Chapter 11 - Network Pro
Which of the following is true about a community string?
A community string identifies devices under the same administrative control.
Which of the following is true about processor performance?
A healthy system's CPU utilization should average around 40%.
Which of the following improvements to SNMP are included in version 3? (Select two.)
Agent and manager authentication SNMP message encryption
Some users report that frequent system crashes have started happening on their workstations. Upon further investigation, you notice that these users all have received a recent update to the same application. Where would you go to conduct a root cause analysis?
Application log
Where can you check your CPU's temperature?
BIOS
Which of the following is the term for when a system is unable to keep up with the demands placed on it?
Bottleneck
What does SNMP use to identify a group of devices under the same administrative control?
Community strings
You suspect that cache poisoning or spoofing has occurred on your network. Users are complaining of strange web results and being redirected to undesirable sites. Which log would help you determine what's going on?
DNS logs
Which of the following is a best practice when establishing a baseline?
Determine baselines over time by analyzing network traffic.
You suspect that a bad video driver is causing a user's system to randomly crash and reboot. Where would you go to identify and confirm your suspicions?
Dump files
Which of the following is the term for a calculation of how often bits are damaged in transit due to electromagnetic interference?
Error rate
You have been using SNMP on your network for monitoring and management, but you're concerned about the security of this configuration. What should you do to increase security in this situation?
Implement version 3 of SNMP
Which of the following does an agent send to the manager to confirm the receipt of a transmission?
Inform
When packets arrive at their destination at different speeds, they sometimes arrive out of order. What does this cause?
Jitter
Which Syslog level indicates an emergency that could severely impact the system and cause it to become unusable?
Level 0
Which Syslog severity level indicates a debugging message?
Level 7
What is the name of the computer that queries agents and gathers responses by sending messages?
Manager
Because of an unexplained slowdown on your network, you decide to install monitoring software on several key network hosts to locate the problem. You will then collect and analyze the data from a central network host. Which protocol will the software use to detect the problem?
SNMP
Which protocol uses traps to send notifications from network devices?
SNMP
Which of the following is a standard for sending log messages to a central logging server?
Syslog
Over the past few days, a server has gone offline and rebooted automatically several times. You would like to see a record of when each of these restarts occurred. Which log type should you check?
System
What is the definition of bandwidth?
The amount of data that can be transferred from one place to another in a specific amount of time.
Which of the following could be to blame if your computer is regularly crashing or restarting?
The processor is too hot.
What is the definition of latency?
The speed at which data packets travel from source to destination and back.
When an event occurs, the agent logs details regarding the event. What is this event called?
Trap
Your computer seems to be running slowly. In particular, you notice that the hard drive activity light remains lit when you run multiple applications and switch between open windows. This happens even though you aren't saving large files. What should you do to troubleshoot the problem?
Use Resource Monitor to monitor memory utilization.
You are the network administrator for a growing business. When you were hired, the organization was small, and only a single switch and router were required to support your users. During this time, you monitored log messages from your router and switch directly from each device's console. The organization has grown considerably in recent months. Now you manage eight individual switches and three routers. It's becoming more and more difficult to monitor these devices and stay on top of issues in a timely manner. What should you do?
Use Syslog to implement centralized logging.
You are concerned that an attacker can gain access to your web server, make modifications to the system, and alter the log files to hide his or her actions. Which of the following actions would BEST protect the log files?
Use Syslog to send log entries to another server.
Which SNMP component uses GETNEXT messages to navigate the MIB structure?
Walk
Which log file type is one of the most tedious to parse but can tell you exactly when a user logged onto your site and what their location was?
Web server logs
