by 802.11n?

a)

A. 5 GHz only

b)

B. 900 MHz and 2.4 GHz

c)

C. 2.4 GHz and 5 GHz

d)

D. 2.4 GHz only

8.

Melissa wants to combine multiple physical networks in her organization in a way that is transparent to users but allows the resources to be allocated as needed for networked services. What type of network should she deploy?

a)

A. iSCSI

b)

B. A virtual network

c)

C. SDWAN

d)

D. A CDN

9.

Which email security solution provides two major usage modes: (1) signed messages that provide integrity, sender authentication, and nonrepudiation; and (2) an enveloped message mode that provides integrity, sender authentication, and confidentiality?

a)

A. S/MIME

b)

B. MOSS

c)

C. PEM

d)

D. DKIM

10.

Alicia’s company has implemented multifactor authentication using SMS messages to provide a numeric code. What is the primary security concern that Alicia may want to express about this design?

a)

A. SMS messages are not encrypted.

b)

B. SMS messages can be spoofed by senders.

c)

C. SMS messages may be received by more than one phone.

d)

D. SMS messages may be stored on the receiving phone

11.

Up Next: Secure Network Component

4 lines
12.

     A ______________ is an intelligent hub because it knows the hardware addresses of the systems connected on each outbound port. Instead of repeating traffic on every outbound port, it repeats traffic only out of the port on which the destination is known to exist.

a)

A.     Repeater

b)

B.     Switch

c)

C.     Bridge

d)

D.     Router

13.

     What type of security zone can be positioned so that it operates as a buffer between the secured private network and the internet and can host publicly accessible services?

a)

A.     Honeypot

b)

B.     Screened subnet

c)

C.     Extranet

d)

D.     Intranet

14.

     Michele wants to replace FTP traffic with a secure replacement. What secure protocol should she select instead?

a)

A. TFTP

b)

B. HFTPS

c)

C. SecFTP

d)

D. SFTP

15.

How do you distinguish between a bridge and a router?

a)

A. A bridge simply connects multiple networks, a router examines each packet to determine which network to forward it to.

b)

B. "Bridge" and "router" are synonyms for equipment used to join two networks.

c)

C. The bridge is a specific type of router used to connect a LAN to the global Internet.

d)

D. The bridge connects multiple networks at the data link layer, while router connects multiple networks at the network layer

16.

     What network tool can be used to protect the identity of clients while providing Internet access by accepting client requests, altering the source addresses of the requests, mapping requests to clients, and sending the modified requests out to their destination?

a)

A. A switch

b)

B. A proxy

c)

C. A router

d)

D. A firewall

17.

What features can IPsec provide for secure communication?

a)

A.     Encryption, access control, nonrepudiation and message authentication

b)

B.     Protocol convergence, content distribution, micro-segmentation, and network virtualization

c)

C.     Encryption, authorization, nonrepudiation, and message integrity checking

d)

A.     Micro-segmentation, network virtualization, encryption, and message authentication

18.

      Sue modifies her MAC address to one that is allowed on a network that uses MAC filtering to provide security. What is the technique Sue used, and what non-security issue could her actions cause?

a)

A. Broadcast domain exploit, address conflict

b)

B. Spoofing, token loss

c)

C. Spoofing, address conflict

d)

D. Sham EUI creation, token loss

19.

The CISO has requested a report on the potential communication partners throughout the company. There is a plan to implement VPNs between all network segments in order to improve security against eavesdropping and data manipulation. Which of the following cannot be linked over a VPN?

a)

A.     Two distant internet-connected LANs

b)

B.     Two systems on the same LAN

c)

C.     A system connected to the internet and a LAN connected to the internet

d)

D.     Two systems without an intermediary network connection

20.

Modern networks are built on multilayer protocols, such as TCP/IP. This provides for flexibility and resiliency in complex network structures. All of the following are implications of multilayer protocols except which one?

a)

A.      VLAN hopping

b)

B.      Multiple encapsulation

c)

C.      Filter evasion using tunneling

d)

D.      Static IP addressing

21.

     A(n) _________________ firewall is able to make access control decisions based on the content of communications as well as the parameters of the associated protocol and software.

a)

A.     Application-level

b)

B.     Stateful inspection

c)

C.     Circuit-level

d)

D.     Static packet filtering