CISSP Official Practice Tests by Mike Chapple, David Seidl

(chelsyfait) #1

Chapter 9 ■ Practice Test 1 223



  1. Robert is the network administrator for a small business and recently installed a new
    firewall. After seeing signs of unusually heavy network traffic, he checked his intrusion
    detection system, which reported that a smurf attack was under way. What firewall
    configuration change can Robert make to most effectively prevent this attack?
    A. Block the source IP address of the attack.
    B. Block inbound UDP traffic.
    C. Block the destination IP address of the attack.
    D. Block inbound ICMP traffic.

  2. Which one of the following types of firewalls does not have the ability to track connection
    status between different packets?
    A. Stateful inspection
    B. Application proxy
    C. Packet filter
    D. Next generation

  3. Which of the following is used only to encrypt data in transit over a network and cannot
    be used to encrypt data at rest?
    A. TKIP
    B. AES
    C. 3DES
    D. RSA

  4. What type of fuzzing is known as intelligent fuzzing?


A. Zzuf
B. Mutation
C. Generational
D. Code based


  1. Matthew is experiencing issues with the quality of network service on his organization’s
    network. The primary symptom is that packets are occasionally taking too long to travel
    from their source to their destination. The length of this delay changes for individual
    packets. What term describes the issue Matthew is facing?
    A. Latency
    B. Jitter
    C. Packet loss
    D. Interference

  2. Which of the following multifactor authentication technologies provides both low manage-
    ment overhead and flexibility?
    A. Biometrics
    B. Software tokens
    C. Synchronous hardware tokens
    D. Asynchronous hardware tokens

Free download pdf