SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Network Security
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. An attack where fragmented UDP packets with odd offset values are sent to the victim - when the OS attempts to rebuild the fragments they overwrite each other and cause confusion
HIDS
teardrop
zone transfer
packet filter
2. IDS response method using logging and notification
cat3
honeypot
passive
multiple interface firewall
3. Seeks to reduce the probability and/or impact of a specific risk below an acceptable threshold
private
firewall architectures
risk mitigation
0 - 1023
4. A sniffer mode used to capture traffic addressed to/from another machine on the network
active
fiber optic
multi homed
promiscuous
5. A feature of firewalls / routers that disguise the IP address of internal systems allowing connection to the Internet using one public address
active
NAT
deny by default
SYN flood
6. Cable with copper core - has no physical transmission security and is easy to tap - 10mbps - maximum length 500 meters
coaxial
IP spoofing
behavior based
static NAT
7. Acts as an organizations internal phone system
PBX (Private Branch Exchange)
subnet
firewall architectures
protocol
8. Level 2 firewall often used to filter web traffic
defense in depth
teardrop
NIDS
proxy
9. User / registered ports
1024 - 49 -151
DoS attacks
blind
router
10. Protocol used to map an known IP address to its corresponding media access control (MAC) address
switch
ARP
session hijacking
IP spoofing
11. A logical group of computers connected via a switch/hub that share the same network prefix in their IP address
firewalls
protocol
port
subnet
12. An application layer gateway works at this layer of the OSI model
teardrop
knowledge based
man in the middle and replay
application
13. Known as thinnet - 10mbps - limited to 185 meters
10base2
source - destination - protocol
informed
screened host
14. Used by ISPs - single public network IP address is shared among many hosts on a private network - also known as PAT
port address translation
content filter
private
49 -152 - 65 -535
15. An attacker redirects traffic by falsifying the IP address requested by ARP request
subnet
ARP poisoning
cat5
smurf
16. A logical division of a computer network - in which all nodes can reach each other by broadcast at the data link layer - equivalent to a VLAN
protocol
0 - 1023
broadcast domain
split horizon DNS
17. Connects devices together to form a subnet - packet forwarding is based on MAC addresses - works at the data link layer of the OSI
fiber optic
bastion host
layered
switch
18. Malicious activity not reported or detected
PBX (Private Branch Exchange)
false negative
proxy server
tcp/ip hijacking
19. Variation of the SYN flood where SYN packets are spoofed to have the same source and destination IP address and port
application gateway
land attack
private
smurf
20. Forging an IP address with the address of a trusted host
replay
IP spoofing
port address translation
ping flooding
21. A complete transfer of all DNS zone information from one server to another
zone transfer
DoS attacks
static NAT
informed
22. Man in the middle attack where the content of an intercepted message is altered before it is sent on
spoofing attacks
active
extranet
proxy
23. When a hacker takes over a TCP session between two machines - also known as session hijacking - foiled by the use of encrypted sessions
cat5
tcp/ip hijacking
DoS attacks
screened subnet
24. Bastion host - dual homed firewall - multi homed firewall - screened host - screened subnet
NIPS
firewall architectures
bastion host
multi homed
25. IDS that relies on usage patterns and baseline operation - can ID new vulnerability - high rate of false alarms
behavior based
IP spoofing
port
1024 - 49 -151
26. Session hijacking countermeasure
multiple interface firewall
content filter
encrypt session key
PBX (Private Branch Exchange)
27. An attacker redirects valid request to malicious sites by feeding a DNS server altered records which are retained in its cache
website spoofing
cat5
DNS spoofing
bastion host
28. A packet filtering firewall works at this layer of the OSI model
man in the middle and replay
store and forward
49 -152 - 65 -535
network
29. IP spoofing attack where the attacker can monitor packets and participate in bidirectional communication
informed
proxy
encrypt session key
packet filter
30. Monitors network traffic to identify possible attacks
NIDS
spoofing attacks
bastion host
router
31. Network configuration that permits selected outsiders access internal information systems
repeater
SYN flood
proxy
extranet
32. Blocks all traffic from passing through the firewall except for traffic that is explicitly allowed - also known as restrictive access - best practice
ARP
49 -152 - 65 -535
passive
deny by default
33. Firewall with several NICs connected to different networks
multi homed
static NAT
NIDS
tcp/ip hijacking
34. Packets with a forged source IP address - purpose to conceal the identity of the sender or impersonate another computing system
multi homed
screened host
risk mitigation
IP spoofing
35. Creating a illegitimate website with the intention of convincing victims that they are visiting a legitimate site - typically to collect confidential information
passive
null session
website spoofing
IP spoofing
36. Capture and analyze network traffic - also known as packet analyzer - sniffer - network analyzer
0 - 1023
false positive
IP spoofing
protocol analyzer
37. A logical connection point allowing computers and software to communicate and exchange data
session hijacking
screened host
passive
port
38. IP spoofing attack where the attacker can only send packets and has to guess about replies
49 -152 - 65 -535
PBX (Private Branch Exchange)
blind
content filter
39. Head of a packet contains...
10Base5
honeypot
source - destination - protocol
IP spoofing
40. A method - used by switches and email servers - of delivering messages which are temporarily held by an intermediary before being sent to their final destination
false negative
ping flooding
static NAT
store and forward
41. Examines a entire packet and determines action based on a complex set of rules
ping flooding
promiscuous
application gateway
allow by default
42. One device per network segment - does not use local system resources - can't examine encrypted traffic - OS independent - less expensive
NIDS
ping flooding
risk mitigation
firewalls
43. Connects two or more subnets - determines the best path to forward packets based on packet header and forwarding table information
website spoofing
router
NIDS
ping of death
44. Generate random TCP sequence numbers and encrypt traffic countermeasure what attacks
hub
man in the middle and replay
screened host
screened subnet
45. Known as thicknet - 10mbps - limited to 500 meters
HIDS
10Base5
content filter
deny by default
46. DMZ implementation using two firewalls with different rule sets for the DMZ and intranet
IP spoofing
stateful inspection
coaxial
layered
47. Malicious insiders - connections that bypass the firewall (i.e. IM) - encrypted traffic/tunneling - social engineering - physical access are missed by ___________
NIDS network connections
firewalls
fraggle
man in the middle
48. Packet filtering - proxies - stateful inspection
encrypt session key
website spoofing
firewalls
coaxial
49. IP - email - website - DNS - and ARP
land attack
twisted pair
ping of death
spoofing attacks
50. A ping message is broadcast to an entire network with a spoofed source IP addess of the victim computer - flooding the victim computer with responses during this attack
switch
smurf
content filter
passive