wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

LAN Security Concepts Cisco

Total questions: 22

Worksheet time: 8mins

Name
Class
Date
1.

Which attack encrypts the data on hosts in an attempt to extract a monetary payment from the victim?

a)

Malware

b)

RansomWare

c)

DataBreach

d)

DDoS

2.

Which devices are specifically designed for network security? (Choose three)

a)

VPN-Enabled Router

b)

NGFW

c)

WLC

d)

Switch

e)

NAC

3.

Which device monitors SMTP traffic to block threats and encrypt outgoing messages to prevent data loss?

a)

NAC

b)

ESA

c)

WSA

d)

NGFW

4.

Which device monitors HTTP traffic to block access to risky sites and encrypt outgoing messages?

a)

WSA

b)

NGFW

c)

ESA

d)

NAC

5.

Which AAA component is responsible for collecting and reporting usage data for auditing and billing purposes?

a)

Accounting

b)

Authorization

c)

Authentication

6.

Which AAA component is responsible for controlling who is permitted to access the network?

a)

Accounting

b)

Authorization

c)

Authentication

7.

Which AAA component is responsible for determining what the user can access?

a)

Authentication

b)

Authorization

c)

Accounting

8.

In an 802.1X implementation, which device is responsible for relaying responses?

a)

Authenticator

b)

Router

c)

Supplicant

d)

Authentication Server

e)

Client

9.

Which of the following mitigation techniques are used to protect Layer 3 through Layer 7 of the OSI Model? (Choose three.)

a)

VPN

b)

DHCP Snooping

c)

FireWalls

d)

IPS Devices

e)

IPSG

10.

Which of the following mitigation techniques prevents many types of attacks including MAC address table overflow and DHCP starvation attacks?

a)

DAI

b)

IPSG

c)

Port Security

d)

DHCP snooping

11.

Which of the following mitigation techniques prevents MAC and IP address spoofing?

a)

Port Security

b)

DAI

c)

IPSG

d)

DHCP snooping

12.

Which of the following mitigation techniques prevents ARP spoofing and ARP poisoning attacks?

a)

DAI

b)

DHCP snooping

c)

IPSG

d)

Port Security

13.

Which of the following mitigation techniques prevents DHCP starvation and DHCP spoofing attacks?

a)

DAI

b)

DHCP snooping

c)

IPSG

d)

Port Security

14.

What is the behavior of a switch as a result of a successful MAC address table attack?

a)

The Switch will shut down

b)

The Switch interfaces will transition to error-disable state

c)

The Switch will forward all received frames to all other ports within the VLAN

d)

The switch will drop all received frames

15.

What would be the primary reason a threat actor would launch a MAC address overflow attack?

a)

So that the threat actor can see frames that are destinated to other devices

b)

So that the threat actor can execute arbitrary code on the switch

c)

So that the Switch stops forwarding traffic

d)

So that legitimate hosts cannot obtain a MAC Address

16.

What mitigation technique must be implemented to prevent MAC address overflow attacks?

a)

DHCP snooping

b)

Port Security

c)

DAI

d)

IPSG

17.

A threat actor changes the MAC address of the threat actor's device to the MAC address of the default gateway. What type of attack is this?

a)

Address spoofing

b)

ARP spoofing

c)

CDP reconnaissance

d)

DHCP starvation

e)

STP attack

18.

A threat actor sends a BPDU message with priority 0. What type of attack is this?

a)

Address spoofing

b)

ARP spoofing

c)

CDP reconnaissance

d)

DHCP starvation

e)

STP attack

19.

A threat actor leases all the available IP addresses on a subnet. What type of attack is this?

a)

Address spoofing

b)

ARP spoofing

c)

CDP reconnaissance

d)

DHCP starvation

e)

STP attack

20.

A threat actor sends a message that causes all other devices to believe the MAC address of the threat actor's device is the default gateway. What type of attack is this?

a)

Address spoofing

b)

ARP spoofing

c)

CDP reconnaissance

d)

DHCP starvation

e)

STP attack

21.

A threat actor configures a host with the 802.1Q protocol and forms a trunk with the connected switch. What type of attack is this?

a)

Address spoofing

b)

VLAN hopping

c)

CDP reconnaissance

d)

DHCP starvation

e)

STP attack

22.

A threat actor discovers the IOS version and IP addresses of the local switch. What type of attack is this?

a)

Address spoofing

b)

VLAN hopping

c)

CDP reconnaissance

d)

DHCP starvation

e)

STP attack