NP 235 QUIZ 5 PREMIUM PREP PACK 2026
FULLY SOLVED MATERIAL
◉ Transmission Control Protocol/Internet Protocol (TCP/IP).
Answer: - Protocol that connects computers to the Internet
- Tells computers how to exchange information over the Internet
- Operates at Level 4 (transport) & 3 (network) of OSI Model
◉ Encapsulation. Answer: Process of adding addressing information
to data as they are transmitted down the OSI stack
◉ concentric rings. Answer: A.K.A. Nested layering
Creates a series of nested layers that must be bypassed in order to
complete an attack. Each layer delays the attacker and provides
opportunities to detect and attack
◉ overlapping redundancy. Answer: Two or more controls that work
in parallel to protect an asset. Provides multiple, overlapping points
of detection. This is most effective when each control is different.
◉ segregation. Answer: A.K.A. compartmentalization
,Compartmentalizes access to an asset, requiring two or more
process, controls or individuals to access or use the asset. This is
effective in protecting very high value assets or in environments
where trust is an issue
◉ Horizontal defense in depth. Answer: Controls are placed in
various places in the path to access an asset.
◉ Vertical Defense in Depth. Answer: Controls are placed at different
system layers - hardware, operating system, application, database or
user levels.
◉ Firewall. Answer: combination of systems that enforces a
boundary between two or more networks, typically forming a
barrier between a secure and an open environment (i.e. internet)
◉ packet-filtering firewall. Answer: Def: A firewall that examines
each packet and determines whether to let the packet pass. Best
suited for smaller networks
Advantages:
- Simple; only one network choke point
- minimal performance constraints
- inexpensive/free
, Disadvantages:
- Vulnerable to attacks from improperly configured filters
- Vulnerable to attacks tunneled over permitted services
- All private systems are vulnerable when a single packet filtering
router is compromised
◉ Application firewall systems. Answer: Def: Allow information to
flow between systems but do not allow the direct exchange of
packets. Provide greater protection than packet filtering. Work at the
application level of OSI model
Types:
1) Application level gateways - proxy for each service; impacts
network performance
2) Circuit level gateways - one proxy for all services; more efficient
Advantages:
- Provide security for commonly used protocols
- generally hide network from outside untrusted networks
- ability to protect the entire network by limiting break-ins to the
firewall itself
- ability to examine and secure program code
FULLY SOLVED MATERIAL
◉ Transmission Control Protocol/Internet Protocol (TCP/IP).
Answer: - Protocol that connects computers to the Internet
- Tells computers how to exchange information over the Internet
- Operates at Level 4 (transport) & 3 (network) of OSI Model
◉ Encapsulation. Answer: Process of adding addressing information
to data as they are transmitted down the OSI stack
◉ concentric rings. Answer: A.K.A. Nested layering
Creates a series of nested layers that must be bypassed in order to
complete an attack. Each layer delays the attacker and provides
opportunities to detect and attack
◉ overlapping redundancy. Answer: Two or more controls that work
in parallel to protect an asset. Provides multiple, overlapping points
of detection. This is most effective when each control is different.
◉ segregation. Answer: A.K.A. compartmentalization
,Compartmentalizes access to an asset, requiring two or more
process, controls or individuals to access or use the asset. This is
effective in protecting very high value assets or in environments
where trust is an issue
◉ Horizontal defense in depth. Answer: Controls are placed in
various places in the path to access an asset.
◉ Vertical Defense in Depth. Answer: Controls are placed at different
system layers - hardware, operating system, application, database or
user levels.
◉ Firewall. Answer: combination of systems that enforces a
boundary between two or more networks, typically forming a
barrier between a secure and an open environment (i.e. internet)
◉ packet-filtering firewall. Answer: Def: A firewall that examines
each packet and determines whether to let the packet pass. Best
suited for smaller networks
Advantages:
- Simple; only one network choke point
- minimal performance constraints
- inexpensive/free
, Disadvantages:
- Vulnerable to attacks from improperly configured filters
- Vulnerable to attacks tunneled over permitted services
- All private systems are vulnerable when a single packet filtering
router is compromised
◉ Application firewall systems. Answer: Def: Allow information to
flow between systems but do not allow the direct exchange of
packets. Provide greater protection than packet filtering. Work at the
application level of OSI model
Types:
1) Application level gateways - proxy for each service; impacts
network performance
2) Circuit level gateways - one proxy for all services; more efficient
Advantages:
- Provide security for commonly used protocols
- generally hide network from outside untrusted networks
- ability to protect the entire network by limiting break-ins to the
firewall itself
- ability to examine and secure program code