Domain 4 - CISSP Flashcards

Communication and Network Security

1
Q

What are the container names for network units at each level of the OSI model?

A

P - Bits
D - Frame
N - Packet
T - Segment (TCP)/Datagram (UDP)
S - PDU (protocol data unit)
P - PDU (protocol data unit)
A - PDU (protocol data unit)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the mnemonic for the OSI model?

A

Please (physical)
Do (data link)
Not (network)
Teach (transport)
Surly (session)
People (presentation)
Acronyms (application)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

At what level of the OSI model does the TLS protocol operate?

A

Transport layer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which OSI model layer is responsible for guaranteeing delivery?

A

Transport layer (TCP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What do the first 3 bytes/24 bits of a MAC address signify?

A

The hardware manufacturer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What layer does ARP occur at?

A

Data link

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What port is Telnet?

A

TCP 23. Unecrypted. Don’t use.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What port does FTP use?

A

TCP 20 and 21. Should use SFTP or FTPS instead.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What port does TFTP use?

A

UDP 69

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What port does POP3 use?

A

TCP 110

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is POP3 used for?

A

Post Office Protocol (tcp port 110) pulls email messages from email servers down to email clients

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What port does IMAP4 use?

A

TCP 143

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is IMAP4 used for?

A

Internet Message Access Protocol (IMAP4, TCP port 143) pulls email messages from an email server down to an email client. Can also be used to delete messages directly off the email server.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What port does DHCP use?

A

UDP 67 and 68. Dynamic Host Configuration Protocol

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is a socket?

A

And IP address and a port number (e.g. 10.100.10.15:8443)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

How is a TCP connection established?

A

TCP three-way handshake
Client > SYN > Server
Server responds > SYN/ACK > Client
Client > ACK > Server

17
Q

What are the two ways of a TCP connection?

A

FIN - finish flag, gracefully shutdown connection
RST - reset flag, immediate and abrupt session termination

18
Q

What is ARP and what does it do?

A

Address resolution protocol. Resolves an IP address to a MAC address

19
Q

What is a top-level domain?

A

TLD. the .com of a web address.

20
Q

What port does DNS use?

A

TCP 53 for zone transfers and UDP 53 for DNS queries.

21
Q

What is DNSSEC?

A

DNS Security Extensions - improved security for DNS, providing mutual certificate authentication and encrypted sessions (does it?) between devices during DNS operations. Not used by clients.

22
Q

What is DoH?

A

DNS over HTTPS - provides encrypted DNS queries for clients, since DNSSEC is typically only for DNS servers.

23
Q

What is DNS poisoning?

A

The act of falsifying the DNS information used by a client to reach a desired system.

24
Q

What is a rogue DNS server?

A

A malicious server that listens to network traffic and responds to DNS queries with false IP information.

25
Q

How does a WAN differ from a LAN?

A

WAN’s are not limited by geographic boundaries. They can span a region or the entire globe. WANs typically use leased or external connections and links.

26
Q

What is a dual-stack IP setup?

A

Both IPv4 and IPv6 run and devices can communicate on either, but adds overhead to network infrastructure.

27
Q

What is IP tunneling?

A

Where two IPv6 hosts can create a tunnel for traffic over an IPv4 network.

28
Q

What is IP translation?

A

Enables an IPv4 host to talk to an IPv6 host.

29
Q

What is a boundary network?

A

a subnet positioned on the edge of a LAN to isolate certain activities, for instance a DMZ where external users can access resources.

30
Q

What is an extranet?

A

a subnet with resources that are accessible by authorized external users (e.g. business partners), usually through a VPN.

31
Q

What is a 3-homed firewall setup?

A

The firewall is connected to the Internet, the DMZ, and the private LAN on separate interfaces, and all traffic must go through the firewall.

32
Q

What is a N-Tier network setup?

A

Where there is a firewall on either side of the DMZ/extranet.

33
Q
A