Chapter 20: Network Monitoring Flashcards

1
Q

____ is a set of standards for communication with network devices (switches, routers, WAPs) connected to a TCP/IP network. It is used for network management.

A

SNMP or Simple Network Management Protocol

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

An SNMP (Simple Network Management Protocol) system, which creates a managed network, consists of at least three components:

A
  1. Managed devices
  2. SNMP manager aka. a NMS (Network Management System
  3. SNMP agent
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

SNMP uses ____ to categorize the data that can be queried.

A

MIBs or Management Information Bases

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

SNMP managers use UDP ports:

A

162 or 10162 (with TLS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

SNMP agents use UDP ports:

A

161 or 10161 (with TLS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

A/An ____ is a program that queries a network interface and collects (captures) packets in a file. They need to capture all the packets they can, so it’s typical for them to connect to an interface in promiscuous mode or, in the case of a switch, a mirrored port.

A

packet sniffer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

A/An ____ is a program that processes capture files from packet sniffers and analyzes them based on our monitoring needs.

A

protocol analyzer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

A/An ____ tool tracks traffic flowing between specific source and destination devices.

A

packet flow monitoring

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

____ track the bandwidth and utilization of one or more interfaces on one or more devices.

A

Interface monitors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

A/An ____ tracks the performance of some aspect of a system over time and lets you know when things aren’t normal.

A

performance monitor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

The default destination port for syslog is UDP port ____.

A

514

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which PDU does an SNMP manager (aka. a NMS) use to query agents?

A

Get

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which PDU does an SNMP manager (aka. a NMS) use to tell an agent to make changes to the information it queries and sends?

A

Set

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

An agent can solicit information from an SNMP manager (aka. a NMS) with the ____ PDU.

A

Trap

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

In an SNMP managed network, what software does a managed device run?

A

An agent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Where does a packet sniffer put information it collects?

A

In a capture file

17
Q

What should you create when a network is running normally?

A

A baseline so you can compare network performance later on.

18
Q

What tool enables you to compare current network performance with correctly functioning network performance?

A

A performance monitor

19
Q

____ are the computers sending the most data.

A

Top talkers

20
Q

____ are the computers receiving the most data.

A

Top listeners