WGU D415 SDN OA OBJECTIVE ASSESSMENT
WITH 90 QUESTIONS AND ANSWERS 2026-
2027
How do virtual overlay networks function in relation to existing
network structures?
Provision and manage networks alongside other virtual resources
Link physical computers through secured wired connections
Establish a well-defined trusted domain barrier without multiple
firewalls
Interchange protocols among the application, transport, and network
layers - correct answer-Provision and manage networks alongside other
virtual resources
A network administrator designed a three-layer security system for the
network. An attack on the system has exploited a hole in the first layer
of the security system. Which layer does the attack face next?
Detection and response mechanisms
Preventative mechanisms
Recovery mechanisms
Encapsulation and encryption mechanisms - correct answer-Detection
and response mechanisms
,Which technique can a network administrator use to identify potential
weaknesses that would be accessible to a trusted network user?
Authenticated vulnerability scan
Network communication scan
Corrupted packet log scan
VNF service flooding scan - correct answer-Authenticated vulnerability
scan
Which tool can a developer use to ensure that the code loaded in the
VNF execution environment is authentic?
Secure Boot
OpenFlow
VNF Manager
Ruby vSphere - correct answer-Secure Boot
Which method improves network partitioning to reduce threat
effectiveness?
Physical segregation of hardware
Consolidation of controllers
,Merging of communication channels
Expanding demilitarized zones - correct answer-Physical segregation of
hardware
Which function does an intrusion prevention system (IPS) perform in a
network?
It scans for patterns that could be a threat and only alerts the
administrator via text message.
It scans for patterns that could be a threat and takes the configured
action against them.
It scans for threats, logs them as a nuisance, and then allows the traffic
through.
It scans for nonthreatening traffic and blocks all other traffic to a
network. - correct answer-It scans for patterns that could be a threat
and takes the configured action against them.
How are security threats that happen within a computer network
classified?
As detectable and unknown
As malicious and robust
As divisive and destructive
As intentional and unintentional - correct answer-As intentional and
unintentional
, Why does an intrusion detection system (IDS) use a TAP or SPAN port to
analyze a copy of the inline traffic stream?
To ensure that inline network performance is not impacted
To act as a gatekeeper through which all network traffic must pass
To prevent damage to any packet data that is analyzed
To facilitate the storage and tracking of network packet data - correct
answer-To ensure that inline network performance is not impacted
What is a function of the bastion host in a screened subnet firewall
architecture?
To serve as the main point of contact for incoming connections
To protect the perimeter and internal networks from the internet
To perform most of the data packet filtering for the firewall
To define a clear boundary between trusted and untrusted domains -
correct answer-To serve as the main point of contact for incoming
connections
Which OSI model layer is responsible for the segment protocol data
unit?
Network
WITH 90 QUESTIONS AND ANSWERS 2026-
2027
How do virtual overlay networks function in relation to existing
network structures?
Provision and manage networks alongside other virtual resources
Link physical computers through secured wired connections
Establish a well-defined trusted domain barrier without multiple
firewalls
Interchange protocols among the application, transport, and network
layers - correct answer-Provision and manage networks alongside other
virtual resources
A network administrator designed a three-layer security system for the
network. An attack on the system has exploited a hole in the first layer
of the security system. Which layer does the attack face next?
Detection and response mechanisms
Preventative mechanisms
Recovery mechanisms
Encapsulation and encryption mechanisms - correct answer-Detection
and response mechanisms
,Which technique can a network administrator use to identify potential
weaknesses that would be accessible to a trusted network user?
Authenticated vulnerability scan
Network communication scan
Corrupted packet log scan
VNF service flooding scan - correct answer-Authenticated vulnerability
scan
Which tool can a developer use to ensure that the code loaded in the
VNF execution environment is authentic?
Secure Boot
OpenFlow
VNF Manager
Ruby vSphere - correct answer-Secure Boot
Which method improves network partitioning to reduce threat
effectiveness?
Physical segregation of hardware
Consolidation of controllers
,Merging of communication channels
Expanding demilitarized zones - correct answer-Physical segregation of
hardware
Which function does an intrusion prevention system (IPS) perform in a
network?
It scans for patterns that could be a threat and only alerts the
administrator via text message.
It scans for patterns that could be a threat and takes the configured
action against them.
It scans for threats, logs them as a nuisance, and then allows the traffic
through.
It scans for nonthreatening traffic and blocks all other traffic to a
network. - correct answer-It scans for patterns that could be a threat
and takes the configured action against them.
How are security threats that happen within a computer network
classified?
As detectable and unknown
As malicious and robust
As divisive and destructive
As intentional and unintentional - correct answer-As intentional and
unintentional
, Why does an intrusion detection system (IDS) use a TAP or SPAN port to
analyze a copy of the inline traffic stream?
To ensure that inline network performance is not impacted
To act as a gatekeeper through which all network traffic must pass
To prevent damage to any packet data that is analyzed
To facilitate the storage and tracking of network packet data - correct
answer-To ensure that inline network performance is not impacted
What is a function of the bastion host in a screened subnet firewall
architecture?
To serve as the main point of contact for incoming connections
To protect the perimeter and internal networks from the internet
To perform most of the data packet filtering for the firewall
To define a clear boundary between trusted and untrusted domains -
correct answer-To serve as the main point of contact for incoming
connections
Which OSI model layer is responsible for the segment protocol data
unit?
Network