Test your basic knowledge |

Router Security

Subject : it-skills
Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Protects against repeating of secure sessions






2. What Transport Mode is used for






3. Device - Hostname - IOS - IP Address - Ports - Model






4. 0x33 or 51






5. Layer 7






6. Refers to the addresses on the public internet






7. Data link layer protocol used for tunneling network traffic between two peers over an existing network - often used with IPsec to secure packets






8. Translates multiple local addresses to a pool of global addresses by having the firewall select the first available global address; retains the global address for the duration of the connection






9. Major Version - Minor Version - Release - Interim Build - Release Train Identifier






10. Command used to disable the ICMP message Redirect






11. Refers to the organization's private network






12. Tunnel Mode Protocol provides confidentiality - along with authentication and integrity protection with encryption






13. 2000-2699






14. When one network protocol called the payload protocol is encapsulated within a different delivery network - or provide a secure path through an untrusted network






15. Router threat that occurs when an attacker manipulates IP packets to falsify IP addresses - causing network disruptions as the router attempts to process the packet






16. Protocol that allows data to be exchanged using a secure channel between two computers via encryption






17. Access-list <number <deny | permit> source source-wildcard source-qualifier destination dest-wildcard dest-qualifier <log | log-input>






18. What Local and Global refer to in NAT






19. Command used to disable HTTP Server






20. DNS Poisoning






21. Helps to mitigate problems that are caused by the introduction of malformed or spoofed IP source addresses into a network by discarding packets lacking a verifiable IP source address






22. Local IP address before translation






23. Datagram protocol used by some hosts to load their operating system over the network via a central repository of IOS software






24. This layer controls user and workgroup acess to the Internetwork resources at the local level using segmentation of networks to create separate collision domains - AKA an organization's trusted network






25. Rewrites the and/or destination IP address of IP packets as they pass through a router or firewall from private to public addresses






26. Two - one Inbound or Evaluated and one Outbound or Reflected






27. Provides nonrepudiation - ensuring that traffic is from a trusted party






28. DENY IP ANY HOST <Broadcast Address>






29. Commands to disable Finger Server






30. Layer 3






31. Also known as Configuration Auto-Loading - allows routers to load their startup configuration from the network






32. Cryptographic protocols that provide secure communications on the Internet for such thing as WWW - email - faxing - IM - and other data transfers






33. Can copy - poison - corrupt - or delete the IOS






34. TCP Port 22






35. Access - Distribution - Core






36. Service Provider


37. ESP - SSH - SSL/TLP






38. Router threat that involves a hacker inserting a spoofed TCP/IP packet into a stream - thereby enabling commands to be executed on the remote host






39. Command to disable UDP small server on a router






40. Router threat where access by an entity or individual other than authorized users






41. Software that blocks packets from unreachable hosts - thus allowing only reachable external hosts to initiate connections to a host on an internal network






42. DENY IP <Network ID> <Network WC Mask> ANY






43. Geolocational positioning






44. Private IP address after translation






45. Access-list <number> <deny | permit> source source-wildcard log






46. Uses server and host keys to authenticate systems






47. Command used to disable NTP on an interface






48. TCP and UDP Port 161






49. Layer 3






50. TCP and UDP Port 162