CASP EXAM B QUESTIONS AND
CORRECT ANSWERS
YourA2companyA2hostsA2severalA2publicA2WebA2sitesA2onA2itsA2WebA2server.A2SomeA2ofA2t
heA2sitesA2implementA2theA2secureA2socketsA2layerA2(SSL)A2protocol.A2WhichA2statementA
2isA2notA2trueA2ofA2thisA2protocol?A2-A2Ans--
SSLA2operatesA2atA2theA2NetworkA2layerA2ofA2theA2OSIA2model
YouA2areA2theA2securityA2administratorA2forA2anA2organization.A2ManagementA2decidesA2t
hatA2allA2communicationA2onA2theA2networkA2shouldA2beA2encryptedA2usingA2theA2dataA2en
cryptionA2standardA2(DES)A2algorithm.A2WhichA2statementA2isA2trueA2ofA2thisA2algorithm?
A2-A2Ans--AA2TripleA2DESA2(3DES)A2algorithmA2usesA248A2roundsA2ofA2computation
InA2PKI,A2whatA2isA2theA2entityA2thatA2signsA2aA2certificate?A2-A2Ans--AnA2issuer
AA2newA2securityA2policyA2implementedA2byA2yourA2organizationA2statesA2thatA2allA2official
A2e-
mailA2messagesA2mustA2beA2signedA2withA2digitalA2signatures.A2WhichA2elementsA2areA2pr
ovidedA2whenA2theseA2areA2used?A2(ChooseA2allA2thatA2apply)A2-A2Ans--Integrity\n\
nAuthentication\n\nNon-repudiation
WhatA2typeA2ofA2encryptionA2algorithmA2doesA2Diffie-HellmanA2represent?A2-A2Ans--
AsymmetricA2withA2authentication
WhatA2isA2anA2algorithmA2thatA2isA2usedA2toA2createA2aA2messageA2digestA2forA2aA2file?A2-
A2Ans--Hash
YourA2organizationA2hasA2severalA2virtualA2LANsA2(VLANs)A2implemented.A2Management
A2isA2concernedA2aboutA2theA2securityA2ofA2theA2VLANs.A2ManagementA2hasA2requestedA2
thatA2youA2implementA2SpanningA2TreeA2ProtocolA2(STP)A2onA2allA2VLANs.A2WhichA2typeA
2ofA2attackA2willA2thisA2protectA2against?A2-A2Ans--NetworkA2loopA2attacks
WhichA2ofA2theA2followingA2statementsA2regardingA2cloudA2computingA2andA2gridA2computi
ngA2areA2true?A2(ChooseA2allA2thatA2apply)A2-A2Ans--
BothA2cloudA2computingA2andA2gridA2computingA2areA2scalable\n\
nCloudA2computingA2mayA2beA2moreA2environmentallyA2friendlyA2thanA2gridA2computing\
n\
nCloudA2computingA2isA2madeA2upA2ofA2thinA2clients,A2gridA2computing,A2andA2utilityA2com
puting
TheA2LANA2inA2yourA2organizationA2usesA2aA2SANA2toA2storeA2data.A2YouA2haveA2justA2con
nectedA2aA2newA2driveA2toA2theA2SANA2andA2createdA2aA2logicalA2driveA2usingA2theA2RAIDA
2controller.A2ItA2isA2importantA2thatA2visibilityA2ofA2theA2newA2storageA2beA2restrictedA2toA2aA
2fewA2serversA2inA2theA2SANA2WhichA2twoA2optionsA2canA2youA2useA2toA2achieveA2this?
, (ChooseA2two)A2-A2Ans--UseA2zoningA2onA2theA2fibreA2channelA2switch\n\
A2
nUseA2LUNA2maskingA2onA2theA2RAIDA2controller
WhatA2shouldA2youA2implementtoA2isolateA2twoA2ofA2theA2devicesA2thatA2areA2locatedA2onA
2aA2SANA2fabricA2containingA2eightA2devices?A2-A2Ans--VirtualA2SAN
YourA2organizationA2hasA2implementedA2WebA2ServicesA2SecurityA2(WS-
Security)A2inA2allA2itsA2WebA2applications.A2WhatA2isA2notA2providedA2withA2thisA2SimpleA2
ObjectA2AccessA2ProtocolA2(SOAP)A2extension?A2-A2Ans--Availability
WhichA2typeA2ofA2firewallA2mostA2detrimentallyA2affectsA2networkA2performance?A2-A2Ans--
Application-levelA2proxyA2firewall
YouA2haveA2severalA2routersA2onA2yourA2organization'sA2network.A2Recently,A2oneA2ofA2th
eA2routersA2hasA2undergoneA2aA2spoofingA2attack.A2ManagementA2wantsA2youA2toA2protec
tA2againstA2theseA2spoofingA2attacksA2byA2ensuringA2thatA2theA2routerA2confirmsA2thatA2the
A2sourceA2addressA2toA2whichA2aA2packetA2isA2beingA2forwardedA2isA2reachable.A2TheA2net
workA2includesA2asymmetricA2routingA2paths.A2WhatA2shouldA2youA2do?A2-A2Ans--
ImplementA2unicastA2reverseA2pathA2forwardingA2inA2looseA2modeA2onA2theA2router
WhatA2isA2theA2purposeA2ofA2anti-spamA2applicationsA2-A2Ans--
ToA2preventA2unsolicitedA2e-mail
WhichA2entitiesA2canA2groupA2policiesA2beA2usedA2toA2manage?
A2(ChooseA2allA2thatA2apply)A2-A2Ans--Users\n\nClientA2computers\n\nServerA2computers\
n\nDomainA2controllers
WhichA2characteristicsA2ofA2aA2systemA2areA2evaluatedA2byA2theA2TrustedA2ComputerA2Sy
stemA2EvaluationA2CriteriaA2(TCSE)?A2(ChooseA2allA2thatA2apply)A2-A2Ans--Assurance\n\
nFunctionality
WhichA2componentA2isA2notA2associatedA2withA2theA2CommonA2Criteria?A2-A2Ans--
Accreditation
AnA2organization'sA2WebA2siteA2includesA2severalA2JavaA2applets.A2TheA2JavaA2appletsA2i
ncludeA2aA2securityA2featureA2thatA2limitsA2theA2applet'sA2accessA2toA2certainA2areasA2ofA2t
heA2WebA2user'sA2system.A2HowA2doesA2itA2doA2this?A2-A2Ans--ByA2usingA2sandboxes\n
YouA2haveA2beenA2notifiedA2aboutA2aA2securityA2issueA2withA2yourA2HTTPA2WebA2site.A2Th
eA2WebA2developerA2indicatesA2thatA2sensitiveA2dataA2isA2beingA2encodedA2inA2theA2HTTP
A2request,A2allowingA2hackersA2toA2stealA2thisA2sensitiveA2data.A2WhichA2typeA2ofA2HTTPA2
requestA2isA2allowingA2theA2dataA2toA2beA2stolen?A2-A2Ans--AnA2HTTPA2GETA2request
AllA2ofA2theA2followingA2areA2countermeasuresA2forA2sessionA2managementA2attacks,A2EX
CEPT:A2-A2Ans--ImplementA2pre-A2andA2post-validationA2controls
CORRECT ANSWERS
YourA2companyA2hostsA2severalA2publicA2WebA2sitesA2onA2itsA2WebA2server.A2SomeA2ofA2t
heA2sitesA2implementA2theA2secureA2socketsA2layerA2(SSL)A2protocol.A2WhichA2statementA
2isA2notA2trueA2ofA2thisA2protocol?A2-A2Ans--
SSLA2operatesA2atA2theA2NetworkA2layerA2ofA2theA2OSIA2model
YouA2areA2theA2securityA2administratorA2forA2anA2organization.A2ManagementA2decidesA2t
hatA2allA2communicationA2onA2theA2networkA2shouldA2beA2encryptedA2usingA2theA2dataA2en
cryptionA2standardA2(DES)A2algorithm.A2WhichA2statementA2isA2trueA2ofA2thisA2algorithm?
A2-A2Ans--AA2TripleA2DESA2(3DES)A2algorithmA2usesA248A2roundsA2ofA2computation
InA2PKI,A2whatA2isA2theA2entityA2thatA2signsA2aA2certificate?A2-A2Ans--AnA2issuer
AA2newA2securityA2policyA2implementedA2byA2yourA2organizationA2statesA2thatA2allA2official
A2e-
mailA2messagesA2mustA2beA2signedA2withA2digitalA2signatures.A2WhichA2elementsA2areA2pr
ovidedA2whenA2theseA2areA2used?A2(ChooseA2allA2thatA2apply)A2-A2Ans--Integrity\n\
nAuthentication\n\nNon-repudiation
WhatA2typeA2ofA2encryptionA2algorithmA2doesA2Diffie-HellmanA2represent?A2-A2Ans--
AsymmetricA2withA2authentication
WhatA2isA2anA2algorithmA2thatA2isA2usedA2toA2createA2aA2messageA2digestA2forA2aA2file?A2-
A2Ans--Hash
YourA2organizationA2hasA2severalA2virtualA2LANsA2(VLANs)A2implemented.A2Management
A2isA2concernedA2aboutA2theA2securityA2ofA2theA2VLANs.A2ManagementA2hasA2requestedA2
thatA2youA2implementA2SpanningA2TreeA2ProtocolA2(STP)A2onA2allA2VLANs.A2WhichA2typeA
2ofA2attackA2willA2thisA2protectA2against?A2-A2Ans--NetworkA2loopA2attacks
WhichA2ofA2theA2followingA2statementsA2regardingA2cloudA2computingA2andA2gridA2computi
ngA2areA2true?A2(ChooseA2allA2thatA2apply)A2-A2Ans--
BothA2cloudA2computingA2andA2gridA2computingA2areA2scalable\n\
nCloudA2computingA2mayA2beA2moreA2environmentallyA2friendlyA2thanA2gridA2computing\
n\
nCloudA2computingA2isA2madeA2upA2ofA2thinA2clients,A2gridA2computing,A2andA2utilityA2com
puting
TheA2LANA2inA2yourA2organizationA2usesA2aA2SANA2toA2storeA2data.A2YouA2haveA2justA2con
nectedA2aA2newA2driveA2toA2theA2SANA2andA2createdA2aA2logicalA2driveA2usingA2theA2RAIDA
2controller.A2ItA2isA2importantA2thatA2visibilityA2ofA2theA2newA2storageA2beA2restrictedA2toA2aA
2fewA2serversA2inA2theA2SANA2WhichA2twoA2optionsA2canA2youA2useA2toA2achieveA2this?
, (ChooseA2two)A2-A2Ans--UseA2zoningA2onA2theA2fibreA2channelA2switch\n\
A2
nUseA2LUNA2maskingA2onA2theA2RAIDA2controller
WhatA2shouldA2youA2implementtoA2isolateA2twoA2ofA2theA2devicesA2thatA2areA2locatedA2onA
2aA2SANA2fabricA2containingA2eightA2devices?A2-A2Ans--VirtualA2SAN
YourA2organizationA2hasA2implementedA2WebA2ServicesA2SecurityA2(WS-
Security)A2inA2allA2itsA2WebA2applications.A2WhatA2isA2notA2providedA2withA2thisA2SimpleA2
ObjectA2AccessA2ProtocolA2(SOAP)A2extension?A2-A2Ans--Availability
WhichA2typeA2ofA2firewallA2mostA2detrimentallyA2affectsA2networkA2performance?A2-A2Ans--
Application-levelA2proxyA2firewall
YouA2haveA2severalA2routersA2onA2yourA2organization'sA2network.A2Recently,A2oneA2ofA2th
eA2routersA2hasA2undergoneA2aA2spoofingA2attack.A2ManagementA2wantsA2youA2toA2protec
tA2againstA2theseA2spoofingA2attacksA2byA2ensuringA2thatA2theA2routerA2confirmsA2thatA2the
A2sourceA2addressA2toA2whichA2aA2packetA2isA2beingA2forwardedA2isA2reachable.A2TheA2net
workA2includesA2asymmetricA2routingA2paths.A2WhatA2shouldA2youA2do?A2-A2Ans--
ImplementA2unicastA2reverseA2pathA2forwardingA2inA2looseA2modeA2onA2theA2router
WhatA2isA2theA2purposeA2ofA2anti-spamA2applicationsA2-A2Ans--
ToA2preventA2unsolicitedA2e-mail
WhichA2entitiesA2canA2groupA2policiesA2beA2usedA2toA2manage?
A2(ChooseA2allA2thatA2apply)A2-A2Ans--Users\n\nClientA2computers\n\nServerA2computers\
n\nDomainA2controllers
WhichA2characteristicsA2ofA2aA2systemA2areA2evaluatedA2byA2theA2TrustedA2ComputerA2Sy
stemA2EvaluationA2CriteriaA2(TCSE)?A2(ChooseA2allA2thatA2apply)A2-A2Ans--Assurance\n\
nFunctionality
WhichA2componentA2isA2notA2associatedA2withA2theA2CommonA2Criteria?A2-A2Ans--
Accreditation
AnA2organization'sA2WebA2siteA2includesA2severalA2JavaA2applets.A2TheA2JavaA2appletsA2i
ncludeA2aA2securityA2featureA2thatA2limitsA2theA2applet'sA2accessA2toA2certainA2areasA2ofA2t
heA2WebA2user'sA2system.A2HowA2doesA2itA2doA2this?A2-A2Ans--ByA2usingA2sandboxes\n
YouA2haveA2beenA2notifiedA2aboutA2aA2securityA2issueA2withA2yourA2HTTPA2WebA2site.A2Th
eA2WebA2developerA2indicatesA2thatA2sensitiveA2dataA2isA2beingA2encodedA2inA2theA2HTTP
A2request,A2allowingA2hackersA2toA2stealA2thisA2sensitiveA2data.A2WhichA2typeA2ofA2HTTPA2
requestA2isA2allowingA2theA2dataA2toA2beA2stolen?A2-A2Ans--AnA2HTTPA2GETA2request
AllA2ofA2theA2followingA2areA2countermeasuresA2forA2sessionA2managementA2attacks,A2EX
CEPT:A2-A2Ans--ImplementA2pre-A2andA2post-validationA2controls