1
WGU D488 Cybersecurity Architecture and
Engineering Objective Assessment 2025/2026
Test Bank 2 660 Real EXAM Questions with Correct
Verified Answers Complete Solutions - Assured
Success/Graded A+!!!
1. What is the primary purpose of iptables on a host computer?
• A. Routing
• B. Firewall
• C. Switching
• D. Encryption
2. Which protocol would be used to manage a router securely from a
laptop?
• A. Telnet
• B. RDP
• C. SSH
• D. FTP
3. What routing protocol is considered most secure for enterprise
networks?
• A. OSPF
• B. RIP v2
• C. EIGRP
• D. BGP
4. Which type of management allows administrators to access network
devices during an attack?
pg. 1
,2
• A. In-band management
• B. OOB management
• C. Remote management
• D. Local management
5. What is the most effective method to prevent unauthorized access to
network devices?
• A. Default passwords
• B. Strong password
• C. No password
• D. Simple password
6. Which security module is designed to store cryptographic keys for e-
commerce servers?
• A. DLP
• B. HSM
• C. DPI
• D. 802.1x
7. How can an organization mitigate the threat of data leakage?
• A. Through DLP
• B. Through HSM
• C. Through DPI
• D. Through 802.1x
8. What type of detection method relies on known patterns of malicious
activity?
• A. Heuristics
• B. Signature
pg. 2
,3
• C. Anomaly-based
• D. Behavioral
9. Which Ethernet standard defines port-based network access control?
• A. 802.11
• B. 802.3
• C. 802.1x
• D. 802.5
10. What type of connectivity should key personnel use when the main
network is under attack?
• A. Email
• B. OOB
• C. Teams
• D. VNC
11. What is a significant disadvantage of using Virtual Desktop
Infrastructure (VDI)?
• A. Reliance on networks
• B. High processing power
• C. Storage limitations
• D. User interface issues
12. What technology allows contractors to use thin clients to access
desktops in a data center?
• A. OOB
• B. MDM
• C. VDI
• D. SSH
pg. 3
, 4
13. Which routing technique helps mitigate Distributed Denial of Service
(DDoS) attacks?
• A. OSPF
• B. RTBH
• C. RIP
• D. EIGRP
14. What should be configured on mobile users' laptops to prevent
sniffing/eavesdropping?
• A. Anti-malware
• B. Shielding
• C. Cable locks
• D. VPN
15. Which type of firewall operates at the application layer?
• A. Packet filtering
• B. Stateful inspection
• C. Application gateway
• D. Circuit-level gateway
16. What is the primary function of a Demilitarized Zone (DMZ)?
• A. Internal network segmentation
• B. Hosting public-facing services
• C. User authentication
• D. Data backup
17. Which protocol provides secure remote access to network devices?
• A. HTTP
• B. HTTPS
pg. 4
WGU D488 Cybersecurity Architecture and
Engineering Objective Assessment 2025/2026
Test Bank 2 660 Real EXAM Questions with Correct
Verified Answers Complete Solutions - Assured
Success/Graded A+!!!
1. What is the primary purpose of iptables on a host computer?
• A. Routing
• B. Firewall
• C. Switching
• D. Encryption
2. Which protocol would be used to manage a router securely from a
laptop?
• A. Telnet
• B. RDP
• C. SSH
• D. FTP
3. What routing protocol is considered most secure for enterprise
networks?
• A. OSPF
• B. RIP v2
• C. EIGRP
• D. BGP
4. Which type of management allows administrators to access network
devices during an attack?
pg. 1
,2
• A. In-band management
• B. OOB management
• C. Remote management
• D. Local management
5. What is the most effective method to prevent unauthorized access to
network devices?
• A. Default passwords
• B. Strong password
• C. No password
• D. Simple password
6. Which security module is designed to store cryptographic keys for e-
commerce servers?
• A. DLP
• B. HSM
• C. DPI
• D. 802.1x
7. How can an organization mitigate the threat of data leakage?
• A. Through DLP
• B. Through HSM
• C. Through DPI
• D. Through 802.1x
8. What type of detection method relies on known patterns of malicious
activity?
• A. Heuristics
• B. Signature
pg. 2
,3
• C. Anomaly-based
• D. Behavioral
9. Which Ethernet standard defines port-based network access control?
• A. 802.11
• B. 802.3
• C. 802.1x
• D. 802.5
10. What type of connectivity should key personnel use when the main
network is under attack?
• A. Email
• B. OOB
• C. Teams
• D. VNC
11. What is a significant disadvantage of using Virtual Desktop
Infrastructure (VDI)?
• A. Reliance on networks
• B. High processing power
• C. Storage limitations
• D. User interface issues
12. What technology allows contractors to use thin clients to access
desktops in a data center?
• A. OOB
• B. MDM
• C. VDI
• D. SSH
pg. 3
, 4
13. Which routing technique helps mitigate Distributed Denial of Service
(DDoS) attacks?
• A. OSPF
• B. RTBH
• C. RIP
• D. EIGRP
14. What should be configured on mobile users' laptops to prevent
sniffing/eavesdropping?
• A. Anti-malware
• B. Shielding
• C. Cable locks
• D. VPN
15. Which type of firewall operates at the application layer?
• A. Packet filtering
• B. Stateful inspection
• C. Application gateway
• D. Circuit-level gateway
16. What is the primary function of a Demilitarized Zone (DMZ)?
• A. Internal network segmentation
• B. Hosting public-facing services
• C. User authentication
• D. Data backup
17. Which protocol provides secure remote access to network devices?
• A. HTTP
• B. HTTPS
pg. 4