newwork test
Which of the following criteria can a packet-filtering firewall not use to determine whether to accept or deny traffic?
. Application data
Who is responsible for the security of hardware on which a public cloud runs?
. The cloud provider
Which of the following is not one of the AAA services provided by RADIUS and TACACS+?
Administration
In the event of a fire, the most appropriate failure policy is a _______ policy.
B Fail-close
Which device would allow an attacker to make network clients use an illegitimate default gateway?
DHCP server
Which part of a MAC address is unique to each manufacturer?
a. The OUI
You have just brought online a new secondary DNS server and notice your network-monitoring software reports a significant increase in network traffic. Which two hosts on your network are likely to be causing the increased traffic and why?
a. The secondary and primary DNS servers because the secondary server is requesting zone transfers from the primary server
Suppose you're creating patch cables to be used in a government office. What color wire goes in the first pin?
a. White/green
You need to securely store handheld radios for your network technicians to take with them when they're troubleshooting problems around your campus network. What's the best way to store these radios so all your techs can get to them and so you can track who has the radios?
a. smart locker
Which of the following ACL commands would permit web-browsing traffic from any IP address to any IP address?
access-list acl_2 permit https any any
What decimal number corresponds to the binary number 11111111?
b. 255
Which 802.11 standard functions in both the 2.4-GHz and 5-GHz bands?
b. 802.11ax
Suppose you send data to the 11111111 11111111 11111111 11111111 IP address on an IPv4 network. To which device(s) are you transmitting?
b. All devices on your local network
Which transmission characteristic is never fully achieved?
b. Bandwidth
What information does the switchport port-security command use to restrict access to a switch's interface?
b. Broadcast address
What is the earliest twisted-pair cabling standard that meets the minimum requirements for 10GBASE-T transmissions at 100 meters?
b. Cat 6a
You've decided to run an Nmap scan on your network. Which apps could you open to perform this task? Choose all that apply.
b. Command Prompt c. PowerShell d. Zenmap
What type of attack relies on spoofing?
b. Deauth attack
What type of fiber-cable problem is caused when pairing a 50-micron core cable with a 62.5-micron core cable?
b. Fiber type mismatch
When a router can't determine a path to a message's destination, where does it send the message?
b. Gateway of last resort
When shopping for a new router, what does the MTBF tell you?
b. How long devices like this one will last on average until the next failure
What software allows you to define VMs and manage resource allocation and sharing among VMs on a host computer?
b. Hypervisor
Which two protocols manage neighbor discovery processes on IPv4 networks?
b. ICMP and ARP
Which encryption benchmark ensures data is not modified after it's transmitted and before it's received?
b. Integrity
Which of these cellular technologies offers the fastest speeds?
b. LTE-A
What is the lowest layer of the OSI model at which wired and wireless transmissions share the same protocols?
b. Layer 3
Which fiber connector contains two strands of fiber in each ferrule?
b. MT-RJ
Which type of DNS record identifies an email server?
b. MX record
At which OSI layer does IP operate?
b. Network layer
What is one advantage offered by VDI over RDS and VNC?
b. Offers access to multiple OSs in VMs
A company accidentally sends a newsletter with a mistyped website address. The address points to a website that has been spoofed by hackers to collect information from people who make the same typo. What kind of attack is this?
b. Phishing
Which two encryption protocols might be used to provide secure transmissions for email services?
b. SSL and TLS
Which kind of multiplexing assigns slots to nodes according to priority and need?
b. STDM (statistical time division multiplexing)
Which of the following features of a network connection between a switch and server is not improved by link aggregation?
b. Speed
Which protocol's header would a layer 4 device read and process?
b. TCP
Which type of switch connects all devices in a rack to the rest of the network?
b. ToR switch
What virtual, logically defined device operates primarily at the data link layer to pass frames between nodes?
b. Virtual switch
What type of diagram shows a graphical representation of a network's wired infrastructure?
b. Wiring diagram
Which of these is considered a secure place to store a list of documented network passwords?
c. A password manager
A routing protocol's reliability and priority are rated by what measurement?
c. AD
Which Carrier Sense technology is used on wireless networks to reduce collisions?
c. CSMA/CA
What specifications define the standards for cable broadband?
c. DOCSIS
Which type of DoS attack orchestrates an attack bounced off uninfected computers?
c. DRDoS attack
A technician from your ISP has arrived to help you troubleshoot a weak WAN connection. To what location do you take them?
c. EF
You just settled in for some study time at the local coffee shop, and you pause long enough to connect your smartphone to the Wi-Fi so you can listen to some music while you study. As you're about to sign in, you realize that you clicked on an SSID called "Free Coffee and Internet." What kind of security trap did you almost fall for?
c. Evil twin
When your computer first joins an IPv6 LAN, what is the prefix of the IPv6 address the computer first configures for itself?
c. FE80::/64
Which encryption protocol does GRE use to increase the security of its transmissions?
c. IPsec
What is the first step of inventory management?
c. List all components on the network.
Which kind of crosstalk occurs between wire pairs near the source of the signal?
c. NEXT
Which OSI layer is responsible for directing data from one LAN to another?
c. Network layer
Which cloud management technique executes a series of tasks in a workflow?
c. Orchestration
Which cable is best suited for ultra-high-speed connections between a router and a switch on the same rack?
c. Passive twinaxial cable
Which of the following attack simulations detect vulnerabilities and attempt to exploit them? Choose two.
c. Pen testing a. Red team-blue team exercise
Which DNS server offers the most current resolution to a DNS query?
c. Primary DNS server
You've just completed a survey of the wireless signals traversing the airspace in your company's vicinity, and you've found an unauthorized AP with a very strong signal near the middle of the 100-acre campus. Its SSID is broadcasting the name of a smartphone model. What kind of threat do you need to report to your boss?
c. Rogue AP
You need to access customer records in a database as you're planning a marketing campaign. What language can you use to pull the records most relevant to the campaign?
c. SQL
What kind of device can monitor a connection at the demarc but cannot interpret data?
c. Smartjack
A network consists of seven computers and a network printer, all connected directly to one switch. Which network topology does this network use?
c. Star
What method does a GSM network use to separate data on a channel?
c. TDMA
If you are connected to a network that uses DHCP, and you need to terminate your Windows workstation's DHCP lease, which command would you use?
c. ipconfig /release
What is the Internet standard MTU?
d. 1,500 bytes
Which protocol replaced TKIP fod. CCMPr WPA2?
d. CCMP
What field in a TCP segment is used to determine if an arriving data unit exactly matches the data unit sent by the source?
d. Checksum
What type of device does a computer turn to when attempting to connect with a host with a known IP address on another network?
d. Default gateway
Which function of WPA/WPA2 security ensures data cannot be read in transit?
d. Encryption
A former employee discovers six months after he starts work at a new company that his account credentials still give him access to his old company's servers. He demonstrates his access to several friends to brag about his cleverness and talk badly about the company. What kind of attack is this?
d. Insider threat
In the client-server model, what is the primary secure protocol used for communication between a browser and web server?
HTTPS
As you're working to fix a problem with an application, you make multiple changes at once hoping that something will solve the issues you're having. You end up with more problems than when you started. Which step, if followed correctly, would have prevented this complication?
Identify the problem.
Which policy ensures messages are discarded when they don't match a specific firewall rule?
Implicit deny
Active Directory and 389 Directory Server are both compatible with which directory access protocol?
LDAP
At what layer of the OSI model do proxy servers operate?
Layer 7
Which of the following applications could be used to run a website from a server?
NGNIX
Which principle ensures auditing processes are managed by someone other than the employees whose activities are being audited?
Separation of dutie
What information in a transmitted message might an IDS use to identify network threats
Signature
Which part of a toner and probe kit emits an audible tone when it detects electrical activity on a wire pair?
Tone locator
Which routing protocol does an edge router use to collect data to build its routing tables for paths across the Internet?
a. BGP
Which of these categories of twisted-pair cable can support Gigabit Ethernet?
a. Cat 5e, cat 6a, cat 7
In Question 6, suppose one computer is upgraded from Windows 10 Professional to Windows Server 2019. Which networking model can the network now support that it could not support without the upgrade?
a. Client-server
Which one of the following wireless transmission types requires a clear LOS to function?
a. IR
What is the lowest layer of the OSI model at which LANs and WANs support the same protocols?
a. Layer 3
Which device can manage traffic to multiple servers in a cluster so all servers equally share the traffic?
a. Load balancer
Leading up to the year 2000, many people expected computer systems the world over to fail when clocks turned the date to January 1, 2000. What type of threat was this?
a. Logic bomb
Which cloud service model gives software developers access to multiple platforms for testing code? a. PaaS b. SaaS c. XaaS d. IaaS
a. PaaS
You need to connect a new network printer to a nearby wall jack. What kind of cable should you use?
a. Patch cable
A network consists of five computers, all running Windows 10 Professional. All the computers are connected to a switch, which is connected to a router, which is connected to the Internet. Which logical networking model does the network use?
a. Peer-to-peer
Which of the following is an application layer protocol?
a. RDP
If you're shopping for a rack switch, what component on the switch tells you it can be mounted to a rack?
a. Rack ears
What kind of route is created when a network administrator configures a router to use a specific path between nodes?
a. Static route
Which of the following devices are you likely to find in the MDF? Choose all that apply.
a. Switches c. Routers d. KVM switch
A transceiver was recently damaged by a lightning strike during a storm. How might you decide whether the ISP is responsible for replacing this device, or whether your company must foot the bill?
d. Look at whether the device is located on the ISP's side of the demarc.
With which network connection type does the VM obtain IP addressing information from its host?
d. NAT mode
A company wants to have its employees sign a document that details some project-related information that should not be discussed outside the project's team members. What type of document should they use?
d. NDA
Your organization has just approved a special budget for a network security upgrade. What procedure should you conduct to develop your recommendations for the upgrade priorities?
d. Posture assessment
Check My Work As you're troubleshooting a dead zone in your office, which measurement will help you determine the edges of the dead zone?
d. RSSI
Which remote file access protocol is an extension of SSH?
d. SFTP
Which of the following is considered a secure protocol?
d. SSH
Which device converts signals from a campus's analog phone equipment into IP data that can travel over the Internet?
d. Voice gateway
Which of the following wireless technologies does not use the 2.4 GHz band?
d. Z-Wave
Which of these commands has no parameters in Windows?
d. hostname
You're getting a duplicate IP address error on your computer and need to figure out what other device on your network is using the IP address 192.168.1.56. What command will show you which MAC address is mapped to that IP address?
d. telnet 192.168.1.56