Tüm alıştırma soruları
2237 soru
A network technician connects a new workstation to Port 4 on a Layer 2 switch. Port 4 is configured as an access port in VLAN 30. The workstation immediately sends a broadcast ARP request to discover its default gateway. The switch currently has active access ports in VLAN 10 and VLAN 30, as well as an 802.1Q trunk port carrying both VLANs (with VLAN 1 as the native VLAN). Which of the following actions will the switch take upon receiving this frame?
A network engineer is documenting network protocol stack operations for a technical audit. Match each OSI model layer listed on the left to its corresponding primary functional responsibility on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A network administrator is designing a WAN architecture to connect 12 remote branch offices directly back to a central headquarters location. The business requirements mandate centralized security inspection at headquarters, minimal WAN link provisioning costs, and simple routing administration. Direct inter-branch communication is not required. Which topology best satisfies these requirements?
A network security administrator is configuring centralized event collection and device monitoring across enterprise infrastructure. Match each network logging, monitoring, or auditing mechanism on the left with its defining operational characteristic or security control capability on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
An organization's security policy mandates centralized access control for managing network hardware via CLI. The policy specifically requires that individual commands executed during an administrative session must be authorized separately on a per-user basis, and that all payload data exchanged between the network switches and the AAA server must be fully encrypted. Which security protocol should the administrator implement to meet these requirements?
An enterprise network security engineer is evaluating the deployment of a passive Network Intrusion Detection System (NIDS) connected via a switch SPAN port versus an inline Network Intrusion Prevention System (NIPS) placed at the perimeter firewall interface. Which of the following statements accurately describe the operational trade-offs and functional behaviors of these two implementations? (Select TWO.)
Geçerli olan tümünü seçin
A network administrator needs to update the firmware on 50 wireless access points deployed across a large corporate campus. To mitigate the risk of widespread network downtime in the event that the new firmware introduces instability, which of the following patch deployment strategies should the administrator implement?
A security team is evaluating the operational differences between placing a Network Intrusion Detection System (NIDS) passively via a switch SPAN port versus deploying a Network Intrusion Prevention System (NIPS) inline. Which of the following statements accurately describe these deployment models? (Select TWO.)
Geçerli olan tümünü seçin
A network administrator must update network device telemetry and event logging configurations across core switches to satisfy a new security audit mandate. The compliance policy requires log transport reliability during network congestion, cryptographic encryption for audit log traffic, and payload-level encryption for SNMP polling queries. Which TWO of the following implementation steps should the administrator execute to satisfy these audit requirements?
Geçerli olan tümünü seçin
A network technician is deploying a pair of redundant routers to provide seamless default gateway redundancy for a local user subnet. Which TWO of the following steps are required to ensure hosts maintain uninterrupted default gateway access during a router failure?
Geçerli olan tümünü seçin
A network administrator is implementing Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) for corporate wireless client authentication. Which of the following components are required to successfully establish mutual authentication using EAP-TLS? (Select TWO)
Geçerli olan tümünü seçin
An organization plans to update the firmware on its primary network security appliances during an upcoming maintenance window. To ensure system operations can be restored promptly if the new firmware encounters a critical fault, which of the following actions should be completed immediately before starting the installation?
Match each enterprise high-availability mechanism on the left with its corresponding operational function on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
An enterprise network administrator is deploying a site-to-site IPsec VPN between a corporate headquarters and a remote branch office. The branch office router is positioned behind a service provider gateway performing Port Address Translation (PAT). Diagnostic logs confirm that Phase 1 (IKE) authentication succeeds over UDP port 500. However, Phase 2 fails to establish a functional data tunnel. Further analysis reveals that the security policy is configured to use IPsec Authentication Header (AH) in tunnel mode. Which of the following root causes best explains why the IPsec VPN tunnel fails to operate across the PAT gateway?
A network security team is deploying an 802.1X port-based network access control framework across enterprise Ethernet switches. Which of the following statements accurately describe the operational roles and protocol encapsulation methods defined in this framework? (Select TWO)
Geçerli olan tümünü seçin
An enterprise network analyst observes that unicast frames intended exclusively for a secure file server are suddenly being received by all host interfaces connected to the same switch module. A review of the switch diagnostics reveals that the switch's MAC address table is entirely saturated with thousands of randomized, fake source MAC addresses. As a result, new frame forwarding defaults to broadcasting across all ports within the VLAN. Which of the following attack types has occurred, and what is its operational objective?
Match each physical security or environmental control mechanism to its primary function in a network facility.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A network engineer is establishing physical and environmental controls for a newly constructed remote edge data facility. To prevent hardware failure from static accumulation, moisture buildup, and inefficient thermal distribution, which TWO of the following environmental deployment strategies should be implemented? (Select TWO.)
Geçerli olan tümünü seçin
A network security team is auditing remote access infrastructure and site-to-site connectivity parameters across an enterprise environment. Match each remote access or tunneling mechanism on the left with its corresponding technical encapsulation and operational characteristic on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A financial institution requires a technical solution for transmitting executive financial reports across an internal network. The solution must guarantee that the recipient can verify the document was not altered in transit and prove conclusively which executive authored the document. Which of the following combinations of security principles and mechanisms best addresses these requirements?