Misc Terms Flashcards

1
Q

SCADA / ICS

A

Supervisory Control and Data Acquisition system
- large scale, multisite Industrial Control System

distributed control systems for equipment managed by a PC
- power generation, refining, manufacturing equipment, etc.

Must be segmented so no access from outside

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

RIP

A

Routing Information Protocol

-distance vector routing
-decides how many ‘hop’ away another network is

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

EIGRP

A

Enhanced Interior Gateway Routing Protocol

-distance vector routing
-decides how many ‘hops’ away another network is

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

OSPF

A

Open Shortest Path First

-link state routing
-info passed between routers is related to the current connectivity
(if its up you can get there. If its down you cant)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

BGP

A

Border Gateway Protocol

-determines route based on paths, network policies, or configured pre-set rules

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

CSMA / CD

A

CS - Carrier Sense
-is there a carrier? is anyone communicating?

MA - Multiple Access
-more than one device on the network

CD - Collision Detection
-collision - two stations talking at once
-identify when data gets garbled

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

CSMA / CD operation

A

Listen for an opening (dont transmit if the network is busy)

Send a frame of data (send data whenever you can, no queue)

If a collision occurs, transmit a jam signal letting everyone know a collision occurred and wait a random amount of time then resend

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

NDP

A

Neighbor Discovery Protocol

-operated using multicast with ICMPv6
-neighbor MAC discovery (replaces IPv4 ARP)

-SLAAC (Stateless Address AutoConfig) congifs IP without DHCP server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

802.3af

A

PoE

15 watts of DC power
max current of 350 mA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

802.3at

A

PoE+

25.5 watts of DC power
max current of 600 mA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

802.1Q

A

trunking

adding a VLAN header to an Ethernet frame

VLAN IDs are 12 bits long

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

STP

A

Spanning Tree Protocol

-loop protection with switches

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

STP port states

A

blocking - not forwarding to prevent loop

listening - not forwarding and cleaning the MAC table

learning - not forwarding and adding to the MAC table

forwarding - data passes through and is fully operational

disabled - admin has turned off the port

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

LAG

A

Link AGgregation

-multiple interfaces act like one big interface

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

LACP

A

Link Aggregation Control Protocol

  • adds additional automation and management
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

jumbo frames

A

ethernet frames with more than 1500 bytes of payload

  • up to 9216 bytes
    -ethernet devices must support jumbo frames
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

MDI

A

Media Dependent Interface

  • network interface card
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

MDI-X

A

Media Dependent Interface Crossover

-network switch

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Antenna performance is measured in ___

A

dB

  • double power every 3dB of gain
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Yagi antenna

A

very directional and high gain

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Parabolic antenna

A

focus the signal to a single point

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Route Poisoning

A

-method to prevent a router from sending packets through a route that has become invalid with computer networks

-achieved through changing the route’s metric to a value that exceeds the max allowable hop count so that the route is advertised as unavailable

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Split Horizon

A

-route advertisement

-method of preventing routing loops in distance vector routing protocols by prohibiting a router from advertising a route back onto the interface from which it learned

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Can browsers have group policy block lists?

A

yes

they can block access to a domain via a given URL

not the whole domain because other parts might be fine - like a particular repository on GitHub may be bad, but the entirety of GitHub is not bad

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

CPP

A

Control Plane Policing

  • feature allows users to configure quality of service (QoS) filter that manages the traffic flow of control plane packets to protect the control plane of Cisco IOS routers and switches against recon and DoS attacks
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

System Logging Protocol

A

Syslog

uses port 514

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

SIP

A

Session Initiation Protocol

  • signaling protocol for initiating, maintaining and terminating real time sessions that include voice, video and messaging apps
  • uses port 5060 and 5061
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

VRRP

A

Virtual Router Redundancy Protocol

  • Protocol used for automatic assignment of available IP routers to participating hosts in order to increase availability and reliability of routing paths via automatic default gateway selections
  • uses port 112
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

You are configuring a point-to-point link and want to ensure it is configured for the most efficient use of your limited pool of available public IP addresses. Which of the following subnet masks would be best in this scenario?

  1. /30
  2. /24
  3. /28
  4. /29
A
  1. /30
  • the most efficient subnet mask would actual be /31 which only provides 2 addresses\
  • /30 consists of 4 IPs, the first being the network IP, the last the broadcast address, and the other two IPs can be assigned to the routers on either end of the point-to-point network
30
Q

Unmanaged switches

A

only have one broadcast domain

  • routers and managed switches can break up broadcast domains
31
Q

LACP

A

Link Aggregation Control Protocol

  • provides a method of bonding several physical ports to form a single logical channel
  • defined in the 802.3ad standard
32
Q

LLDP

A

Link Layer Discovery Protocol

  • vendor-neutral link layer protocol used by network devices for advertising their identity, capabilities, and neighbors
33
Q

L2TP

A

Layer 2 Tunneling Protocol

  • tunneling protocol used to support VPNs or as part of delivery services by ISPs
34
Q

IaC

A

Infrastructure as Code

  • designed w/ idea that a well coded description of the server or network operating environment will produce consistent results across an enterprise
35
Q

Convergence

A

convergence on a routed network occurs when all routers learn the route to all connected networks

  • when all routers “agree” on what the network typology looks like
36
Q

CRC

A

Cyclic Redundancy Checksum

  • an error detecting code to detect changes in raw data as it transits the network
  • CRC number is the number of packets that failed the chekcsum and the packets are rejected
37
Q

BGP

A
  • used to route data between autonomous systems (AS)
    • AS are a collection of networks w/in the same admin domain
  • the routers within an AS use an interior gateway protocol such as RIP or OSPF
  • AS are layer 3
38
Q

Patch antenna

A

low profile antennas

39
Q

Whip antennas

A

vertical and onmidirectional usually used indoors

40
Q

Defense in Depth

A

Multiple mode of protection

  • IPS, NGFW, etc.
41
Q

Rollover Cable

A
  • Cisco console cable
  • used to connect to management interfaces
  • serial cable “standard” proposed by David Yost
  • used in conjunction with serial port connectors

–newer switches and routers use USB

– serial (DB9) connectors are also used

42
Q

EIGRP

A

routing protocol commonly used with Cisco

43
Q

CSMA/CD

A

carrier sense multiple access / collision detection

44
Q

FCoE

A

Fiber Channel over Ethernet

45
Q

WDM

A

Wavelength-Division Multiplexing

  • bidirectional communication over a single strand of fiber
46
Q

CWDM

A

Course Wavelength Division Multiplexing

  • 10GBASE-LX4 use 4 3.125 Gbit/sec carriers at 4 different wavelengths
47
Q

DWDM

A

Dense Wavelength Division Multiplexing

  • Multiplex multiple OC carriers into a single fiber
  • adds 160 signals, increases to 1.6 Tb/sec
48
Q

ARP

A

Address Resolution Protocol

  • determines a MAC address based on IP via a table
  • command “arp -a” views local ARP table
49
Q

IP Class A

A

leading bits 0xxx

1-127

50
Q

IP Class B

A

leading bits 10xx

128-191

51
Q

IP Class C

A

leading bits 110x

192-223

52
Q

IP Class D

A

multicast

leading bits 1110

224-239

53
Q

IP Class E

A

Reserved

leading bits 1111

240-254

54
Q

IBSS

A

Independent Basic Server Set

  • two devices communicate directly using 802.11
  • no AP required
  • Ad hoc (created for a particular purpose w/o any previous planning)
  • temporary or long term communication
55
Q

A net admin is trying to power off a Cisco switch, but it is not working. The admin needs to be in which mode to perform this task?

  1. Global configuration
  2. User
  3. Auto-negotiate
  4. Enable
A

Enable
- privilege or enable mode allows the user to reboot, shutdown, backup and restore

______________________________________________________

Global configuration
- allows users to write config updates

User
- read only mode, commands can report config, show sys stats, or run basic troubleshooting tools

Autonegotiate
- has to do with with port speed and duplex

56
Q

When a switch needs to connect to another switch, communication would fail if both interfaces use _________

A

Media Interface Crosser (MDI-X)

57
Q

Ethernet frames, excluding the preamble, is __________ bits

A

1518 bits

  • the payload can normally be between 46 and 1500 bytes
58
Q

Active Tap

A

A powered device that performs signal regeneration

  • it “taps” the network to allow the admin to troubleshoot frames
59
Q

SPAN

A

Switched Port ANalyzer / mirror port

  • refers to a sensor, attached to a specifically configured port on the switch, that receives copies of frames
  • this method is not completely reliable
60
Q

Passive Tap

A
  • box with ports for incoming and outgoing network cable and an inductor or optical splitter that physically copies the signaling from the cabling to the mirror port
61
Q

I/G

A
  • bit of MAC address that determines whether the frame addresses an individual node (0) or a group (1)
  • the latter is for broadcast and multicast traffic
62
Q

Stackable switches

A
  • can be connected together and operate as a group
  • can be managed as a single unit
63
Q

OUI

A

Organizationally Unique Identifier

  • the first six hex digits (3 bytes or octets) of a MAC
  • identifies the manufacturer

– the last six of the MAC are the serial number

64
Q

Default Route

A
  • a route when no other routes match
    – the “gateway of last resort”
  • a remote site may have only one route
    – go that way -> rest of world

*destination of 0.0.0.0 /0

  • can simplify the routing process
    – works in conjunction with other routing protocols
65
Q

MOU

A

Memorandum of Understanding

  • both sides agree on the contents
  • usually includes statements of confidentiality
  • informal letters of intent; not a signed contract
66
Q

DAI

A

Dynamic ARP Inspection

  • ARP has no built in security
  • prevents on-path attacks
  • relies on DHCP snooping for intel
    –knowing every devices’ IP is valuable info

-intercepts all ARP requests and responses
– invalid IP-to-MAC bindings are dropped
– only valid requests make it through

67
Q

Out of Band Management

A

?

68
Q

BPDU Guard

A

Bridge Protocol Data Units
a “portfast” feature that protects switches using STP
prevents attacks by blocking BPDUs sent by unauth. devices bc these could these could force the network into constant state of reconvergence

For CISCO switches

69
Q

Flood Guard

A

Used to guard against DoS/DDoS attacks
-common type is SYN floods (SYN is the first packet sent in the 3-way TCP handshake)

70
Q

What would commonly be labeled on a CSU/DSU?

A

(Channel Service Unit/Data Service Unit - a piece of hardware that converts a digital data frame from LAN communication technology into a frame appropriate for a WAN and vice versa)

Circuit ID

Get more info about function and use cases