Font size
WorksheetsINF2781 - Day 9
Total questions: 55
Worksheet time: 1hrs 12mins
What is the main advantage of using a security group in cloud architecture compared to traditional firewall rules?
Simplified configuration
Remote control of firewall rules
Reduces the risk of accidental exposure
More efficient packet filtering
Which of the following is NOT a function of a NIDS (Network Intrusion Detection System)?
Monitoring inbound packets
Encrypting network traffic
Alerting administrators of potential attacks
Blocking suspicious IP addresses
In traditional network architecture, which layer is primarily responsible for protecting the internal network from external threats?
Load balancer
Virtual Private Network (VPN)
Perimeter layer
DMZ (DeMilitarized Zone)
What is a key reason corporations are moving away from perimeter-based network security?
Difficulty in managing firewall rules
Vulnerability due to compromised authentication credentials
Increased cost of maintenance
ncompatibility with cloud-based services
Which of the following best practices helps minimize the risk of network attacks in a cloud environment?
Opening all ports on a server
Running multiple network services on a single server
Using a reverse proxy
Allowing unrestricted direct access to databases
What is the purpose of a DMZ in network architecture?
To provide a secure zone for external users to access internal servers
To encrypt data traffic within the network
To expose external-facing services to an untrusted network
To manage load balancing across the network
How does a firewall in a cloud environment differ from a traditional firewall?
It does not block traffic
It operates based on physical hardware
It uses security groups instead of physical devices
It is less efficient in filtering traffic
What is the role of PEP (Policy Enforcement Points) in traditional network security?
Acts as an interface for managing virtual servers
Serves as the gatekeeper for network traffic
Encrypts communication between servers
Provides a user interface for configuring firewalls
Which of the following could result in full access to all servers within a network segment in traditional architectures?
Misconfigured VPN
Weak passwords
Compromise of an individual server
Poorly implemented load balancing
What is a major benefit of using multiple layers of security (multilayered defense) in a network architecture?
It simplifies network design
It eliminates the need for encryption
It allows audit of the end-to-end communication
It ensures data is only encrypted once
True/False: Implementing NIDS on each server in a cloud network introduces a single point of failure.
(a)
True/False: Security groups in cloud environments can be managed remotely, reducing the risk of configuration errors.
(a)
True/False: A reverse proxy can make an infrastructure more vulnerable to attacks.
(a)
True/False: Using multiple network services on a single server is considered a best practice for network security.
(a)
True/False: Perimeter security involves the use of both NIDS and firewalls to monitor and control traffic.
(a)
True/False: A DMZ acts as a buffer zone between an internal network and external networks, exposing certain services.
(a)
True/False: A firewall’s primary function is to encrypt data sent between different segments of a network.
(a)
True/False: If one server is compromised in a traditional network, it can lead to full access across all servers in the same segment.
(a)
True/False: Security in cloud networks does not require the use of traditional firewalls.
(a)
True/False: Opening only necessary ports on a server is an example of a network security best practice.
(a)
A company’s internal network was compromised after an attacker gained access through a stolen authentication credential. Describe how implementing multilayered security could have mitigated this situation
During a high-traffic period, a company’s servers experienced a Denial-of-Service (DoS) attack that disrupted services. Explain how NIDS could have helped to detect and mitigate this attack.
A company uses traditional perimeter security with a DMZ but plans to migrate to a cloud-based environment. What changes should they consider to maintain or enhance their network security?
An organization’s web application is hosted in a DMZ, but they want to allow internal employees to connect directly to the application servers. What are the potential security risks, and how can they be mitigated?
A new firewall rule accidentally exposed a company’s internal servers to the internet. Describe a best practice that could prevent such accidental exposures in the future.
An attacker managed to bypass the external firewall and reached the internal network. What measures can be taken to ensure further layers of security prevent complete access?
A company wants to use cloud services but is concerned about the security of sensitive data. How can they use security groups to protect their data in the cloud?
Explain a situation where using a reverse proxy could enhance the security of a web-based application.
A company experienced data loss after a security incident. What data protection measures should they implement to avoid this in the future?
During a security audit, it was found that several servers were running services on non-standard ports. What could be the implications of this, and how should it be addressed?
In cloud networking, a _ acts as a virtual firewall, filtering traffic based on specified rules.
(a)
A _ zone allows external services to be exposed without compromising the internal network.
(a)
_ intrusion detection systems are used to monitor inbound and outbound traffic across a network.
(a)
A _ is a server that acts as an intermediary for requests from clients seeking resources from other servers.
(a)
Traditional network security often focuses on protecting the _ layer.
(a)
A _ is responsible for inspecting and allowing or denying traffic entering or leaving the network.
(a)
The purpose of a _ is to monitor for and alert administrators of suspicious patterns.
(a)
Security groups do not provide privileged access unless _ are defined.
(a)
An attack that attempts to overwhelm a network or service is known as a _ attack.
(a)
You see a boat filled with people. It has not sunk, but when you look again you don’t see a single person on the boat. Why?
I have keys but open no locks. I have space but no room. You can enter but you can't go outside. What am I?
What can travel around the world while staying in a corner?
If two's company and three's a crowd, what are four and five?
What is a common challenge faced when implementing zero trust security models?
High initial setup costs
Complexity in user authentication
Incompatibility with legacy systems
Difficulty in monitoring user activity
Which technology is often used to enhance security in cloud environments by isolating workloads?
Virtualization
Load balancing
Content Delivery Network (CDN)
Network Address Translation (NAT)
What is the primary function of a Web Application Firewall (WAF)?
To filter and monitor HTTP traffic
To encrypt data in transit
To manage user access controls
To provide a backup for data storage
What is a significant drawback of relying solely on perimeter security in modern networks?
Increased latency in network traffic
Inability to detect insider threats
Higher costs for hardware upgrades
Complexity in managing multiple firewalls
Which of the following is a key feature of a Security Information and Event Management (SIEM) system?
Real-time analysis of security alerts
Physical security of data centers
Automated backup of data
Network load balancing capabilities
What is the primary purpose of implementing multi-factor authentication (MFA) in network security?
To simplify user login processes
To enhance security by requiring multiple forms of verification
To reduce the number of passwords users need to remember
To allow access from any device without restrictions
What is the primary advantage of using encryption in data transmission?
It increases data transfer speed
It ensures data integrity
It prevents unauthorized access
It simplifies data management
Which of the following is a common method for securing APIs?
Using API keys
Implementing load balancing
Disabling logging
Opening all endpoints
What is a significant benefit of using a Virtual Private Network (VPN) in network security?
It allows unrestricted access to all websites
It encrypts internet traffic
It improves internet speed
It eliminates the need for firewalls
What is the main advantage of using a Virtual Private Network (VPN) in network security?
It allows unrestricted access to all network resources
It encrypts data transmitted over the internet
It simplifies network configuration
It eliminates the need for firewalls
How does a Distributed Denial of Service (DDoS) attack impact network security?
It enhances network performance
It overwhelms the network with excessive traffic
It secures the network from unauthorized access
It provides a backup for data storage
What is the purpose of using intrusion prevention systems (IPS) in network security?
To monitor network traffic for suspicious activity
To automatically block potential threats
To manage user access controls
To provide a user interface for configuring firewalls
