Advanced Network Security UPDATED
Exam Questions and CORRECT Answers
Good network security requires a comprehensive ______________ strategy with
__________________. - CORRECT ANSWER - defense-in-depth
multiple layers of controls
Wireless Access Point (WAP) - CORRECT ANSWER - enables devices to connect to a
wireless network to communicate with each other
wired gateway - CORRECT ANSWER - router
The ______,_____,_______ may be combined in a single piece of hardware. - CORRECT
ANSWER - wireless access point, the wired switch, and wired gateway (router)
True or False: The radio signals from the access point go beyond the walls of the building. -
CORRECT ANSWER - True
Rouge Access Point - CORRECT ANSWER - a wireless access point that gives
unauthorized access to secure networks.
Evil Twin Access Point - CORRECT ANSWER - -Attacker access point outside a
building that attracts clients inside the building to associate with it.
-The attacker has set up an access point with the same network ID as the legitimate access point.
Wireless DoS Attacks - CORRECT ANSWER - - RF jamming techniqes/tools
Wireless security measures only ____________________. - CORRECT ANSWER -
protect data over the wireless link
, Data at the wireless-to-wired interconnection points and carried over link along the rest of the
(typically wired) path is ____________ [by the wireless security measures]. - CORRECT
ANSWER - not protected
End-to-end protection - CORRECT ANSWER - a method of security that protects data
throughout the entire communication process: from the moment it's generated to the point of
receipt
Application security measures can provide_______________. - CORRECT ANSWER -
end-to-end protection
virtual private network (VPN) - CORRECT ANSWER - using public network facilities
and adding end-to-end security measures to make the VPN like a network using "private"
facilities.
encryption options to protect data transmitted on the 802 II Standard - CORRECT
ANSWER - Wired Equivalent Privacy (WEP), Wi-Fi Protected Access (WPA), and
WPA2
Wired Equivalent Privacy (WEP) - CORRECT ANSWER - -An IEEE 802.11 security
protocol designed in 1997 to ensure that only authorized parties can view transmitted wireless
information.
-uses the RC4 encryption cipher with a unique initialization vector for each frame sent
Initialization Vector (IV) - CORRECT ANSWER - A 24-bit value used in WEP that
changes each time a packet is encrypted.
How does WEP work? - CORRECT ANSWER - each station using the access point uses
the same (shared) key. The key is supposed to be secret, so knowing it "authenticates"
Problem with WEP - CORRECT ANSWER - -If the shared key is learned, an attacker near
an access point can read all traffic, which is why shared keys should be changed frequently
Exam Questions and CORRECT Answers
Good network security requires a comprehensive ______________ strategy with
__________________. - CORRECT ANSWER - defense-in-depth
multiple layers of controls
Wireless Access Point (WAP) - CORRECT ANSWER - enables devices to connect to a
wireless network to communicate with each other
wired gateway - CORRECT ANSWER - router
The ______,_____,_______ may be combined in a single piece of hardware. - CORRECT
ANSWER - wireless access point, the wired switch, and wired gateway (router)
True or False: The radio signals from the access point go beyond the walls of the building. -
CORRECT ANSWER - True
Rouge Access Point - CORRECT ANSWER - a wireless access point that gives
unauthorized access to secure networks.
Evil Twin Access Point - CORRECT ANSWER - -Attacker access point outside a
building that attracts clients inside the building to associate with it.
-The attacker has set up an access point with the same network ID as the legitimate access point.
Wireless DoS Attacks - CORRECT ANSWER - - RF jamming techniqes/tools
Wireless security measures only ____________________. - CORRECT ANSWER -
protect data over the wireless link
, Data at the wireless-to-wired interconnection points and carried over link along the rest of the
(typically wired) path is ____________ [by the wireless security measures]. - CORRECT
ANSWER - not protected
End-to-end protection - CORRECT ANSWER - a method of security that protects data
throughout the entire communication process: from the moment it's generated to the point of
receipt
Application security measures can provide_______________. - CORRECT ANSWER -
end-to-end protection
virtual private network (VPN) - CORRECT ANSWER - using public network facilities
and adding end-to-end security measures to make the VPN like a network using "private"
facilities.
encryption options to protect data transmitted on the 802 II Standard - CORRECT
ANSWER - Wired Equivalent Privacy (WEP), Wi-Fi Protected Access (WPA), and
WPA2
Wired Equivalent Privacy (WEP) - CORRECT ANSWER - -An IEEE 802.11 security
protocol designed in 1997 to ensure that only authorized parties can view transmitted wireless
information.
-uses the RC4 encryption cipher with a unique initialization vector for each frame sent
Initialization Vector (IV) - CORRECT ANSWER - A 24-bit value used in WEP that
changes each time a packet is encrypted.
How does WEP work? - CORRECT ANSWER - each station using the access point uses
the same (shared) key. The key is supposed to be secret, so knowing it "authenticates"
Problem with WEP - CORRECT ANSWER - -If the shared key is learned, an attacker near
an access point can read all traffic, which is why shared keys should be changed frequently