أمن الشبكات

اختبار الفصل ١

اختبار محاكي

Introduction to Network Security

٢٥ أسئلة · اختيار من متعدد، صح/خطأ، وتوصيل. أجب ثم اضغط «تسليم الاختبار».

  1. ١

    Network security is best defined as the protection of the networking infrastructure from:

  2. ٢

    Which CIA goal ensures data is real, accurate, and not altered, with a genuine source?

  3. ٣

    A breach with a 'severe or catastrophic adverse effect' is rated as which impact level?

  4. ٤

    In the OSI Security Architecture, a process designed to detect, prevent, or recover from an attack is a:

  5. ٥

    Which statement defines a PASSIVE attack?

  6. ٦

    Capturing a data unit and later retransmitting it to produce an unauthorized effect is called:

  7. ٧

    Which X.800 authentication service verifies the identity of a peer in an ongoing connection?

  8. ٨

    Protecting the source, destination, frequency, and length of traffic from observation is called:

  9. ٩

    Which integrity form assures a stream of messages has no duplication, insertion, modification, reordering, or replay?

  10. ١٠

    The availability service primarily addresses the concerns raised by which attack?

  11. ١١

    Confidentiality means making sure essential information reaches the right people and is kept from the wrong people.

  12. ١٢

    Accountability requires that an entity's actions can be traced uniquely to that entity.

  13. ١٣

    A passive attack alters system resources.

  14. ١٤

    Traffic analysis can extract useful information even when message contents are encrypted.

  15. ١٥

    A masquerade attack usually includes one of the other forms of active attack.

  16. ١٦

    For active attacks, the practical goal is detection and recovery rather than total prevention.

  17. ١٧

    Authentication decides what permissions a user has on a resource.

  18. ١٨

    Connectionless integrity generally protects only against message modification.

  19. ١٩

    Nonrepudiation lets the receiver prove the alleged sender actually sent the message.

  20. ٢٠

    Security is best added at the end of a project, since it rarely affects design.

  21. ٢١

    Match each CIA goal with its definition.

    • Confidentiality
    • Integrity
    • Availability

    الإجابات

  22. ٢٢

    Match each active attack with its description.

    • Masquerade
    • Replay
    • Modification
    • Denial of service

    الإجابات

  23. ٢٣

    Match each OSI concept with its definition.

    • Security attack
    • Security mechanism
    • Security service

    الإجابات

  24. ٢٤

    Match each X.800 service with what it provides.

    • Peer-entity authentication
    • Data-origin authentication
    • Access control
    • Nonrepudiation

    الإجابات

  25. ٢٥

    Match each concept with its category.

    • Release of message contents
    • Modification of messages
    • Connection-oriented integrity

    الإجابات

أجبت ٠ من ٢٥