โ† All CVSS Flashcard Decks

Network Security & Architecture Flashcards

6 cards from real CVSS practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 6 Network Security & Architecture flashcards as text
  1. What is the primary function of a firewall in network security?

    Answer: To monitor and control incoming and outgoing network traffic based on security rules

    A firewall monitors and controls network traffic based on predetermined security rules, acting as a barrier between trusted and untrusted networks.

  2. What is network segmentation and why is it important?

    Answer: Dividing a network into smaller segments to contain breaches and control access

    Network segmentation divides a network into isolated segments, limiting the spread of security breaches and providing granular access control.

  3. What does a VPN provide in terms of network security?

    Answer: Encrypted communication tunnels over public networks

    A VPN (Virtual Private Network) creates encrypted communication tunnels over public networks, protecting data confidentiality during transmission.

  4. What is the purpose of intrusion detection systems (IDS)?

    Answer: To monitor network traffic for suspicious activity and known threats

    IDS monitors network traffic for suspicious activity, known attack patterns, and policy violations, alerting administrators to potential security threats.

  5. What is the principle of least privilege in network security?

    Answer: Users should have only the minimum access needed to perform their job functions

    The principle of least privilege restricts user access to only the resources and permissions necessary for their specific job functions, minimizing potential damage from compromised accounts.

  6. What is a DMZ (Demilitarized Zone) in network architecture?

    Answer: A network segment between internal and external networks that hosts public-facing services

    A DMZ is a network segment that sits between the internal network and external networks, hosting public-facing services while protecting the internal network from direct exposure.