← All CISSP Flashcard Decks

Communication and Network Security Flashcards

7 cards from real CISSP practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Communication and Network Security flashcards as text
  1. Which VPN technology operates at Layer 2 and allows remote sites to appear as if they are on the same local network segment?

    Answer: MPLS L2VPN (VPLS)

    VPLS (Virtual Private LAN Service) is an MPLS-based L2VPN that bridges remote sites at Layer 2, making them appear as a single LAN.

  2. An organization wants to prevent employees from exfiltrating data via encrypted DNS tunnels. Which control is MOST effective?

    Answer: Deploy a recursive DNS resolver with anomaly detection for high-volume or large TXT record queries

    DNS tunneling detection relies on behavioral analysis—unusually high query volumes, large TXT records, and long subdomains—which a monitored internal resolver can identify.

  3. What is the key security advantage of using SNMPv3 over SNMPv2c for network device management?

    Answer: SNMPv3 provides authentication and encryption; SNMPv2c uses only community strings

    SNMPv3 adds USM (User-based Security Model) providing message authentication (HMAC-MD5/SHA) and encryption (AES), unlike SNMPv2c's cleartext community strings.

  4. A penetration tester uses a rogue AP broadcasting the same SSID as the corporate network to capture credentials. This attack is BEST described as:

    Answer: Evil twin attack

    An evil twin attack creates a fraudulent access point mimicking a legitimate SSID to intercept client connections and capture credentials.

  5. Which routing protocol security feature prevents unauthorized routers from injecting false routing information into an OSPF domain?

    Answer: OSPF MD5 or SHA authentication

    OSPF neighbor authentication (MD5 or SHA) requires routers to prove identity before exchanging routing updates, preventing rogue router injection.

  6. Under the OSI model, which layer is responsible for end-to-end error recovery and flow control between communicating hosts?

    Answer: Transport layer (Layer 4)

    The Transport layer (Layer 4) provides end-to-end error detection, retransmission, and flow control using protocols like TCP.

  7. Which attack targets the ARP table of hosts on a LAN to redirect traffic through an attacker's machine?

    Answer: ARP poisoning (ARP spoofing)

    ARP poisoning sends forged ARP replies to associate the attacker's MAC with a legitimate IP, causing victim hosts to send traffic to the attacker.