Network Security
427 questions
A network security team is auditing remote access infrastructure and site-to-site connectivity parameters across an enterprise environment. Match each remote access or tunneling mechanism on the left with its corresponding technical encapsulation and operational characteristic on the right.
Click a left item, then click its matching right item
Items
Matches
A financial institution requires a technical solution for transmitting executive financial reports across an internal network. The solution must guarantee that the recipient can verify the document was not altered in transit and prove conclusively which executive authored the document. Which of the following combinations of security principles and mechanisms best addresses these requirements?
A network administrator is configuring a public Wi-Fi network for a city airport terminal. Corporate policy mandates that passenger data transmitted over the wireless medium must be encrypted individually per session to prevent passive eavesdropping, but the system must not require user registration, passwords, or authentication credentials. Which wireless security standard or feature should the administrator implement?
A network security administrator is constructing a top-to-bottom Cisco IPv4 extended Access Control List (ACL) on a router interface to filter traffic moving from an internal administration subnet toward a datacenter network. Arrange the following ACL statements in the correct evaluation order from top (first statement) to bottom (last statement) so that specific security exceptions are honored without rule shadowing or unintended traffic blockage.
Drag items to arrange them in the correct order
During an incident investigation on an enterprise local area network, a network administrator notices that a host workstation is sending traffic intended for the default gateway (192.168.1.1) to an unassigned MAC address (00:11:22:33:44:55) on the local switch port. Packet captures reveal unsolicited Address Resolution Protocol responses continuously mapping the gateway's IP address to the attacker's MAC address. Which of the following attack types is actively occurring on this network segment?
During a network security audit, a security analyst identifies an ongoing Man-in-the-Middle (MitM) attack occurring within a local Ethernet switch segment. Packet captures reveal that workstation ARP tables are incorrectly binding the default gateway's IP address to an unauthorized endpoint's MAC address. Which of the following technical mechanisms or indicators are directly associated with this attack vector? (Select TWO.)
Select all that apply
An enterprise network administrator notices that wireless clients in a branch office are repeatedly disconnected from the secure corporate Wi-Fi network. Subsequent packet analysis reveals a stream of spoofed 802.11 management frames instructing host devices to sever their existing wireless associations, followed immediately by hosts connecting to an unauthorized access point operating on a higher-power channel while broadcasting the identical corporate Service Set Identifier (SSID). Which network attack vector is being executed?