Network Security & Protocols Flashcards
7 cards from real CTE practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Network Security & Protocols flashcards as text
Which attack targets the SS7 (Signaling System 7) protocol to intercept SMS messages and track mobile subscriber locations?
Answer: SS7 interception attack
SS7 vulnerabilities allow attackers with network access to redirect calls, intercept SMS, and track device locations globally.
In a telecom environment, what does 'lawful intercept' (LI) require from service providers?
Answer: Providing government agencies with the ability to monitor specific communications under legal authority
Lawful intercept mandates that carriers implement CALEA-compliant mechanisms to deliver targeted communications to authorized agencies.
Which type of firewall tracks the state of active connections and makes filtering decisions based on connection context?
Answer: Stateful inspection firewall
Stateful inspection firewalls maintain a connection state table and validate packets against established session context.
A network engineer implements rate limiting on SIP INVITE messages to protect against which type of VoIP attack?
Answer: SIP INVITE flood (VoIP DoS)
SIP INVITE floods overwhelm a VoIP server with call setup requests; rate limiting throttles excessive INVITEs to maintain service.
What is the primary security advantage of using MPLS (Multiprotocol Label Switching) VPNs compared to the public internet?
Answer: Traffic isolation through label-switched paths on a provider's private infrastructure
MPLS VPNs provide traffic isolation through dedicated label-switched paths within the provider's network, reducing exposure to public internet threats.
Which security framework specifically addresses telecommunications infrastructure protection and is referenced in US critical infrastructure standards?
Answer: NIST CSF (Cybersecurity Framework)
The NIST Cybersecurity Framework provides the identify-protect-detect-respond-recover model widely applied to US critical telecom infrastructure.
What does 'micro-segmentation' achieve in a modern telecom data center or cloud environment?
Answer: Creates granular security perimeters around individual workloads to limit lateral movement
Micro-segmentation applies fine-grained policies at the workload level, containing breaches by preventing east-west lateral movement.