Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cybersecurity Fundamentals

Total questions: 45

Worksheet time: 23mins

Name
Class
Date
1.

The vulnerability discovered in IPsec in early 2014 was nicknamed Heartbleed, due to an issue with a heartbeat extension in the protocol.

a)

True

b)

False

2.

Behavior-based monitoring attempts to overcome the limitations of both anomaly-based monitoring and signature-based monitoring by being more adaptive and proactive instead of reactive.

a)

False

b)

True

3.

The OSI model breaks networking steps down into a series of six layers.



a)

True

b)

False

4.

A Hardware Security Module (HSM) is essentially a chip on the motherboard of the computer that provides cryptographic services.

a)

True

b)

False

5.

A hash algorithm is designed to create a hash that represents the contents of a set of data that can later be decrypted.

a)

True

b)

False

6.

Self-encrypting HDD is commonly found in copiers and multifunction printers as well as point-of-sale systems used in government, financial, and medical environments.

a)

True

b)

False

7.

Digital signatures actually only show that the public key labeled as belonging to the person was used to encrypt the digital signature.

a)

True

b)

False

8.

Defense in depth, or layered security, involves the use of multiple types of network hardware within a network.​

a)

True

b)

False

9.

Public keys can be stored by embedding them within digital certificates, while private keys can be stored on the user’s local system.

a)

True

b)

False

10.

A block cipher works on a single character at a time, and is faster than a stream cipher.

a)

True

b)

False

11.

The Encapsulating Security Payload (ESP) protocol ensures IPsec's confidentiality.​

a)

True

b)

False

12.

Workgroup switches must work faster than core switches.

a)

True

b)

False

13.

Digital certificates cannot be used to identify objects other than users.

a)

True

b)

False

14.

Security is enhanced by subnetting a single network into multiple smaller subnets in order to isolate groups of hosts.

a)

True

b)

False

15.

Steganography hides the existence of data within images by dividing and hiding portions of a file within the image.

a)

True

b)

False

16.

SSL and TLS keys of what length are generally considered to be strong?

a)

128

b)

1024

c)

2048

d)

4096

17.

What is the name for a computer or application program that intercepts user requests from the internal secure network and then processes that request on behalf of the user?

a)

proxy server

b)

DNS server

c)

VPN server

d)

telnet server

18.

An administrator has two servers that host the same web content, but only one server is utilized at a given time. What can be configured to make use of both servers in a manner that is transparent to the end users?

a)

Stateful packet filtering

b)

Load balancing

c)

DNS caching

d)

DNS poisoning

19.

A firewall that keeps a record of the state of a connection between an internal computer and an external device is using what technology below?

a)

Stateful frame filtering

b)

Stateless frame filtering

c)

Stateful packet filtering

d)

Stateless packet filtering

20.

In cryptography, which of the five basic protections ensures that the information is correct and no unauthorized person or malicious software has altered that data?

a)

Confidentiality

b)

Availability

c)

Encryption

d)

Integrity

21.

The IPv4 protocol uses IP addresses which are how many bytes in length?

a)

4

b)

8

c)

16

d)

32

22.

A sensitive connection between a client and a web server uses what class of certificate?

a)

Class 1

b)

Class 2

c)

Class 3

d)

Class 4

23.

A web server must be accessible to untrusted outside users. What can be done to isolate this host and any additional hosts with similar requirements from more secured hosts on a network?

a)

Install a bastion,

configure host

b)

Set up a choke in front of the web server

c)

Create a DMZ, add necessary hosts.

d)

Configure a reduction point on a firewall

24.

An early networking device that functioned at layer 1 of the OSI model and added devices to a single segment is known as which of the following choices?

a)

switch

b)

router

c)

firewall

d)

hub

25.

Which type of cryptographic algorithm takes an input string of any length, and returns a string of any requested variable length?

a)

Substitution

b)

block

c)

loop

d)

sponge

26.

A document that describes in detail how a CA uses and manages certificates, as well as how end users register for a digital certificate, is known as?

a)

Certificate practice statement (CPS)

b)

Certificate policy (CP)

c)

Lifecycle policy (LP)

d)

Access policy (AP)

27.

The management in your corporate office want to group users on the network together logically even though they are attached to separate network switches. How can this be done?

a)

Create a subnet for each network switch involved.

b)

Create additional broadcast domains for the users.

c)

Add all users to a single DMZ segment

d)

Create a VLAN and add the users' computers / ports to the VLAN.

28.

The process by which keys are managed by a third party, such as a trusted CA, is known as?

a)

Key escrow

b)

Key destruction

c)

Key renewal

d)

Key management

29.

What is the name of the open source asymmetric cryptography system that runs on Windows, UNIX, and Linux systems, and is compatible with PGP?

a)

GPG

b)

OGP

c)

CGP

d)

GPP

30.

What technology enables authorized users to use an unsecured public network, such as the Internet, as if it were a secure private network?

a)

IKE tunnel

b)

VPN

c)

endpoint

d)

router

31.

Select below the term that is used to describe a trusted third-party agency that is responsible for issuing digital certificates:

a)

Registration Authority

b)

Delegation Authority

c)

Certification Authority

d)

Participation Authority

32.

The simplest type of stream cipher, one in which one letter or character is exchanged for another, is known as what?

a)

shift

b)

substitution

c)

lock

d)

loop

33.

What is the name for an organization that receives, authenticates, and processes certificate revocation requests?

a)

Registration Authority

b)

Certificate Authority

c)

Repudiation Authority

d)

Intermediate Authority

34.

The asymmetric cryptography algorithm most commonly used is:

a)

AES

b)

RSA

c)

Twofish

d)

Blowfish

35.

The SHA-1 hashing algorithm creates a digest that is how many bits in length?

a)

96 bits

b)

128 bits

c)

160 bits

d)

192 bits

36.

What cryptographic method, first proposed in the mid-1980s, makes use of sloping curves instead of large prime numbers?

a)

FCC

b)

RSA

c)

ECC

d)

IKE

37.

The NTRUEncrypt cryptographic algorithm makes use of which of the following cryptographic techniques?

a)

matrix-based

b)

lattice-based

c)

linear

d)

quantum

38.

On what principle did Julius Caesar's cryptographic messages function?

a)

Each alphabetic letter was replaced by a corresponding number

b)

Each alphabetic letter was represented by a seemingly random symbol

c)

Each alphabetic letter was shifted three places down in the alphabet

d)

Each alphabetic letter was shifted 5 places up in the alphabet

39.

_________________ is a technique that allows a private IP addresses to be used on the Internet with a single public IP address.

a)

Network Address Translation (NAT)

b)

BAT

c)

HAT

d)

SAT

40.

Internet ____________________ filters monitor Internet traffic and block access to preselected Web sites and files

a)

network

b)

content

c)

keyword

d)

netflix

41.

A ______________ is a worker who work occasionally or regularly from a home office.

a)

telephone

b)

telepath

c)

telecommuter

d)

teleevangelist

42.

Key ____________________ dates prevent an attacker who may have stolen a private key from being able to decrypt messages for an indefinite period of time.

a)

Holiday

b)

network

c)

programming

d)

expiration

43.

A framework for managing all of the entities involved in creating, storing, distributing, and revoking digital certificates

a)

Public key Infrastructure (PKI)

b)

Distributed trust model

c)

Certificate Repository

d)

Bridge trust model

44.

A trusted third-party agency that is responsible for issuing digital certificates​

a)

Session keys

b)

key escrow

c)

Digital certificate

d)

Certificate Authority (CA)​

45.

A trust model with one CA that acts as a facilitator to interconnect all other CAs

a)

Bridge trust model

b)

Certificate Repository

c)

key escrow

d)

Session keys