Chapter Seven Questions

Pataasin ang iyong marka sa homework at exams ngayon gamit ang Quizwiz!

Why is the telnet utility a poor choice for remote access to a device? It does not allow for control of a computer remotely. It provides poor authentication and no encryption. It cannot be used over a public WAN connection. It provides no mechanism for authentication.

It provides poor authentication and no encryption.

Which of the following is NOT a task that a VPN concentrator is responsible for? A VPN concentrator shuts down established connections when malicious traffic occurs. A VPN concentrator manages encryption for VPN transmissions. A VPN concentrator authenticates VPN clients. A VPN concentrator establishes tunnels for VPN connections.

A VPN concentrator shuts down established connections when malicious traffic occurs.

Amazon and Rackspace both utilize what virtualization software below to create their cloud environments? VMware vSphere Parallels Citrix Xen Oracle VirtualBox

Citrix Xen

Which type of cloud service model involves hardware services that are provided virtually, including network infrastructure devices such as virtual servers? PaaS SaaS XaaS IaaS

IaaS

VMware Player and Linux KVM are both examples of what type of hypervisor? Type 2 hypervisor bare-metal hypervisor Type 1 hypervisor barebones hypervisor

Type 2 hypervisor

Regarding VNC (Virtual Network Computing or Virtual Network Connection), what statement is accurate? VNC is open source, allowing companies to develop their own software based on VNC. VNC is faster than Remote Desktop, and requires less network bandwidth. VNC uses the Remote Desktop Protocol (RDP). VNC is a standard developed by Microsoft and used by Windows Remote Desktop.

VNC is open source, allowing companies to develop their own software based on VNC.

When is it appropriate to utilize the NAT network connection type? Whenever the VM does not need to be accessed at a known address by other network nodes. Only if the VM is intended for VM-to-host communications. Only if the VM does not need to communicate with the host PC. Only when the VM requires an IP address on the physical LAN.

Whenever the VM does not need to be accessed at a known address by other network nodes.

By default, what network connection type is selected when creating a VM in VMware, VirtualBox, or KVM? bridged mode lockdown mode NAT mode host-only mode

NAT mode

At what layer of the OSI model does the IPsec encryption protocol operate? Transport layer Physical layer Network layer Application layer

Network layer

What open-source VPN protocol utilizes OpenSSL for encryption and has the ability to possibly cross firewalls where IPsec might be blocked? Point-to-Point Tunneling Protocol (PPTP) OpenVPN Layer 2 Tunneling Protocol (L2TP) Generic Routing Encapsulation (GRE)

OpenVPN

What cloud service model involves providing applications through an online user interface, providing for compatibility with a multitude of different operating systems and devices? PaaS SaaS IaaS XaaS

SaaS

The combination of a public key and a private key are known by which of the following terms? key tie key pair key team key set

key pair

What term is used to describe a space that is rented at a data center facility by a service provider? service location (SL) central service point (CSP) point of presence (PoP) locally exchanged data point (ledp)

point of presence (PoP)

The use of certificate authorities to associate public keys with certain users is known by what term? symmetric identification public-key infrastructure certified infrastructure public-key organization

public-key infrastructure

To generate a public and private key for use with SSH, what command line utility should you use? gpg --ssh ssh-keygen ssh-newkey key-generate

ssh-keygen

What type of scenario would be best served by using a Platform as a Service (PaaS) cloud model? An organization wishes to gain access to applications through an online user interface, while maintaining compatibility across operating systems. A small organization needs to have high availability for their web server. A group of developers needs access to multiple operating systems and the runtime libraries that the OS provides. An organization needs to have a hosted virtual network infrastructure for their services, which are run on virtual machines.

A group of developers needs access to multiple operating systems and the runtime libraries that the OS provides.

What special enterprise VPN supported by Cisco devices creates VPN tunnels between branch locations as needed rather than requiring constant, static tunnels? Auto Switched VPN Service Dynamic SmartVPN Symmetric VPN Autodial Dynamic Multipoint VPN

Dynamic Multipoint VPN

The PPP headers and trailers used to create a PPP frame that encapsulates Network layer packets vary between 8 and 10 bytes in size due to what field? priority FEC encryption FCS

FCS

When using public and private keys to connect to an SSH server from a Linux device, where must your public key be placed before you can connect? In the /var/run/ssh/public folder. In an authorization file under your home directory on your computer. In an authorization file on the host where the SSH server is. In the /etc/ssh/keys folder.

In an authorization file on the host where the SSH server is.

A vSwitch (virtual switch) or bridge is a logically defined device that operates at what layer of the OSI model? Layer 4 Layer 2 Layer 7 Layer 1

Layer 2

Which of the following virtualization products is an example of a bare-metal hypervisor? VMware Player Linux KVM VirtualBox Citrix XenServer

Citrix XenServer

Which statement regarding the IKEv2 tunneling protocol is accurate? IKEv2 is an older, Layer 2 protocol developed by Microsoft that encapsulates VPN data frames. IKEv2 offers fast throughput and good stability when moving between wireless hotspots. IKEv2 is an open-source VPN protocol that utilizes OpenSSL for encryption. IKEv2 is based on technology developed by Cisco and standardized by the IETF.

IKEv2 offers fast throughput and good stability when moving between wireless hotspots.

What security encryption protocol requires regular re-establishment of a connection and can be used with any type of TCP/IP transmission? IPsec SSL TLS L2TP

IPsec

Which of the following statements regarding the Point-to-Point protocol (PPP) is NOT accurate? PPP can negotiate and establish a connection between two endpoints. PPP can utilize an authentication protocol, such as MS-CHAPv2 or EAP to authenticate a client. PPP can support several Network layer protocols, such as IP, that might use the connection. PPP can support strong encryption, such as AH or ESP.

PPP can support strong encryption, such as AH or ESP.

In a software-defined network, what is responsible for controlling the flow of data? SDN controller SDN switch flow director vRouter

SDN controller

What statement regarding the SSH (Secure Shell) collection of protocols is accurate? SSH does not protect against IP spoofing. SSH provides a graphical view of the remote computer. SSH does not protect against DNS spoofing. SSH supports port forwarding.

SSH supports port forwarding

Which statement regarding the use of a bridged mode vNIC is accurate? The vNIC will obtain its own IP address on the physical LAN. The vNIC will only be able to communicate across the bridge to the host PC. The vNIC will utilize the host PC's IP address. The vNIC will be assigned a NAT-ed IP address.

The vNIC will obtain its own IP address on the physical LAN.

Which file transfer protocol has no authentication or security for transferring files, uses UDP, and requires very little memory to use? Secure FTP (SFTP) Trivial FTP (TFTP) FTP Secure (FTPS) File Transfer Protocol (FTP)

Trivial FTP (TFTP)

When using a site-to-site VPN, what type of device sits at the edge of the LAN and establishes the connection between sites? VPN gateway VPN transport VPN server VPN proxy

VPN gateway

What is NOT a potential disadvantage of utilizing virtualization? Licensing costs can be high due to every instance of commercial software requiring a separate license. Virtualization software increases the complexity of backups, making creation of usable backups difficult. Increased complexity and administrative burden can result from the use of virtual machines. Multiple virtual machines contending for finite resources can compromise performance.

Virtualization software increases the complexity of backups, making creation of usable backups difficult.


Kaugnay na mga set ng pag-aaral

Part Seven: Professional Practice

View Set

Chapter 31: The Child with Musculoskeletal or Articular Dysfunction

View Set

COP3014 - Chapter 7 Multiple Choice

View Set

Unit 4_Business Law I-BUS203_Section 503

View Set

Periodic Table of Elements; Properties

View Set

RN Targeted Med Surg Cardiovascular ATI

View Set

Texas Principles of Real Estate 1: Chapter 10 Quiz

View Set