WITH COMPLETE SOLUTIONS
Palo Alto Networks firewalls are built on which type of architecture? - ANSWER-single
pass
Bytes in an IPv4 address - ANSWER-32 bits
Bytes in an IPv6 address - ANSWER-128 bits
malware type can change code and signature patterns with each iteration - ANSWER-
metamorphic virus
3 deployment mode options for Panorama - ANSWER-Panorama mode, Management
only mode, Log collected mode
Mobile device management (MDM) - ANSWER-software provides endpoint security for
mobile devices such as smartphones and tablets
security method requires passcodes, enables encryption, lock down security settings, &
prevents jailbreaking and rooting - ANSWER-Policy enforcement
OSI layer that defines routing protocols & specifies how routers communicate with each
other on a network - ANSWER-Network layer3
OSI LAYER 7 - ANSWER-Application- identifies availability of communication partners,
resource availability, synchronizes communication. FTP,
HTTP,IMAP,POP3,SMTP,SNMP,Telnet
OSI LAYER 6 - ANSWER-Presentation- provides coding & conversion functions to
ensure data sent from application layer of system is compatible with the application
layer of the receiving system. ASCII,EBCDIC,GIF,JPEG,MPEG
OSI LAYER 5 - ANSWER-Session- communication sessions between networked
systems including connection, data transfer, and connection release.
NFS,RPC,SSH,SIP
OSI LAYER 4 - ANSWER-Transport- transparent, reliable data transports & end-to-end
transmission control. Flow control,Multiplexing, Virtual circuit management, error
checking/recovery, TCP,UDP,SCTP
, OSI LAYER 3 - ANSWER-Network- routing protocols are defined here. uses IP routing.
allows data to be transported b/w systems on the same network or interconnected
networks
OSI LAYER 2 - ANSWER-Data link- ensures that messages are delivered to the proper
device across a physical network link. Switches typically operate here. LLC, MAC
OSI LAYER 1 - ANSWER-Physical- send and receives bits across network medium
from 1 device to another. species electrical, mechanical and functional requirements of
network.
System does not perform any preventive action to stop an attack - ANSWER-Intrusion
Detection
CIDR - ANSWER-Classless inter-domain routing
a network device that connects to a router or wired network and transmits a Wi-Fi signal
so that wireless devices can connect to a wireless (or Wi-Fi) network - ANSWER-AP-
access point
physical or virtual devices that send data packets to destination networks along a
network path using logical addresses - ANSWER-routers
a network device that connects multiple devices such as desktop computers, laptop
docking stations, and printers on a LAN. Network traffic is broadcasted out of all ports ,
which can create network congestion and introduces potential security risks - ANSWER-
hub
Essentially an intelligent hub that uses physical addresses to forward data packets to
devices on a network. Unlike a hub, this is designed to forward data packets only to the
port that corresponds to the destination device. - ANSWER-switch
Also, a switch can be used to implement virtual LANs (VLANs), which logically
segregate what? - ANSWER-logically segregate a network and limit broadcast domains
and collision domains.
T/F - a robust data loss prevention (DLP) solution can detect data patterns even if the
data is encrypted - ANSWER-True
DS/IPS system uses a database of known vulnerabilities and attack profiles to identify
intrusion attempts - ANSWER-knowledge-based
next-generation product replaces UTM appliances to reduce traffic inspection latency -
ANSWER-