Network+ Network Security Flashcards
7 cards from real COMPTIA practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Network+ Network Security flashcards as text
What is the purpose of 802.1X port-based Network Access Control on a switch?
Answer: Require authentication before granting network access through a port
802.1X NAC blocks network access on a port until the connecting device or user successfully authenticates via an EAP method.
Which concept describes placing publicly accessible servers (like web and email servers) in a separate network segment isolated from the internal LAN?
Answer: DMZ (demilitarized zone)
A DMZ places public-facing servers between two firewalls so that if they are compromised, attackers cannot directly reach the internal network.
An employee receives an email that appears to come from IT support asking them to reset their password via an embedded link. What type of attack is this?
Answer: Spear phishing
Spear phishing is a targeted phishing attack customized for a specific individual or organization to increase the likelihood of success.
What does the term 'defense in depth' mean in network security?
Answer: Layering multiple security controls so that failure of one does not compromise the entire system
Defense in depth applies multiple overlapping security layers — perimeter, network, host, data — so an attacker must defeat each layer independently.
Which log source would a network administrator FIRST consult to detect unauthorized port scans against the network?
Answer: Firewall or IDS logs
Firewall and IDS logs capture connection attempts to closed ports, which is the telltale sign of a port scan.
What is the difference between an exploit and a vulnerability?
Answer: A vulnerability is a weakness; an exploit is the code or technique that takes advantage of it
A vulnerability is a flaw or weakness in a system; an exploit is the actual code, technique, or action that leverages that vulnerability to cause harm.
Which type of malware is specifically designed to remain hidden on a compromised system by modifying the OS kernel?
Answer: Rootkit
A rootkit modifies operating system components at the kernel or bootloader level to conceal itself and other malware from detection.