wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Kiến thức mạng TCP/IP

Total questions: 99

Worksheet time: 50mins

Name
Class
Date
1.

Hầu hết Mỗi host trên đường mạng TCP/IP phải được cấu hình cái gì nhằm để giao tiếp với các host khác?

a)

Preferred WINS server

b)

Default gateway

c)

DHCP

d)

Preferred DNS server

2.

Chiều dài tối thiểu của mật khẩu cần phải là:

a)

12 đến 15 ký tự

b)

3 đến 5 ký tự

c)

8 ký tự

d)

1 đến 3 ký tự

3.

Mô hình TCP/IP có mấy lớp?

a)

4 Lớp

b)

5 Lớp

c)

6 Lớp

d)

7 Lớp

4.

Địa chỉ IPv4 tổng cộng có bao nhiêu bit?

a)

30 bit

b)

31 bit

c)

32 bit

d)

33 bit

5.

Địa chỉ IPv6 tổng cộng có bao nhiêu bit?

a)

64 bit

b)

128 bit

c)

192 bit

d)

256 bit

6.

Địa chỉ IP 255.255.255.255 đại diện cho …….. trong bảng IP routing?

a)

Địa chỉ loopback

b)

Địa chỉ giới hạn broadcast

c)

Default route

d)

Đường route network gắn liền trực tiếp

7.

Quy trình nào được thể hiện trong sơ đồ dưới đây?

a)

flow control

b)

TCP handshake

c)

Windowing

d)

reliable delivery

8.

Cờ TCP nào sau đây được sử dụng để đóng kết nối không cần xác nhận?

a)

ACK

b)

FIN

c)

SYN

d)

RST

9.

Giao thức lớp Ứng dụng nào sau đây thiết lập phiên bảo mật tương tự như Telnet?

a)

FTP

b)

DNS

c)

DHCP

d)

SSH

10.

Tấn công từ chối dịch vụ nhằm tấn công tính:   

a)

Availability

b)

Confidentiality

c)

Non-repudiation

d)

Integrity

11.

Nguyên tắc nào sau đây bị vi phạm nếu hệ thống máy tính không thể truy cập được?

a)

Availability

b)

Confidentiality

c)

Non-repudiation

d)

Integrity

12.

Which of the following can be used as proof in digital security?

a)

Signature

b)

Cryptographic algorithm

c)

Signature algorithm

d)

All of the above

13.

Which of the following is NOT a main goal of computer security?

a)

Ensuring company data is available

b)

Maintaining data integrity

c)

Preventing denial of service attacks

d)

Protecting company data confidentiality

14.

In cryptography, what is the public key used for?

a)

Encryption

b)

Decryption

c)

Signing

d)

Verifying signature

15.

In cryptography, what is the private key used for?

a)

Encryption

b)

Decryption

c)

Signing

d)

Verifying signature

16.

Which part of a digital signature is unique to a person?

a)

Public key

b)

Private key

c)

Ciphertext

d)

Certificate

17.

If you want to verify someone else's signature, which key should you use?

a)

Your public key

b)

Your private key

c)

Their public key

d)

Their private key

18.

How many sets does the key exchange system require?

a)

2

b)

3

c)

4

d)

5

19.

How many bits does the DES encryption system use?

a)

56

b)

64

c)

128

d)

192

20.

Which protocol uses both UDP and TCP ports?

a)

SMTP

b)

Telnet

c)

FTP

d)

DNS

21.

Which of the following files is most likely to contain a virus?

a)

database.dat

b)

bigpic.jpeg

c)

note.txt

d)

picture.gif.exe

22.

Which layer in the OSI model provides encryption functionality?

a)

Application

b)

Presentation

c)

Session

d)

Data Link Layer

23.

In a symmetric encryption system, what type of key do both sender and receiver use?

a)

No key exchange

b)

Symmetric key

c)

RSA

d)

Diffie-Hellman

24.

What is the purpose of a digital signature?

a)

To secure data so outsiders cannot read it

b)

To verify the sender's identity

c)

To provide a certificate

d)

To revoke a certificate

25.

Which classification of information has the highest level of security?

a)

Confidential

b)

Public

c)

Private

d)

Sensitive

26.

Which entity is responsible for issuing, managing, and distributing digital certificates?

a)

Certificate Authority

b)

Registration Authority

c)

Data Link Layer

d)

Presentation Layer

27.

Which organization is abbreviated as NSA?

a)

Chính phủ

b)

PKI

c)

Microsoft

d)

Netscape

28.

How is the DES encryption key created?

a)

56 random bits

b)

64 random bits

c)

128 random bits

d)

56 random bits and 8 parity bits

29.

Which of the following IP addresses can be assigned to an Internet network card?

a)

192.168.20.223

b)

172.16.200.18

c)

10.180.48.224

d)

9.255.255.10

30.

In the DoD model, which layer does ICMP belong to?

a)

Application

b)

Host to host

c)

Internet

d)

Network Access

31.

What is the last IP address that can be assigned to a host in the network 131.1.123.0/27?

a)

131.1.123.30

b)

131.1.123.33

c)

131.1.123.31

d)

131.1.123.32

32.

Which of the following is a correct definition of malware? (Choose 2)

a)

Malware is a type of virus

b)

Trojans are malware

c)

Malware includes all malicious software

d)

Malware only includes spyware

33.

Which of the following is true about a worm? (Choose 2)

a)

A worm is malicious software

b)

A worm can self-replicate

c)

A worm copies with user interaction

d)

A worm is a hidden program

34.

Who developed SSL?

a)

Microsoft

b)

Netscape

c)

RSA

d)

Verisign

35.

What is the first stage of a hacker's attack?

a)

Maintaining access

b)

Scanning

c)

Gaining access

d)

Reconnaissance

36.

What is the SHA algorithm?

a)

A one-way function

b)

Used to generate digital signature characters

c)

A type of virus

d)

A type of worm

37.

Which type of hacker causes the highest risk to a network system?

a)

Disgruntled employees

b)

Black-hat hackers

c)

Grey-hat hackers

d)

Script kiddies

38.

Which system can be used to monitor a network for unauthorized activities?

a)

Network sniffer

b)

N-IDS (Network-based IDS)

c)

A and B are both wrong

d)

A and B are both correct

39.

Which system is installed on a Host to provide IDS functionality?

a)

Network sniffer

b)

N-IDS (Network-based IDS)

c)

H-IDS (Host-based IDS)

d)

VPN

40.

Acknowledgement, Sequencing, and Flow control are features of which layer in the OSI model?

a)

Layer 2

b)

Layer 3

c)

Layer 4

d)

Layer 5

41.

Which protocol in the OSI reference model is responsible for routing and switching?

a)

LAN

b)

Routing

c)

WAN

d)

Network

42.

Data Encryption Standard is an example of which type of encryption?

a)

Public key RSA encryption

b)

Hardware encryption

c)

Symmetric encryption

d)

Asymmetric encryption

43.

When a hacker tries to attack a server through the Internet, what type of attack is it called?

a)

Physical access

b)

Remote attack

c)

Local access

d)

Internal attack

44.

Which of the following is a tool used for footprinting that is not easily detected?

a)

Traceroute

b)

Ping sweep

c)

Whois search

d)

Host scanning

45.

Which of the following is a main weakness in wireless network environments?

a)

Decryption software

b)

IP spoofing

c)

A gap in the WAP

d)

Site survey

46.

What is the next step after footprinting in information gathering?

a)

Enumeration

b)

System hacking

c)

Active information gathering

d)

Scanning

47.

Which encryption standard is mainly used by the US government to replace DES?

a)

DSA

b)

ECC

c)

3DES

d)

AES

48.

Which of the following is NOT a main objective of physical security design?

a)

Stealing secret data

b)

Internal system hacking

c)

Internet system hacking

d)

Physical access

49.

What is the term for encrypted text?

a)

Certificate

b)

Asymmetric code

c)

Public key

d)

Ciphertext

50.

Which type of firewall operates at the session layer of the OSI model?

a)

Circuit level firewall

b)

Packet filtering firewall

c)

Application level firewall

d)

Stateful multilayer inspection firewall

51.

Which type of firewall operates at the network layer of the OSI model?

a)

Circuit level firewall

b)

Packet filtering firewall

c)

Application level firewall

d)

Stateful multilayer inspection firewall

52.

Which type of firewall operates at the application layer of the OSI model?

a)

Circuit level firewall

b)

Packet filtering firewall

c)

Application level firewall

d)

Stateful multilayer inspection firewall

53.

Which tool can hackers use for Man In The Middle attacks?

a)

WireShark

b)

Ettercap

c)

Nmap

d)

Firewall

54.

Enumeration will NOT detect which of the following information?

a)

Services

b)

User accounts

c)

Ports

d)

Shares

55.

Which method uses technology to collect information for future network attacks?

a)

Social engineering

b)

Man-in-the-middle

c)

Back doors

d)

Masquerade

56.

Which biometric method below is considered the safest?

a)

Signature analysis

b)

Voice recognition

c)

Fingerprint

d)

Not important

57.

Is data manipulation considered an attack?

a)

Confidentiality

b)

Integrity

c)

Authentication

d)

Access

58.

Which of the following is NOT considered part of a security policy?

a)

Remote access

b)

Employee comfort

c)

Access control

d)

Password length

59.

What is the method of mapping a network called?

a)

Eavesdropping

b)

Reconnaissance

c)

Sniffing

d)

Discovery

60.

Which device uses packet filtering and rules to control access to private networks from public networks like the Internet?

a)

Wireless access point

b)

Router

c)

Firewall

d)

Switch

61.

At which layer is a Packet Filter firewall placed?

a)

Physical

b)

Data link

c)

Network

d)

Transport

62.

Which of the following can be used to identify a firewall?

a)

Search engines

b)

Email

63.

Which of the following is a technique used to scan ports?

a)

Google hacking

b)

Port scanning

c)

Firewall

d)

IDS

64.

What is the bit length of the value generated by the MD5 hashing algorithm?

a)

156 bit

b)

256 bit

c)

128 bit

d)

512 bit

65.

Which area in network security architecture contains web servers, FTP servers, and email servers?

a)

VPN

b)

DMZ

c)

VLAN

d)

Intranet

66.

Which device allows you to connect to a company LAN through the Internet using a secure encrypted channel?

a)

VPN

b)

WEP

c)

Modem

d)

Telnet

67.

Which system is designed to attract and identify hackers?

a)

Firewall

b)

Honeypot

c)

IDS

d)

HIDS

68.

Which system performs detection and alerting of network attacks?

a)

HIDS

b)

NIDS

c)

Anomaly detection HIDS

d)

Signature-based NIDS

69.

Which command line correctly runs snort with the specified configuration file and console output?

a)

snort –l c:\snort\log –c C:\snort\etc\snort.conf –A console

b)

snort –c C:\snort\etc\snort.conf –A console

c)

snort –c C:\snort\etc\snort\conf console

d)

snort –l c:\snort\log –c –A

70.

What is Snort?

a)

NIDS

b)

Sniffer and HIDS

c)

Sniffer, HIDS, and traffic-logging tool

d)

NIDS and sniffer

71.

Which two components are necessary when installing Snort? (Choose 2)

a)

Snort rules

b)

Snort signatures

c)

Snort Engine

d)

Snort processor

72.

Which of the following is a role in a system?

a)

Operator

b)

Manager

c)

Alert

d)

Analyzer

73.

Which type of software can be used to block, detect, and prevent malicious activities on a system?

a)

Personal Firewall

b)

IDS – host based

c)

Antivirus

d)

All of the above

74.

Which technique is used to ensure secure communication over an insecure network?

a)

Telnet

b)

SLIP

c)

VPN

d)

PPP

75.

What functions does PGP (Pretty Good Privacy) provide?

a)

Confidentiality

b)

Integrity

c)

Authenticity

d)

All of the above

76.

What is a characteristic of a weak key in cryptography?

a)

It is short and easy to break

b)

It is only used as a public key

c)

It is not a number

d)

It creates conditions for easy cryptographic attacks

77.

Which method is used to secure Wi-Fi networks?

a)

WEB

b)

HTTPS

c)

WPA2/WPA3

d)

SSL

78.

What is the difference between MD5 and SHA algorithms?

a)

MD5 is safer than SHA

b)

SHA has a 160-bit value, MD5 has a 128-bit value

c)

MD5 has a 160-bit value, SHA has a 128-bit value

d)

SHA is less safe than MD5

79.

Which type of attack allows eavesdropping on communication lines?

a)

Passive

b)

Active

c)

Wiretapping

d)

Password cracking

80.

Which method is best for managing strong passwords and quick resource access?

a)

Smartcards

b)

Weak passwords

c)

Simple passwords

d)

Password cracking

81.

Which of the following is an example of Single Sign-on (SSO)?

a)

PKI

b)

Single Sign-on (SSO)

c)

Kerberos

d)

SSL

82.

IKE (Internet Key Exchange) is used in combination with which protocol?

a)

IPSec

b)

SSL

c)

Kerberos

d)

All of the above

83.

Which option best matches the sequence: plan, design, implement, operate, optimize?

a)

Purpose, design, install, operation, optimization

b)

Plan, design, install, operation, optimization

c)

Plan, design, implement, operate, optimize

d)

Purpose, design, implement, operate, optimize

84.

Sending an ICMP packet larger than 64Kb is an example of which type of attack?

a)

Buffer Overflow

b)

Ping of Death

c)

Syn Flooding

d)

Tear Drop

85.

What is the most important part of antivirus software?

a)

Desktop

b)

Definitions

c)

Engine

d)

Heuristics

86.

Which reference model describes protocols and services for computer network communication?

a)

IETF – Internet Engineering Task Force

b)

ISO – International Standards Organization

c)

IANA – Internet Assigned Numbers Authority

d)

OSI – Open System Interconnection

87.

IPSEC protocol is used at which layer in the OSI model?

a)

Layer 6 – Presentation

b)

Layer 5 – Session

c)

Layer 4 – Transport

d)

Layer 3 – Network

88.

When does a boot sector virus get activated?

a)

When the computer is restarted

b)

When a file is deleted

c)

When a file is written

d)

On March 16th

89.

Which part of a virus program is considered the most dangerous?

a)

Code

b)

Payload

c)

Strain

d)

None of the above

90.

What is MD5?

a)

Hash function

b)

3DES

c)

192 bit

d)

PKI

91.

Which type of DoS attack uses the three-way handshake mechanism of TCP?

a)

Syn Flood

b)

Ping of Death

c)

Buffer Overflow

d)

Password

92.

Which system controls access between network zones?

a)

Router

b)

Switch Layer 3

c)

Firewall

d)

Modem

93.

What does an IDS (Intrusion Detection System) use to detect attacks?

a)

Source IP defined beforehand

b)

Destination IP defined beforehand

c)

Signature

d)

Source and destination IP

94.

If you want to connect a new branch to your central network securely and cost-effectively, which technology should you use?

a)

Leased line

b)

Frame Relay

c)

VPN over ADSL

d)

HDSL

95.

Which attack type cannot be detected by IDS (Intrusion Detection System)?

a)

DoS (Denial of Service)

b)

Exploiting software vulnerabilities

c)

Spoofed e-mail

d)

Port scan

96.

Which service is a single service or server used to store, distribute, and manage cryptographic session keys?

a)

KDC

b)

KEA

c)

PKI

d)

PKCS

97.

Which of the following pairs is NOT a correct service-port pair?

a)

HTTP:80

b)

SSL:25

c)

DNS:53

d)

Telnet:23

98.

What is the key length used by the AES algorithm announced in 2001?

a)

2048 bit

b)

1024 bit

c)

512 bit

d)

128-256 bit

99.

Which field is used to check the integrity of packets (IP, TCP, UDP, ICMP)?

a)

Flags

b)

Time to Live

c)

Checksum

d)

Options