Free Practice Quiz Question List

5 Network Security Online Quiz Questions

Use this free practice quiz with 20 questions to review 5 Network Security, test your knowledge, and prepare for your next test or exam.

20 questions
01
True or false
1 point

A user is connected to the corporate network. Under a zero-trust approach, should that network location alone be enough to grant access to a sensitive service?

  1. A

    True

  2. B

    False

02
True or false
1 point

A correctly encrypted connection can still involve a compromised endpoint. Does encryption alone make that endpoint secure?

  1. A

    True

  2. B

    False

03
Written response
1 point

What is the standard acronym for DNS over TLS, the method that encrypts the client-to-resolver DNS exchange using TLS?

04
Fill in the blank
1 point

To make a firewall rule specific, document its source, destination, service, and .

05
Choose one
1 point

A company needs to protect IP traffic between two security gateways for a VPN. Which protocol is designed to protect traffic at the network layer?

  1. A

    SSH

  2. B

    IPsec

  3. C

    SNMPv3

  4. D

    DNS over HTTPS

06
Choose one
1 point

A network team needs a management protocol that supports authentication and encryption options. Which protocol best fits this requirement?

  1. A

    Traditional DNS

  2. B

    UDP

  3. C

    SNMPv3

  4. D

    HTTP

07
Written response
1 point

What is the name of the practice of dividing a network into separate zones and controlling communication between them?

08
Fill in the blank
1 point

As part of network monitoring, watch for unexpected traffic or .

09
Choose one
1 point

A public website needs to access a database. Which firewall policy best limits exposure while allowing the required service to work?

  1. A

    Allow both the web server and database to accept connections directly from any Internet address.

  2. B

    Allow HTTPS from the Internet to the web server, and allow the database to accept connections only from that web server.

  3. C

    Allow all traffic between the Internet and the internal network, then rely on monitoring to identify misuse.

  4. D

    Block all connections to the web server and database, including the web server's connection to the database.

10
Choose all
1 point

A company is designing remote access for administrators. Select all practices that support secure remote access.

  1. A

    Use an approved VPN or other protected access method.

  2. B

    Require strong authentication.

  3. C

    Limit remote users to the permissions they need.

  4. D

    Expose device administration directly to the Internet for convenience.

  5. E

    Grant every remote user unrestricted access once authenticated.

11
Choose all
1 point

Select all statements that correctly describe DNS over TLS (DoT) and DNS over HTTPS (DoH).

  1. A

    DNS over TLS encrypts the client-to-resolver exchange.

  2. B

    DNS over HTTPS encrypts the client-to-resolver exchange.

  3. C

    Either protocol hides all network metadata from every observer.

  4. D

    Either protocol guarantees that the requested destination is safe.

12
Choose one
1 point

An administrator connects to a server using SSH. What should the administrator verify to help confirm the identity of the remote host?

  1. A

    A certificate that proves the user's device has no malware.

  2. B

    The remote host's key, which helps verify the identity of the host.

  3. C

    A DNS response that guarantees the server is trustworthy.

  4. D

    A firewall rule that automatically authenticates every SSH user.

13
Open ended
1 point

An organization wants to reduce the impact of a network intrusion even if one security control fails. Describe a coordinated set of network-defense practices and explain how the practices work together to limit or detect the intrusion.

14
True or false
1 point

A network application uses IP and TCP to send data. Do those protocols, by themselves, encrypt or authenticate the communication?

  1. A

    True

  2. B

    False

15
Choose one
1 point

A packet needs to travel from a device on one network to a server on a different network. Which device type forwards the packet between those networks?

  1. A

    A router

  2. B

    A switch

  3. C

    A host-based firewall

  4. D

    A DNS resolver

16
Choose one
1 point

A network administrator wants a firewall to recognize whether packets belong to an already established connection. Which firewall capability is needed?

  1. A

    Filtering only by fixed addresses and ports

  2. B

    Tracking connection state

  3. C

    Translating names into network information

  4. D

    Connecting devices within a local network

17
Choose one
1 point

An administrator needs a protocol for securely administering a server remotely and transferring a file to it. Which protocol best fits this use?

  1. A

    DNS

  2. B

    IP

  3. C

    SSH

  4. D

    UDP

18
Choose one
1 point

A server needs its own traffic control, including when its network location changes. Which firewall deployment places the control directly on that server?

  1. A

    A perimeter firewall appliance

  2. B

    A cloud firewall control

  3. C

    A router access-control list

  4. D

    A software firewall on the server

19
Written response
1 point

A browser communicates with a website using HTTP carried over Transport Layer Security. What is the name of this protocol?

20
Written response
1 point

Before redesigning network traffic controls, a team needs to identify the devices, services, and communication paths that already exist. What planning activity should it perform?