Font size
WorksheetsKiến thức mạng TCP/IP
Total questions: 99
Worksheet time: 50mins
Hầu hết Mỗi host trên đường mạng TCP/IP phải được cấu hình cái gì nhằm để giao tiếp với các host khác?
Preferred WINS server
Default gateway
DHCP
Preferred DNS server
Chiều dài tối thiểu của mật khẩu cần phải là:
12 đến 15 ký tự
3 đến 5 ký tự
8 ký tự
1 đến 3 ký tự
Mô hình TCP/IP có mấy lớp?
4 Lớp
5 Lớp
6 Lớp
7 Lớp
Địa chỉ IPv4 tổng cộng có bao nhiêu bit?
30 bit
31 bit
32 bit
33 bit
Địa chỉ IPv6 tổng cộng có bao nhiêu bit?
64 bit
128 bit
192 bit
256 bit
Địa chỉ IP 255.255.255.255 đại diện cho …….. trong bảng IP routing?
Địa chỉ loopback
Địa chỉ giới hạn broadcast
Default route
Đường route network gắn liền trực tiếp
Quy trình nào được thể hiện trong sơ đồ dưới đây?
flow control
TCP handshake
Windowing
reliable delivery
Cờ TCP nào sau đây được sử dụng để đóng kết nối không cần xác nhận?
ACK
FIN
SYN
RST
Giao thức lớp Ứng dụng nào sau đây thiết lập phiên bảo mật tương tự như Telnet?
FTP
DNS
DHCP
SSH
Tấn công từ chối dịch vụ nhằm tấn công tính:
Availability
Confidentiality
Non-repudiation
Integrity
Nguyên tắc nào sau đây bị vi phạm nếu hệ thống máy tính không thể truy cập được?
Availability
Confidentiality
Non-repudiation
Integrity
Which of the following can be used as proof in digital security?
Signature
Cryptographic algorithm
Signature algorithm
All of the above
Which of the following is NOT a main goal of computer security?
Ensuring company data is available
Maintaining data integrity
Preventing denial of service attacks
Protecting company data confidentiality
In cryptography, what is the public key used for?
Encryption
Decryption
Signing
Verifying signature
In cryptography, what is the private key used for?
Encryption
Decryption
Signing
Verifying signature
Which part of a digital signature is unique to a person?
Public key
Private key
Ciphertext
Certificate
If you want to verify someone else's signature, which key should you use?
Your public key
Your private key
Their public key
Their private key
How many sets does the key exchange system require?
2
3
4
5
How many bits does the DES encryption system use?
56
64
128
192
Which protocol uses both UDP and TCP ports?
SMTP
Telnet
FTP
DNS
Which of the following files is most likely to contain a virus?
database.dat
bigpic.jpeg
note.txt
picture.gif.exe
Which layer in the OSI model provides encryption functionality?
Application
Presentation
Session
Data Link Layer
In a symmetric encryption system, what type of key do both sender and receiver use?
No key exchange
Symmetric key
RSA
Diffie-Hellman
What is the purpose of a digital signature?
To secure data so outsiders cannot read it
To verify the sender's identity
To provide a certificate
To revoke a certificate
Which classification of information has the highest level of security?
Confidential
Public
Private
Sensitive
Which entity is responsible for issuing, managing, and distributing digital certificates?
Certificate Authority
Registration Authority
Data Link Layer
Presentation Layer
Which organization is abbreviated as NSA?
Chính phủ
PKI
Microsoft
Netscape
How is the DES encryption key created?
56 random bits
64 random bits
128 random bits
56 random bits and 8 parity bits
Which of the following IP addresses can be assigned to an Internet network card?
192.168.20.223
172.16.200.18
10.180.48.224
9.255.255.10
In the DoD model, which layer does ICMP belong to?
Application
Host to host
Internet
Network Access
What is the last IP address that can be assigned to a host in the network 131.1.123.0/27?
131.1.123.30
131.1.123.33
131.1.123.31
131.1.123.32
Which of the following is a correct definition of malware? (Choose 2)
Malware is a type of virus
Trojans are malware
Malware includes all malicious software
Malware only includes spyware
Which of the following is true about a worm? (Choose 2)
A worm is malicious software
A worm can self-replicate
A worm copies with user interaction
A worm is a hidden program
Who developed SSL?
Microsoft
Netscape
RSA
Verisign
What is the first stage of a hacker's attack?
Maintaining access
Scanning
Gaining access
Reconnaissance
What is the SHA algorithm?
A one-way function
Used to generate digital signature characters
A type of virus
A type of worm
Which type of hacker causes the highest risk to a network system?
Disgruntled employees
Black-hat hackers
Grey-hat hackers
Script kiddies
Which system can be used to monitor a network for unauthorized activities?
Network sniffer
N-IDS (Network-based IDS)
A and B are both wrong
A and B are both correct
Which system is installed on a Host to provide IDS functionality?
Network sniffer
N-IDS (Network-based IDS)
H-IDS (Host-based IDS)
VPN
Acknowledgement, Sequencing, and Flow control are features of which layer in the OSI model?
Layer 2
Layer 3
Layer 4
Layer 5
Which protocol in the OSI reference model is responsible for routing and switching?
LAN
Routing
WAN
Network
Data Encryption Standard is an example of which type of encryption?
Public key RSA encryption
Hardware encryption
Symmetric encryption
Asymmetric encryption
When a hacker tries to attack a server through the Internet, what type of attack is it called?
Physical access
Remote attack
Local access
Internal attack
Which of the following is a tool used for footprinting that is not easily detected?
Traceroute
Ping sweep
Whois search
Host scanning
Which of the following is a main weakness in wireless network environments?
Decryption software
IP spoofing
A gap in the WAP
Site survey
What is the next step after footprinting in information gathering?
Enumeration
System hacking
Active information gathering
Scanning
Which encryption standard is mainly used by the US government to replace DES?
DSA
ECC
3DES
AES
Which of the following is NOT a main objective of physical security design?
Stealing secret data
Internal system hacking
Internet system hacking
Physical access
What is the term for encrypted text?
Certificate
Asymmetric code
Public key
Ciphertext
Which type of firewall operates at the session layer of the OSI model?
Circuit level firewall
Packet filtering firewall
Application level firewall
Stateful multilayer inspection firewall
Which type of firewall operates at the network layer of the OSI model?
Circuit level firewall
Packet filtering firewall
Application level firewall
Stateful multilayer inspection firewall
Which type of firewall operates at the application layer of the OSI model?
Circuit level firewall
Packet filtering firewall
Application level firewall
Stateful multilayer inspection firewall
Which tool can hackers use for Man In The Middle attacks?
WireShark
Ettercap
Nmap
Firewall
Enumeration will NOT detect which of the following information?
Services
User accounts
Ports
Shares
Which method uses technology to collect information for future network attacks?
Social engineering
Man-in-the-middle
Back doors
Masquerade
Which biometric method below is considered the safest?
Signature analysis
Voice recognition
Fingerprint
Not important
Is data manipulation considered an attack?
Confidentiality
Integrity
Authentication
Access
Which of the following is NOT considered part of a security policy?
Remote access
Employee comfort
Access control
Password length
What is the method of mapping a network called?
Eavesdropping
Reconnaissance
Sniffing
Discovery
Which device uses packet filtering and rules to control access to private networks from public networks like the Internet?
Wireless access point
Router
Firewall
Switch
At which layer is a Packet Filter firewall placed?
Physical
Data link
Network
Transport
Which of the following can be used to identify a firewall?
Search engines
Which of the following is a technique used to scan ports?
Google hacking
Port scanning
Firewall
IDS
What is the bit length of the value generated by the MD5 hashing algorithm?
156 bit
256 bit
128 bit
512 bit
Which area in network security architecture contains web servers, FTP servers, and email servers?
VPN
DMZ
VLAN
Intranet
Which device allows you to connect to a company LAN through the Internet using a secure encrypted channel?
VPN
WEP
Modem
Telnet
Which system is designed to attract and identify hackers?
Firewall
Honeypot
IDS
HIDS
Which system performs detection and alerting of network attacks?
HIDS
NIDS
Anomaly detection HIDS
Signature-based NIDS
Which command line correctly runs snort with the specified configuration file and console output?
snort –l c:\snort\log –c C:\snort\etc\snort.conf –A console
snort –c C:\snort\etc\snort.conf –A console
snort –c C:\snort\etc\snort\conf console
snort –l c:\snort\log –c –A
What is Snort?
NIDS
Sniffer and HIDS
Sniffer, HIDS, and traffic-logging tool
NIDS and sniffer
Which two components are necessary when installing Snort? (Choose 2)
Snort rules
Snort signatures
Snort Engine
Snort processor
Which of the following is a role in a system?
Operator
Manager
Alert
Analyzer
Which type of software can be used to block, detect, and prevent malicious activities on a system?
Personal Firewall
IDS – host based
Antivirus
All of the above
Which technique is used to ensure secure communication over an insecure network?
Telnet
SLIP
VPN
PPP
What functions does PGP (Pretty Good Privacy) provide?
Confidentiality
Integrity
Authenticity
All of the above
What is a characteristic of a weak key in cryptography?
It is short and easy to break
It is only used as a public key
It is not a number
It creates conditions for easy cryptographic attacks
Which method is used to secure Wi-Fi networks?
WEB
HTTPS
WPA2/WPA3
SSL
What is the difference between MD5 and SHA algorithms?
MD5 is safer than SHA
SHA has a 160-bit value, MD5 has a 128-bit value
MD5 has a 160-bit value, SHA has a 128-bit value
SHA is less safe than MD5
Which type of attack allows eavesdropping on communication lines?
Passive
Active
Wiretapping
Password cracking
Which method is best for managing strong passwords and quick resource access?
Smartcards
Weak passwords
Simple passwords
Password cracking
Which of the following is an example of Single Sign-on (SSO)?
PKI
Single Sign-on (SSO)
Kerberos
SSL
IKE (Internet Key Exchange) is used in combination with which protocol?
IPSec
SSL
Kerberos
All of the above
Which option best matches the sequence: plan, design, implement, operate, optimize?
Purpose, design, install, operation, optimization
Plan, design, install, operation, optimization
Plan, design, implement, operate, optimize
Purpose, design, implement, operate, optimize
Sending an ICMP packet larger than 64Kb is an example of which type of attack?
Buffer Overflow
Ping of Death
Syn Flooding
Tear Drop
What is the most important part of antivirus software?
Desktop
Definitions
Engine
Heuristics
Which reference model describes protocols and services for computer network communication?
IETF – Internet Engineering Task Force
ISO – International Standards Organization
IANA – Internet Assigned Numbers Authority
OSI – Open System Interconnection
IPSEC protocol is used at which layer in the OSI model?
Layer 6 – Presentation
Layer 5 – Session
Layer 4 – Transport
Layer 3 – Network
When does a boot sector virus get activated?
When the computer is restarted
When a file is deleted
When a file is written
On March 16th
Which part of a virus program is considered the most dangerous?
Code
Payload
Strain
None of the above
What is MD5?
Hash function
3DES
192 bit
PKI
Which type of DoS attack uses the three-way handshake mechanism of TCP?
Syn Flood
Ping of Death
Buffer Overflow
Password
Which system controls access between network zones?
Router
Switch Layer 3
Firewall
Modem
What does an IDS (Intrusion Detection System) use to detect attacks?
Source IP defined beforehand
Destination IP defined beforehand
Signature
Source and destination IP
If you want to connect a new branch to your central network securely and cost-effectively, which technology should you use?
Leased line
Frame Relay
VPN over ADSL
HDSL
Which attack type cannot be detected by IDS (Intrusion Detection System)?
DoS (Denial of Service)
Exploiting software vulnerabilities
Spoofed e-mail
Port scan
Which service is a single service or server used to store, distribute, and manage cryptographic session keys?
KDC
KEA
PKI
PKCS
Which of the following pairs is NOT a correct service-port pair?
HTTP:80
SSL:25
DNS:53
Telnet:23
What is the key length used by the AES algorithm announced in 2001?
2048 bit
1024 bit
512 bit
128-256 bit
Which field is used to check the integrity of packets (IP, TCP, UDP, ICMP)?
Flags
Time to Live
Checksum
Options
