Book-Cards-Pt2 - Sheet 1 Flashcards
qtext
answer
The length of time a computer is allowed to use a dynamic Internet Protocol (IP) address provide by a DHCP server is known as a .
Lease time
True/False: A network collision happens when two devices attempt to communicate on the same physical segment at the same time.
TRUE
True/False: A firewall can permit, deny, encrypt, decrypt, and proxy all computer traffic that flows through it.
TRUE
True/False: Firewalls are not usually a combination of hardware and software.
FALSE
Which type of security device or software employs a redirection device known as a honeypot?
Intrusion prevention system
Which type of firewall keeps track of existing connections passing through it?
Stateful
If you wanted to ensure that your firewall could block inflammatory email, which type of service would you look for?
Content filtering
What is a firewall’s list of rules, which it uses to block traffic?
Access control list (ACL)
If you want to allow remote access to 500 users, which type of device is recommended?
A VPN concentrator
What is a security zone that allows public traffic but is isolated from the private network called?
DMZ
Which unsecure protocol uses port 80 by default?
HTTP
What is 192.168 in binary?
11000000.10101
What port number does Secure Shell (SSH) use by default?
22
Logging, notification, and shunning are what types of reactions from what type of security device?
Passive reactions from an IDS
True/False: A demilitarized zone (DMZ) is a network segment that is neither public nor local, but halfway between.
TRUE
You add a new cable to your network. What document do you update?
Wiring schematics
True/False: An intrusion detection system replaces a firewall on your network.
FALSE
True/False: An intrusion detection system (IDS) can detect attacks within encrypted traffic.
FALSE
True/False: An intrusion detection system (IDS) monitors network traffic, looking for signs of an intrusion.
TRUE
192.168.10.0/28 is an example of which kind of notation?
CIDR
Which terminal emulation program is insecure because it does not encrypt any data, including usernames and passwords?
Telnet
Which network topology has the most physical connections per host, which means it will have the least collisions?
Mesh
In a Class C address, a network ID is how many bits?
24
100BaseTF uses what type of cable medium?
Ethernet over fiber
True/False: A multimode fiber-optic cable (MMF) is terminated on a punch-down block.
FALSE
A UTP cable running 1000Mbps can be a maximum distance of .
100 meters
How can you verify that your DMZ is allowing TCP ports through?
Telnet to the ports in question on the DMZ server.
True/False: A dipole is an omnidirectional antenna.
TRUE