Network Security Fundamentals Flashcards
7 cards from real CAP practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Network Security Fundamentals flashcards as text
A CAP practitioner is reviewing a system's network controls. Which document would define the boundary of the information system including all hardware and network components within scope?
Answer: System Security Plan (SSP)
The System Security Plan (SSP) defines the authorization boundary, describing all hardware, software, and network components included in the system.
What type of network attack floods a switch's MAC address table to cause it to behave like a hub, broadcasting all frames?
Answer: MAC Flooding
MAC flooding overflows a switch's CAM table with fake MAC addresses, causing the switch to broadcast traffic to all ports, enabling sniffing.
Which DNS security extension helps prevent DNS cache poisoning by digitally signing DNS records?
Answer: DNSSEC
DNSSEC uses cryptographic signatures to verify the authenticity and integrity of DNS responses, preventing cache poisoning attacks.
In network security, what is the function of a proxy server used as a reverse proxy?
Answer: Receives external client requests and forwards them to internal servers, hiding server identity
A reverse proxy sits in front of internal servers, receiving external requests and forwarding them internally, masking server details and adding a security layer.
Which network monitoring approach captures every packet on the wire for deep analysis but requires significant storage?
Answer: Full packet capture (PCAP)
Full packet capture (PCAP) records every byte of every packet, enabling forensic-level analysis but consuming very large amounts of storage.
What is the key security risk associated with split tunneling in a VPN configuration?
Answer: It allows traffic to bypass corporate security controls by routing some traffic outside the VPN
Split tunneling routes only some traffic through the VPN while other traffic goes directly to the internet, potentially bypassing corporate security inspection.
Which NIST publication provides guidance specifically on network security for federal information systems?
Answer: NIST SP 800-41
NIST SP 800-41 provides guidelines on firewalls and firewall policy, covering network security for federal information systems.