wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Week 5: VPN and Network Security Quiz

Total questions: 44

Worksheet time: 22mins

Name
Class
Date
1.

A company with multiple branches wants to connect sites securely over the internet using encrypted tunnels. Which technology should they use?

a)

GRE

b)

VPN

c)

DMVPN

d)

MPLS

e)

VLAN

2.

A remote employee connects to the company network securely using their laptop from home. Which VPN model describes this connection?

a)

Site-to-site

b)

Hub-and-spoke

c)

Client-to-site

d)

Mesh

e)

Split-tunnel

3.

A company VPN uses IPSec with ESP enabled. What benefit does ESP provide compared to AH?

a)

Authentication only

b)

Encryption only

c)

Encryption and integrity

d)

Integrity only

e)

Compression

4.

A technician configures IPSec in tunnel mode. What happens in this mode?

a)

The IP header is encrypted

b)

Only payload data is encrypted

c)

The IP header remains visible

d)

Packets bypass encryption

e)

Packets use broadcast addressing

5.

A network administrator sets up VPN authentication using usernames and passwords stored on a central server. Which protocol supports this?

a)

GRE

b)

EAP

c)

RADIUS

d)

IPSec

e)

PPTP

6.

A remote worker uses RDP to access their office computer. What type of remote access method is this?

a)

Remote host access

b)

Site-to-site VPN

c)

Out-of-band management

d)

Cloud service

e)

GRE tunneling

7.

A company’s VPN encrypts all user internet traffic, not just corporate access. What is this configuration called?

a)

Full tunnel

b)

Split tunnel

c)

Double encryption

d)

Site-to-site

e)

SSL bypass

8.

An administrator uses SSH to manage routers over the internal LAN. What type of management is this?

a)

Out-of-band

b)

In-band

c)

Telnet

d)

Local console

e)

Wireless

9.

A technician connects directly to a router’s console port using a serial cable to perform configurations. What kind of management method is this?

a)

Remote in-band

b)

Out-of-band

c)

VPN

d)

SSH

e)

Web-based

10.

A remote worker connects to a VPN that only encrypts corporate traffic while local internet browsing bypasses the tunnel. What setup is this?

a)

Site-to-site

b)

Split-tunnel VPN

c)

Full-tunnel VPN

d)

IPSec tunnel mode

e)

GRE encapsulation

11.

A network team deploys a DMVPN between multiple branches using IPSec. What routing protocol supports dynamic peer discovery in this setup?

a)

RIP

b)

NHRP

c)

OSPF

d)

GRE

e)

L2TP

12.

Which tunneling protocol encapsulates IP packets within other IP packets and is often used with IPSec for VPNs?

a)

PPTP

b)

GRE

c)

L2TP

d)

SSTP

e)

RADIUS

13.

An administrator enables IPSec transport mode between two hosts on the same LAN. Why is transport mode suitable here?

a)

It hides the IP header

b)

It adds extra headers

c)

It encrypts only the payload

d)

It uses GRE tunneling

e)

It requires 802.1X

14.

A company uses SSTP for remote access VPN connections. What is a key advantage of SSTP?

a)

Works over HTTPS (TCP 443)

b)

Requires special hardware

c)

Uses UDP for faster speed

d)

Supports only IPv6

e)

Requires GRE tunnels

15.

An engineer configures a management port on a router that uses HTTPS for configuration. What is this access type?

a)

CLI management

b)

Web interface management

c)

SSH management

d)

Serial management

e)

AUX management

16.

A remote user connects to the corporate VPN but cannot access internal resources. Logs show a mismatch in IPSec policies. What’s the fix?

a)

Restart router

b)

Match encryption and authentication settings

c)

Change subnet

d)

Enable NAT traversal

e)

Disable DHCP

17.

An engineer sets up GRE tunnels between multiple branch routers, but traffic isn’t encrypted. Why?

a)

GRE doesn’t provide encryption

b)

IPSec is misconfigured

c)

Wrong subnet mask

d)

Missing routing protocol

e)

MTU size too large

18.

A network manager wants to connect multiple branch offices via one central VPN hub. What topology is this?

a)

Full mesh

b)

Star

c)

Hub-and-spoke

d)

Bus

e)

Ring

19.

A technician uses Telnet to manage a router remotely, but security policies forbid plaintext protocols. What protocol should replace it?

a)

FTP

b)

SNMP

c)

SSH

d)

HTTPS

e)

IPSec

20.

A data centre administrator wants to configure remote devices even if the primary network is down. Which access method ensures this?

a)

SSH

b)

Out-of-band management

c)

In-band management

d)

VPN split-tunnel

e)

RDP

21.

A network administrator needs to ensure all changes to network devices are properly requested, approved, and documented before implementation. Which process enforces this control?

a)

Configuration management

b)

Change management

c)

Incident management

d)

Audit logging

e)

Patch management

22.

A system audit reveals outdated firmware on multiple switches. The administrator refers to a document listing the original configuration and software versions. What is this document called?

a)

Asset register

b)

Configuration baseline

c)

Service Level Agreement

d)

System life cycle plan

e)

Network diagram

23.

An IT manager reviews a report detailing the steps to be taken when a critical system becomes unavailable. What type of document is this?

a)

Incident response plan

b)

Disaster recovery plan

c)

Security policy

d)

Audit report

e)

Acceptable use policy

24.

During a security review, the team needs a diagram showing all switches, routers, and cabling between racks. What kind of diagram should they use?

a)

Logical network diagram

b)

Physical network diagram

c)

Rack diagram

d)

Topological overview

e)

Floor plan

25.

A technician is organizing server racks and needs to confirm equipment height in “U” units. What is the standard height for one rack unit?

a)

1 inch

b)

1.5 inches

c)

1.75 inches

d)

2 inches

e)

2.5 inches

26.

After a cyberattack, the company must determine whether to prioritize restoring operations or preserving forensic evidence. Which two plans address these needs?

a)

SOP and AUP

b)

DRP and Incident Response Plan

c)

BIA and SLA

d)

Network policy and DLP

e)

Onboarding and Offboarding

27.

A business performs a risk analysis to determine which systems are most critical to daily operations and require redundancy. Which process is this?

a)

BIA

b)

DLP

c)

SOP

d)

MDM

e)

DDoS

28.

The HR department introduces a policy requiring new employees to complete cybersecurity training. What type of policy is this?

a)

Technical

b)

Hardening

c)

HR-led security policy

d)

BYOD policy

e)

Remote access policy

29.

A company policy specifies that employees must not install unapproved applications on work devices. What kind of policy is this?

a)

Password policy

b)

Acceptable Use Policy (AUP)

c)

Incident response policy

d)

Change management policy

e)

Data retention policy

30.

An employee stores sensitive files on a personal USB device, risking data leakage. Which control helps prevent this?

a)

Patch management

b)

Data Loss Prevention (DLP)

c)

VPN tunnel

d)

Network segmentation

e)

BYOD policy

31.

A company allows employees to use personal phones for work email. What policy should define acceptable usage and security requirements?

a)

SLA

b)

BYOD policy

c)

Password policy

d)

Remote access agreement

e)

Logical diagram

32.

A remote worker connects to the corporate network using their laptop. Which policy ensures the remote device is up-to-date and secure?

a)

Physical security policy

b)

Remote access policy

c)

Password policy

d)

Network segmentation policy

e)

DLP policy

33.

Two companies share confidential data and sign an agreement prohibiting disclosure to third parties. What type of agreement is this?

a)

SLA

b)

NDA

c)

MOU

d)

AUP

e)

SOP

34.

A security officer designs a system that requires employees to swipe a badge before entering the server room. What is this an example of?

a)

Logical access control

b)

Physical access control

c)

Environmental control

d)

Authentication policy

e)

CCTV monitoring

35.

To prevent tailgating, a company installs a vestibule that allows only one person to enter at a time. What is this feature called?

a)

Turnstile

b)

Mantrap

c)

Gate

d)

Airlock

e)

Secure cage

36.

A data centre uses cabinets that require smart card access for opening and have sensors to detect tampering. What type of control is this?

a)

Logical

b)

Technical

c)

Physical

d)

Environmental

e)

Network

37.

A warehouse installs cameras that automatically record activity when motion is detected. What system is being used?

a)

RFID

b)

CCTV

c)

IDS

d)

Access control

e)

PDS

38.

An IT department tags equipment with RFID chips linked to the asset database. What advantage does this provide?

a)

Encryption

b)

Remote access

c)

Asset tracking

d)

Data wiping

e)

VLAN management

39.

A company wants to detect if someone opens a network rack without authorization. Which system would help?

a)

IDS

b)

Tamper alarm

c)

Mantrap

d)

CCTV

e)

DLP

40.

When disposing of old servers, the IT team performs a “secure erase” to remove data. What does this process ensure?

a)

Firmware updates

b)

Data remnants are unrecoverable

c)

Asset tagging

d)

Software patching

e)

RAID rebuilding

41.

Before selling old storage drives, a company uses physical destruction instead of wiping. What is one advantage of this?

a)

Reusability

b)

Faster recovery

c)

Complete data removal

d)

Lower cost

e)

Environmental friendliness

42.

A company introduces mandatory security awareness sessions covering phishing and social engineering. What is the primary goal?

a)

Reduce hardware costs

b)

Comply with ISP requirements

c)

Improve employee vigilance

d)

Test firewall performance

e)

Upgrade network speed

43.

A water treatment plant uses programmable logic controllers (PLCs) and sensors to manage processes. What type of system is this?

a)

SCADA

b)

DLP

c)

BYOD

d)

VPN

e)

CCTV

44.

An engineer connects industrial machines using a low-latency network designed for predictable communication. What network type is this?

a)

IT network

b)

OT network

c)

IoT network

d)

Wi-Fi mesh

e)

Satellite