Test your basic knowledge |

Router Security

Subject : it-skills
Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Can stop spoofed IP addresses






2. Router threat that includes manipulating router updates to cause traffic to flow to unauthorized destinations






3. Users - Host PC's - IP Addresses






4. Ip access-list <standard | extended> name - permit TCP any any established






5. Authentication Header (AH) and Encapsulated Security Payload (ESP)






6. Four TCP/UDP Small Server commands recommended to disable






7. Attack that involves sending a packet to the router with the same IP address in the source and destination address fields - as well as the same port number in the source and destination port field - causing a denial of service






8. Layer 7






9. What Transport Mode is used for






10. 0-99






11. TCP and UDP Port 161






12. These ACLs filter by network or host IP addresses andspecific protocol type or port numbers - filters by source and destination






13. Provides nonrepudiation - ensuring that traffic is from a trusted party






14. What Tunnel Mode is used for






15. The environment - catastrophic events an unauthorized access






16. Refers to the addresses on the public internet






17. 0x32 - or 50






18. Startup-config can be deleted - copied - changed






19. Can obtain CIDR and router ID






20. Lists interfaces - routing table - ARP table - physical and network addresses - time last booted






21. TCP Port 22






22. 0x33 or 51






23. Service Provider

Warning: Invalid argument supplied for foreach() in /var/www/html/basicversity.com/show_quiz.php on line 183


24. Refers to the organization's private network






25. Breaks LAN security perimeter extends LAN to Layer 2






26. Local and Remote






27. Router threat that occurs when an attacker manipulates IP packets to falsify IP addresses - causing network disruptions as the router attempts to process the packet






28. Datagram protocol used by some hosts to load their operating system over the network via a central repository of IOS software






29. Uses SSL port 443






30. PERMIT TCP ANY ANY ESTABLISHED






31. ESP - SSH - SSL/TLP






32. Software that passively monitors the connection requests flowing through the router; if a connection fails - the software sends a Reset to the server to clear up its state






33. Attack that involves a multitude of compromised system attack a single target - denying service to it by exploiting one 'master' system that communicates with other 'zombie' systems






34. 2000-2699






35. Enterprise

Warning: Invalid argument supplied for foreach() in /var/www/html/basicversity.com/show_quiz.php on line 183


36. Privilege level that has Global administration capabilities






37. Major Version - Minor Version - Release - Interim Build - Release Train Identifier






38. Uses only host keys to authenticate systems






39. Protocol used to keep their time-of-day clocks accurate and in sync






40. Mode where the entire packet is encrypted and/or authenticated - requiring a new IP packet to be encapsulated






41. Router threat that involves the unauthorized viewing and collection of network traffic; usually accomplished with a packet sniffing program






42. Router threat that includes manipulating router updates to cause traffic to flow to unauthorized destinations






43. UDP Port 514






44. Transport and Tunnel






45. Ip accesslist extended <name1> - permit IP any any reflect <filename> - ip accesslist extended <name2> - evaluate <filename> - int f0/0 - ip access-group <name1> out - ip access-group <name2> in






46. Router to Router Denial of Service






47. Layer 7






48. Translates multiple local addresses to a pool of global addresses by having the firewall select the first available global address; retains the global address for the duration of the connection






49. DENY IP 127.0.0.0 0.255.255.255 ANY






50. Also known as Configuration Auto-Loading - allows routers to load their startup configuration from the network