Tüm alıştırma soruları
2237 soru
A network security engineer is designing an intrusion prevention architecture for a high-frequency trading firm's REST API gateway. The gateway receives TLS 1.3 encrypted HTTP/2 traffic routed asymmetrically across dual active-active Internet edge links. The firm requires active, real-time blocking of unknown zero-day application exploits, strict adherence to sub-millisecond added network latency limits (), and complete protection against session dropping caused by asymmetric TCP packet paths. Which deployment model and inspection mechanism best fulfills all system requirements?
A network security engineer configures an extended stateless IPv4 Access Control List (ACL) applied inbound on a perimeter router interface (`GigabitEthernet0/1`) to filter incoming Internet traffic. The ACL contains the following sequential rules:
- Rule 10: `permit tcp any eq 443 192.168.50.0 0.0.0.255 established`
- Rule 20: `permit tcp any host 192.168.50.10 eq 443`
- Rule 30: `permit udp 192.168.50.0 0.0.0.255 eq 53 any`
An external host with IP address sends an unsolicited TCP SYN packet (initial connection request) with source port to an internal host at on destination port .
Which action does the router take when processing this incoming TCP SYN packet?
An enterprise network engineer is analyzing performance degradation across a site-to-site WAN link supporting real-time voice traffic. Network monitoring shows low overall latency, but voice quality suffers from audio artifacts caused by uneven packet delivery intervals. Additionally, organization compliance policies mandate that device metrics gathered from edge routers must support user authentication and payload encryption. Which TWO of the following metrics or protocol configurations should the engineer implement to address these requirements? (Select TWO)
Geçerli olan tümünü seçin
During an approved maintenance window, a network engineering team applies a critical software update to an enterprise SD-WAN orchestrator cluster. During post-implementation validation, monitoring systems alert that multiple IPsec tunnels to remote branch sites are experiencing severe degradation and packet drop. With only 10 minutes remaining in the maintenance window and no immediate root cause identified, which of the following is the most appropriate action for the team to execute?
A network security administrator is mapping enterprise authentication protocols and frameworks to their core operational characteristics. Match each authentication protocol or framework on the left with its correct operational description on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
Following a critical vulnerability advisory affecting an enterprise syslog management server, a network operations administrator is scheduled to deploy a vendor-provided operating system hotfix. To follow proper change management procedures and minimize operational downtime during deployment, which step should the administrator execute before installing the patch in production?
Match each network performance metric on the left with its corresponding definition on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
Place the standard stages of an enterprise network change management workflow in the correct chronological order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
A network technician is documenting security controls across an enterprise network infrastructure. Match each intrusion detection or prevention system deployment on the left with its defining operational capability or structural characteristic on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A network administrator is establishing performance monitoring on core network equipment and must satisfy a corporate security compliance policy requiring both cryptographic authentication and payload encryption for all device status polling. Which SNMP configuration mode must be implemented on the network devices to meet these requirements?
A network administrator configures a standard router Access Control List (ACL) to permit web traffic to an internal server. After applying the rule, the administrator observes that all other inbound network traffic to that interface is blocked, even though no specific deny statements were explicitly written. Which of the following explains this behavior?
An enterprise network security administrator is establishing a secure procedure for receiving automated network device configuration updates from third-party vendor systems over an open network. The security policy dictates that the system must guarantee the configuration payload has not been modified during transmission and must also ensure that the vendor cannot deny having created and sent the specific configuration update. Which of the following mechanisms best fulfills both of these security requirements?
A network administrator is deploying a centralized authentication mechanism to manage administrative access to enterprise switches. The security policy mandates that every shell command executed by network personnel must be authorized on an individual, per-command basis, and all communication between the network switches and the AAA server must encrypt the entire packet body. Which protocol should the administrator implement to satisfy these requirements?
An enterprise network architect is evaluating security controls across a multi-tier network deployment. Match each technical implementation on the left with the core security principle or objective it primarily satisfies on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A network security analyst is investigating simultaneous security alerts on two separate VLANs within an enterprise network. On VLAN 20, client workstations attempting to reach the internal ERP server (10.20.4.50) present browser certificate warnings. Packet captures on VLAN 20 show a flood of unsolicited ARP responses associating the default gateway IP address (10.20.4.1) with the MAC address of an unrecognized host on the local segment. On VLAN 30, clients resolving the hostname erp.corporate.local receive IP address 198.51.100.44 (an external host) instead of 10.20.4.50. Packet captures on VLAN 30 reveal forged UDP port 53 responses arriving prior to replies from the legitimate internal DNS server, with no abnormal Layer 2 ARP activity detected. Which of the following correctly identifies the distinct attack vectors operating on VLAN 20 and VLAN 30, respectively?
A network administrator needs to collect baseline bandwidth utilization metrics from network switches across an enterprise subnet. Corporate security policy mandates that all monitoring traffic must support cryptographic authentication and data encryption. Which protocol version should the administrator configure to satisfy these security requirements?
A network administrator is preparing a Request for Change (RFC) to deploy a configuration change across several core switches during an upcoming maintenance window. To ensure business continuity in the event that the change causes unexpected network failure, which of the following is most critical to include in the RFC prior to execution?
A network security administrator is tasked with updating the network management baseline across all edge routers. The monitoring platform must collect hardware health parameters, such as CPU utilization and temperature metrics, while strictly enforcing packet payload encryption and cryptographic user authentication across the wire. Which configuration choice best satisfies these security and operational requirements?
A network operations team needs to remediate a high-severity vulnerability disclosed in the operating system of the organization's core network switches. Place the standard patch management lifecycle steps in the correct chronological order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator is preparing to update the operating system software across a fleet of centralized wireless LAN controllers (WLCs) managing access points across several corporate sites. Lab validation of the new firmware version has been successfully completed. To minimize operational risk and prevent widespread connectivity issues caused by undiscovered software bugs during full-scale rollout, which deployment strategy should the administrator implement next?