โ† All CCST Flashcard Decks

Network Security & Best Practices Flashcards

7 cards from real CCST practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Network Security & Best Practices flashcards as text
  1. Which type of IDS/IPS detection method identifies threats by comparing traffic against a database of known attack signatures?

    Answer: Signature-based detection

    Signature-based detection compares network traffic or file hashes against a database of known malware or attack patterns.

  2. A user reports receiving an email claiming to be from IT support asking for their password to resolve an account issue. What type of attack is this?

    Answer: Phishing

    Phishing is a social engineering attack using deceptive emails that appear legitimate to trick users into revealing sensitive information.

  3. Which Cisco IOS command prevents brute-force login attempts by blocking access after repeated failed logins?

    Answer: login block-for

    The 'login block-for' command temporarily blocks login attempts after a specified number of failures within a given time window.

  4. What is the key difference between a stateful firewall and a stateless (packet-filtering) firewall?

    Answer: Stateful firewalls track the state of active connections; stateless inspect each packet independently

    A stateful firewall maintains a connection state table and can make decisions based on the context of a session, while stateless filters treat each packet independently.

  5. Which wireless security protocol replaced WEP and is currently considered the strongest standard for enterprise Wi-Fi authentication?

    Answer: WPA3 Enterprise

    WPA3 Enterprise is the current strongest Wi-Fi security standard, offering 192-bit minimum encryption and improved authentication over WPA2.

  6. A network administrator wants to control which devices can connect to a specific switch port based on MAC addresses. Which feature should be configured?

    Answer: Port security

    Port security allows a switch port to be locked to specific MAC addresses, restricting which devices can connect to that port.

  7. What is the purpose of encryption 'at rest' versus encryption 'in transit'?

    Answer: At rest protects data stored on disks/media; in transit protects data moving across the network

    Encryption at rest protects stored data from unauthorized access, while encryption in transit protects data as it travels over the network.

Network Security & Best Practices Flashcards โ€” CCST Study Cards with Answers