Network+ Chapter 10

Réussis tes devoirs et examens dès maintenant avec Quizwiz!

Which NGFW feature allows a network admin to restrict traffic generated by a specific game?

Application awareness

What kinds of issues might indicate a misconfigured ACL?

Connectivity and performance issues between two hosts in which some applications or ports can make the connection while others can't

What kind of firewall blocks traffic based on application data contained within the packets?

Content-filtering firewall

What causes most firewall failures?

Firewall misconfiguration

Active Directory and 389 Directory Server are both compatible with which directory access protocol?

LDAP

EAPoL is primarily used with what kind of transmission?

Wireless

Which ACL commands would permit web-browsing traffic from any IP address to any IP address?

access-list acl_2 permit http any any

What are the the three AAA services provided by RADIUS and TACACS1?

authentication, authorization, and accounting

What are the two primary features that give proxy servers an advantage over NAT?

content filtering and file caching

What feature of Windows Server allows for agentless authentication?

AD (Active Directory)

What software might be installed on a device in order to authenticate it to the network?

Agent

Any traffic that is not explicitly permitted in the ACL is -----------, which is called the -----------.

Denied by default, implicit deny rule

At what layer of the OSI model do proxy servers operate?

Layer 7 (Application Layer)

Only one ----------- exists on a network using STP.

Root bridge

Why is a BPDU filter needed at the demarc?

To prevent the ISP's WAN topology from mixing with the corporate network's topology for the purpose of plotting STP paths.

Why do network administrators create domain groups to manage user security privileges?

To simplify the process of granting rights to users

Which of the following features is common to both an NGFW and traditional firewalls?

User authentication

Which command on an Arista switch would require an SNMP notification when too many devices try to connect to a port?

switchport port-security

What's the essential difference between an IPS and an IDS?

An IDS detects traffic and creates alerts about suspicious activity, while an IPS can intercept traffic to prevent it from reaching the network.

What kind of ticket is held by Kerberos's TGS?

TGT (ticket-granting ticket)


Ensembles d'études connexes

STR 581: Ch 8: Corporate Strategy

View Set

English 1-3 Vocabulary list Catcher in the rye

View Set

Equestrian Monument to Erasmo da Narni (Gattamelata)- Donatello (VENICE)

View Set

Marriage & Family Chapters 1 and 2 Quiz

View Set

One of Us is Next - Vocabulary Chapters 1 + 2

View Set

CH. 14 Spinal Cord and Spinal Nerves

View Set

Interpersonal Comm. Ch. 8-11, communication, Ch.2 interpersonal comm, chapter 11, COM 252 - Chapter 9 Quiz, Interpersonal Communication CH6, Comm 1 Final, interpersonal communication, CHAPTER 9A COMM, Interpersonal Communication Review Ch-9 & 10, CHA...

View Set