โ† All CTE Flashcard Decks

Network Security & Protocols Flashcards

7 cards from real CTE practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Network Security & Protocols flashcards as text
  1. Which attack targets the SS7 (Signaling System 7) protocol to intercept SMS messages and track mobile subscriber locations?

    Answer: SS7 interception attack

    SS7 vulnerabilities allow attackers with network access to redirect calls, intercept SMS, and track device locations globally.

  2. In a telecom environment, what does 'lawful intercept' (LI) require from service providers?

    Answer: Providing government agencies with the ability to monitor specific communications under legal authority

    Lawful intercept mandates that carriers implement CALEA-compliant mechanisms to deliver targeted communications to authorized agencies.

  3. Which type of firewall tracks the state of active connections and makes filtering decisions based on connection context?

    Answer: Stateful inspection firewall

    Stateful inspection firewalls maintain a connection state table and validate packets against established session context.

  4. A network engineer implements rate limiting on SIP INVITE messages to protect against which type of VoIP attack?

    Answer: SIP INVITE flood (VoIP DoS)

    SIP INVITE floods overwhelm a VoIP server with call setup requests; rate limiting throttles excessive INVITEs to maintain service.

  5. What is the primary security advantage of using MPLS (Multiprotocol Label Switching) VPNs compared to the public internet?

    Answer: Traffic isolation through label-switched paths on a provider's private infrastructure

    MPLS VPNs provide traffic isolation through dedicated label-switched paths within the provider's network, reducing exposure to public internet threats.

  6. Which security framework specifically addresses telecommunications infrastructure protection and is referenced in US critical infrastructure standards?

    Answer: NIST CSF (Cybersecurity Framework)

    The NIST Cybersecurity Framework provides the identify-protect-detect-respond-recover model widely applied to US critical telecom infrastructure.

  7. What does 'micro-segmentation' achieve in a modern telecom data center or cloud environment?

    Answer: Creates granular security perimeters around individual workloads to limit lateral movement

    Micro-segmentation applies fine-grained policies at the workload level, containing breaches by preventing east-west lateral movement.