wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

3rd Quarter Final Network Security Practice Exam 2

Total questions: 59

Worksheet time: 42mins

Name
Class
Date
1.

What is a benefit of the SmartScreen Filter built into Internet Explorer and Microsoft Edge?

a)

Protection from sniffers

b)

Firewall protection

c)

Perimeter network protection

d)

Phishing protection

2.

Match the following

Categorize the following

Acceptible Use Policy (AUP)

Disaster Recovery Plan (DRP)

Intrusion Prevention System (IPS)

Stateless Firewall

Administrative Control
Technical Control
3.

Which type of backup backs up all changed files since the last full backup?

a)

incremental

b)

differential

c)

transitional

d)

phased

4.

When utilizing private browsing your history is not saved.

a)

True

b)

False

5.

When utilizing private browsing in the workplace, the workplace can not tell which sites one visited.

a)

True

b)

False

6.

An internet service provider will not know the sites one visited while private browsing.

a)

True

b)

False

7.

Where on a Windows Server is a password reset for a domain user account?

a)

Group Policy

b)

Local Users and Groups

c)

Local Security Policy

d)

Active Directory Users and Computers

8.

Security Compliance Manager is an example of a Stateful firewall.

Review the underlined text. If the statement is correct, select “No change is needed.” If the statement is incorrect, select the answer that best fits in the statement.

a)

No change is needed

b)

Tool to determine which devices are allowed on a network

c)

Policy Maker

d)

Tool for desktop, data center, and cloud configurations

9.

Which Windows Registry hive stores file extensions for applications?

a)

HKEY_CLASSES_ ROOT

b)

HKEY_LOCAL_ MACHINE

c)

HKEY_CURRENT_ USER

d)

HKEY_CURRENT_ CONFIGURATION

10.

A honeypot is a computer used to trap hackers and distract them from real targets when the hackers are trying to attack a network.

Review the underlined text. If the statement is correct, select “No change is needed.” If the statement is incorrect, select the answer that best fits in the statement.

a)

No change needed

b)

IDS

c)

IPS

d)

Honeynet

11.

BitLocker will use software-based encryption in conjunction with a TPM on a device.

Review the underlined text. If the statement is correct, select “No change is needed.” If the statement is incorrect, select the answer that best fits in the statement.

a)

No change is needed

b)

in addition to

c)

instead of

d)

in the absence of

12.

A digital signature included in an email is used to _____.

a)

Validate the sender

b)

Decrypt the message

c)

Validate the recipient

d)

Encrypt the message

13.

Which type of malware gains administrator-level access of a system and targets items such as the BIOS, hypervisor, and kernel?

a)

Worm

b)

Rootkit

c)

Virus

d)

Bot

e)

Logic Bomb

14.

Asymmetric encryption uses a single key to perform encryption and decryption.

a)

True

b)

False

15.

DES is an asymmetric encryption algorithm.

a)

True

b)

False

16.

RSA is an asymmetric encryption algorithm.

a)

True

b)

False

17.

Which tunneling protocol is used to carry packets from unroutable IP addresses across a routable IP network?

a)

IPsec

b)

PPP

c)

GRE

d)

PPTP

e)

L2RP

18.

Protocol spoofing monitors packet traffic on a network and reports the sender, destination, and type of packet.

Review the underlined text. If the statement is correct, select “No change is needed.” If the statement is incorrect, select the answer that best fits in the statement.

a)

No change is needed

b)

A network sniffer

c)

The Microsoft Security Assessment Tool

d)

SpeedTest

19.

Which is a Windows 10 authentication system that uses a user's face, iris, or fingerprint to unlock devices?

a)

Windows Reader

b)

Virtual Smart Card

c)

Windows Hello

d)

Windows Biometric Framework

20.

Which best describes the reason for encrypting offline files?

a)

To be able to use TPM on files

b)

To protect files in case a device is lost or stolen

c)

To control shares on files

d)

To control permissions on files

21.

Match the following

Categorize the following

DNSSEC helps prevent pharming and man-in-the-middle attacks.

DNSSEC is proprietary to Microsoft Domain Name Servers.

DNSSEC uses a digital signature to create a chain of authority.

TRUE
FALSE
22.

Which Windows tool is used to encrypt removable drives?

a)

BitLocker To Go

b)

Trusted Platform Module (TPM)

c)

Bitlocker

d)

Encrypting File Service (EFS)

23.

What does BitLocker To Go encrypt?

a)

Folders

b)

Device hard drives

c)

Files

d)

Removable hard drives

24.

Once it has been determined what will be audited and where the audit files will be stored, what should be taken into consideration next?

a)

How large the log files will be

b)

When syslog will be used

c)

Who has access to the logs

d)

What ticketing system will be used for the logs

25.

Which Internet technology poses the greatest risk to a user?

a)

ActiveX Controls

b)

Adobe Flash

c)

Active Server Pages (ASP)

d)

Java Applets

26.

A department head wants to control the types of permissions and the recipient of permissions on a set of folders for the department. The department head is not in the Administrators group. What should the department head do in order to be able to control permissions?

a)

Become an Administrator

b)

Take ownership of the folder

c)

Gain Full Control permissions on the folder

d)

Gain Modify permissions on the folder

27.

Which three of the following are group scopes defined by Active Directory? (Choose three)

a)

Universal

b)

Domain Security

c)

Global

d)

Domain Local

e)

Local User

28.

A router can divide a physical network into segments called VLANS.

Review the underlined text. If the statement is correct, select “No change is needed.” If the statement is incorrect, select the answer that best fits in the statement.

a)

subnets

b)

partitions

c)

VPNs

d)

No change is needed

29.

Which area of Group Policy can be used to control apps that can be run on devices?

a)

AppLocker

b)

Windows Installer rules

c)

Packaged app rules

d)

Executable rules

30.

An administrator configures a software restriction policy using the Local Security Policy editor. How can the administrator make this policy apply to an entire Active Directory domain?

a)

Export the policy and then import it into Group Policy

b)

Link to the local policy from Group Policy

c)

Redefine the policy in Group Policy

d)

Copy the policy and paste it into Group Policy

31.

In which locations can system audit policies be set? (Choose two)

a)

Syslog

b)

Local Security Policy

c)

Event Viewer

d)

Group Policy

32.

Which type of audit event should be set if one is trying to determine attempts to access non-Active Directory objects?

a)

Privilege Use

b)

Object Tracking

c)

Permit Files

d)

Object Access

33.

Your email program is blocking emails from a certain sender. What is the best option?

a)

Reconfigure the Gateway

b)

Add the sender to a whitelist

c)

Add contacts to a list

d)

Create a rule in the email client

34.

What should be done to a mobile device used for business purposes if it is lost or stolen?

a)

Remote wipe

b)

Remote encryption

c)

Use the find the device app on the device to locate it

d)

Remote shutdown

35.

Which is the most common format used for digital certificates?

a)

PKCS #12

b)

PKCS #7

c)

X.509

d)

PKCS #3

36.

You are an intern for a small company. Recently, you started receiving complaints that employees are having difficulty connecting to one of the servers and that the server is responding slowly or not at all. When you monitor the packet traffic, you notice a very high volume of packets being sent from three computers in the HR Department as shown in the attached image: The scenario demonstrated is a __________ attack.

a)

Brute Force

b)

Denial of Service

c)

Man-in-the-Middle

d)

Phishing

37.

You are an intern for a small company. Recently, you started receiving complaints that employees are having difficulty connecting to one of the servers and that the server is responding slowly or not at all. When you monitor the packet traffic, you notice a very high volume of packets being sent from three computers in the HR Department as shown in the attached image. What should you do to avoid this type of attack?

a)

Run antivirus software on all computers

b)

Change all administrative passwords

c)

Configure your server to deny connections from the HR department

d)

Nothing. The IPS will notice the uptick in traffic and provide more bandwidth.

38.

An attack on your company server is being made using the attached image. To detect this type of attack, you should enable the policy to audit __________

a)

Successful logon attempts

b)

Failed logon attempts

c)

Sniffing network packets

d)

biometric scans

39.

An attack on your company server is being made using the attached image. What type of attack seems to be taking place?

a)

Brute Force attack

b)

Dictionary attack

c)

Rainbow Table attack

d)

Man-in-the-Middle attack

e)

Denial of Service attack

40.

An attack on your company server is being made using the attached image. To prevent this type of attack from being successful, you should enable .....

a)

Force users to change their password every 30 days

b)

Account lockout after five failed logon attempts

c)

Disable all accounts that have been inactive for more than seven days

d)

Disable logon attempts from all devices inside the network

41.

You recently purchased a new home router and a new laptop computer. You want to connect to your personal Home Router using the strongest security available. On your computer, you open the wireless window to manually configure a profile as shown in the attached image. What security type should you choose?

a)

WEP

b)

WPA

c)

WPA2

d)

WPA3

e)

WPA4

42.

WPA2 uses which encryption type?

a)

Shared Key

b)

TKIP

c)

AES

d)

GCMP

e)

IPsec

43.

This feature in Windows informs the user when a program makes a change that requires administrator-level permission. The feature is called what?

a)

PPP

b)

IPsec

c)

IKE

d)

UAC

44.

What does the Minimum Password Age policy do?

a)

Enforces a length of at least 8 characters

b)

Forces users to wait a certain amount of time before changing their password

c)

Forces a user to change passwords every 90 days

d)

Ensures users doesn't use the same password for at least 7 days

45.

In which ways can security templates be deployed? (Choose two)

a)

GPOs

b)

Security Configuration and Analysis Snap-In

c)

Security Compliance Manager

d)

Microsoft Security Baseline Analyzer

46.

Which types of lists can be used as part of an antispam solution? (Choose two)

a)

DNSBL

b)

DNSWL

c)

RWL

d)

RBL

e)

NFLPA

47.

By default, which websites are assigned to the Trusted Sites Zone in browser settings?

a)

None

b)

All .edu websites

c)

All websites

d)

Google, Yahoo, and Bing

e)

All .biz websites

48.

A polymorphic virus changes its code so that it cannot be detected easily.

a)

True

b)

False

49.

A stealth virus hides itself in the master boot record.

a)

True

b)

False

50.

A virus does not need a carrier in order to propagate itself.

a)

True

b)

False

51.

Besides using Windows Update, what can be used to keep servers updated and patched properly? (Choose two)

a)

MBSA

b)

MDT

c)

SCCM

d)

WSUS

e)

EventViewer

52.

Categorize each of the following statements regarding RADIUS as either True or False

Categorize the following

RADIUS is Cisco-proprietary.

Radius provides auditing services

Radius performs centralized authentication

True
False
53.

A buffer overflow is an attempt to fit an amount of data into a memory space that is too small to handle that data.

Review the underlined text. If the statement is correct, select “No change is needed.” If the statement is incorrect, select the answer that best fits in the statement.

a)

NO change is needed

b)

Worm

c)

Memory Leak

d)

SQL injection

54.

Match the following cybersecurity principles to the correct definition

a)

The prevention of unauthorized withholding of data

1.

Availability

b)

The prevention of unauthorized access to sensitive data

2.

Confidentiality

c)

The prevention of erroneous modification of data

3.

Integrity

d)

Verifying the identity of a user before granting access to a resource

4.

Authentication

e)

Tracking and recording user activities and resource usage on a network

5.

Accounting

55.

Match each type of protection with its description.

a)

Protects from destructive bits of code loaded onto a computer without the user's knowledge

1.

Anti-Virus

b)

Protects from software that gathers information

2.

Anti-Spyware

c)

Protects from everything including spyware to viruses

3.

Anti-Malware

56.

Using the attached screen image, indicate where one would click to enable or disable inheritance on this folder.


a)

A

b)

B

c)

C

d)

D

57.

Which answer choice shows all 7 of the layers of the OSI model in the right order (from bottom to top)?

a)

Application, Presentation, Session, Transport, Network,

Data Link, Physical

b)

Presentation, Transport, Session, Application, Network,

Data Link, Physical

c)

Physical,

Data Link, Session, Transport, Network, Presentation, Application

d)

Application, Network, Physical,

Data Link, Application, Presentation, Session

e)
Data Link, Physical, Application, Presentation, Session, Transport, Network
58.

Match the protocol to the correct function

a)

Assigns IP addresses automatically to devicespop

1.

DHCP

b)

Matches IP addresses to MAC addresses

2.

ARP

c)

Translates website names into IP addresses

3.

DNS

d)

Used to send emails

4.

SMTP

e)

Used to send "ping" command

5.

ICMP

59.

Match the protocol to the appropriate port #

a)

HTTP

1.

80

b)

SSH

2.

22

c)

HTTPS

3.

443

d)

SMTP

4.

25

e)

Telnet

5.

23