Network Security & Best Practices Flashcards
7 cards from real CCST practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Network Security & Best Practices flashcards as text
Which type of IDS/IPS detection method identifies threats by comparing traffic against a database of known attack signatures?
Answer: Signature-based detection
Signature-based detection compares network traffic or file hashes against a database of known malware or attack patterns.
A user reports receiving an email claiming to be from IT support asking for their password to resolve an account issue. What type of attack is this?
Answer: Phishing
Phishing is a social engineering attack using deceptive emails that appear legitimate to trick users into revealing sensitive information.
Which Cisco IOS command prevents brute-force login attempts by blocking access after repeated failed logins?
Answer: login block-for
The 'login block-for' command temporarily blocks login attempts after a specified number of failures within a given time window.
What is the key difference between a stateful firewall and a stateless (packet-filtering) firewall?
Answer: Stateful firewalls track the state of active connections; stateless inspect each packet independently
A stateful firewall maintains a connection state table and can make decisions based on the context of a session, while stateless filters treat each packet independently.
Which wireless security protocol replaced WEP and is currently considered the strongest standard for enterprise Wi-Fi authentication?
Answer: WPA3 Enterprise
WPA3 Enterprise is the current strongest Wi-Fi security standard, offering 192-bit minimum encryption and improved authentication over WPA2.
A network administrator wants to control which devices can connect to a specific switch port based on MAC addresses. Which feature should be configured?
Answer: Port security
Port security allows a switch port to be locked to specific MAC addresses, restricting which devices can connect to that port.
What is the purpose of encryption 'at rest' versus encryption 'in transit'?
Answer: At rest protects data stored on disks/media; in transit protects data moving across the network
Encryption at rest protects stored data from unauthorized access, while encryption in transit protects data as it travels over the network.