Internet Engineering I: Ch.11 SG
Which two statements describe how to assess traffic flow patterns and network traffic types using a protocol analyzer? (Choose two.)
1. Capture traffic during peak utilization times to get a good representation of the different traffic types.* 2. Perform the capture on different network segments.*
Which two steps are required before SSH can be enabled on a Cisco router? (Choose two.)
1. Give the router a host name and domain name.* 2. Generate a set of secret keys to be used for encryption and decryption.*
Which two actions can be taken to prevent a successful network attack on an email server account? (Choose two.)
1. Never send the password through the network in a clear text.* 2. Limit the number of unsuccessful attempts to log in to the server.*
A network administrator for a small company is contemplating how to scale the network over the next three years to accommodate projected growth. Which three types of information should be used to plan for network growth? (Choose three.)
1. documentation of the current physical and logical topologies* 2. analysis of the network traffic based on protocols, applications, and services used on the network* 3. inventory of the devices that are currently used on the network*
Match the type of information security threat to the scenario. (Not all options are used.)
1. installing virus code to destroy surveillance recordings for certain days -> data loss2. 2. pretending to be someone else by using stolen personal information to apply for a credit card ->identity theft 3. preventing userd from accessing a website by sending a large number of link requests in a short period -> disruption of service 4. obtaining trade secret documents illegally -> information theft
Which statement is true about CDP on a Cisco device?
CDP can be disabled globally or on a specific interface.*
Which type of network threat is intended to prevent authorized users from accessing resources?
DoS attacks*
What is the purpose of using SSH to connect to a router?
It allows a secure remote connection to the router command line interface.*
A network technician issues the C:\> tracert -6 www.cisco.com command on a Windows PC. What is the purpose of the -6 command option?
It forces the trace to use IPv6.*
Refer to the exhibit. An administrator is trying to troubleshoot connectivity between PC1 and PC2 and uses the tracert command from PC1 to do it. Based on the displayed output, where should the administrator begin troubleshooting?
R1*
Refer to the exhibit. Baseline documentation for a small company had ping round trip time statistics of 36/97/132 between hosts H1 and H3. Today the network administrator checked connectivity by pinging between hosts H1 and H3 that resulted in a round trip time of 1458/2390/6066. What does this indicate to the network administrator?
Something is causing a time delay between the networks.*
A network technician issues the arp -d * command on a PC after the router that is connected to the LAN is reconfigured. What is the result after this command is issued?
The ARP cache is cleared.*
Fill in the blank. ________ defines the protocols and technologies that implement the transmission of voice data over an IP network
VoIP
A network administrator is issuing the login block-for 180 attempts 2 within 30 command on a router. Which threat is the network administrator trying to prevent?
a user who is trying to guess a password to access the router*
When should an administrator establish a network baseline?
at regular intervals over a period of time*
Which command will backup the configuration that is stored in NVRAM to a TFTP server?
copy startup-config tftp*
A newly hired network technician is given the task of ordering new hardware for a small business with a large growth forecast. Which primary factor should the technician be concerned with when choosing the new devices?
devices with support for modularity*
Some routers and switches in a wiring closet malfunctioned after an air conditioning unit failed. What type of threat does this situation describe?
environmental*
Which network design consideration would be more important to a large corporation than to a small business?
redundancy*
Fill in the blank. Do not use abbreviations. The ___________ command that is issued on a router is used to verify the value of the software configuration register.
show version
Which firewall feature is used to ensure that packets coming into a network are legitimate responses initiated from internal hosts?
stateful packet inspection*
Fill in the blank. Do not use abbreviations. The show file ____________ command provides information about the amount of free nvram and flash memory with the permissions for reading or writing data.
systems
Which command should be used on a Cisco router or switch to allow log messages to be displayed on remotely connected sessions using Telnet or SSH?
terminal monitor*
A network administrator for a small campus network has issued the show ip interface brief command on a switch. What is the administrator verifying with this command?
the status of the switch interfaces and the address configured on interface vlan 1*
What is the purpose of issuing the commands cd nvram: then dir at the privilege exec mode of a router?
to list the content of the NVRAM*
What is the purpose of the network security authentication function?
to require users to prove who they are*
Which two traffic types require delay sensitive delivery? (Choose two.)
voice* video*