FINAL EXAM 2026 -2027 NEWEST VERSION
COMPLETE QUESTIONS AND CORRECT
DETAILED ANSWERS (RATIONALES)
VERIFIED 100% LATEST UPDATE !!!
What does the NTP monlist command do?
The NTP monlist command requests the NTP server to respond with a
list of up to 600 NTP client systems that have recently queried the
server.
Which statement is true regarding the Linux Iptables firewall?
A) A system with no configured output chain will allow all outbound
traffic.
B) Iptables supports INPUT, OUTPUT, and FORWARD tables.
C) Iptables supports FILTER, MANGLE, and NAT chains.
D) A system with no configured output chain will block all outbound
traffic.
A) A system with no configured output chain will allow all outbound
traffic.
,What is the name of the DNS TXT record that helps validate email to
verify whether it is sent from an authorized source based on authorized
IP addresses?
A) DomainKeys Identified Mail
B) Mailer Exchange
C) Sender Policy Framework
D) Host Info
C) Sender Policy Framework
,Which of the following is a recommended USB keyboard mitigation for
sites requiring high security?
A) Disable USB ports in the system.
B) Restrict USB devices with approved PIDs and VIDs.
C) Block the USB devices physically.
D) Restrict USB devices with approved user accounts.
C) Block the USB devices physically.
Which of the following Cisco IOS commands is used to shut the port
down automatically when the maximum number of MAC addresses is
exceeded?
A) switch port port-security violation shutdown
B) switch port port-security limit rate source-mac-shutdown
C) switch port port-security violation auto-shutdown
D) switch port port-security mac-exceed-port-shutdown
A) switch port port-security violation shutdown
, What is a common failing associated with focusing only on compliance-
drive security?
A) Compliance-driven security tends to focus only on hardening internal
systems.
B) Compliance-driven security tends to focus only on hardening the
perimeter.
C) Compliance-driven security tends to be costly in terms of solutions
and resources.
D) Compliance-driven security tends to fail in the face of a persistent
adversary.
D) Compliance-driven security tends to fail in the face of a persistent
adversary.