2026 FINAL ASSESSMENT EXAM
◉ A device designed to forward data packets between networks is
called: Answer: Router
◉ Allowing a connection through a firewall is known as creating:
Answer: Exception
◉ A network device designed for managing the optimal distribution
of workloads across multiple computing resources is called: Answer:
Load Balancer
◉ The last default rule on a firewall is to deny all traffic. Answer:
True
◉ A computer network service that allows clients to make indirect
network connections to other network services is called: Answer:
Proxy
◉ Which of the terms listed below refers to a security solution
implemented on an individual computer host monitoring that
specific system for malicious activities or policy violations? Answer:
HIDS (Host-based Intrusion Detection System)
,◉ One of the measures for securing networking devices includes the
practice of disabling unused ports. Answer: True
◉ Which of the following ensures the privacy of a VPN connection?
Answer: Tunneling
◉ Which of the following answers refers to a dedicated device for
managing secure connections established over an untrusted
network, such as the Internet? Answer: Layer 3 Switch
◉ Which of the following acronyms refers to a network or host
based monitoring system designed to automatically alert
administrators of known or suspected unauthorized activity?
Answer: IDS (Intrusion Detection System)
◉ A software tool used for monitoring and examining contents of
the network traffic is known as: Answer: Packet Sniffer
◉ Which of the following answers list the protocol and port number
used by a spam filter? (Select 2 answers) Answer: SMTP (Simple
Mail Transfer Protocol)
Port Number: 25, 2525, or 587
,◉ Which of the following acronyms refers to a network security
solution combining the functionality of a firewall with additional
safeguards such as URL filtering, content inspection, or malware
inspection? Answer: UTM
◉ URL filtering restricts access to Internet sites based on which of
the following criteria? Answer: Web Address
◉ Which of the following network security solutions inspects
network traffic in real-time and has the capability to stop the
ongoing attack? Answer: NIPS (Network-Based Intrusion Prevention
System)
◉ Which of the following acronyms refers to a firewall controlling
access to a web server? Answer: WAF (Web Application Firewall)
◉ Which of the answers listed below refers to a set of rules that
specify which users or system processes are granted access to
objects as well as what operations are allowed on a given object?
Answer: ACL (Access Control List)
◉ Which of the following actions can be taken by passive IDS?
(Select 2 answers) Answer: Logging and Sending an Alert
, ◉ 802.1x is an IEEE standard defining: Answer: Port-Based Network
Access Control
◉ An access control model in which access to resources is granted or
denied depending on Access Control List (ACL) entries is also known
as: Answer: Rule-Based Access Control
◉ A type of Intrusion Detection System (IDS) that relies on the
previously established baseline of normal network activity in order
to detect intrusions is known as a signature-based IDS. Answer:
False
◉ Which of the following security solutions provides a
countermeasure against denial-of-service attack characterized by
increasing number of half-open connections? Answer: Flood Guard
◉ Which of the protocols listed below protects against switching
loops? Answer: STP (Spanning Tree Protocol)
◉ A type of Intrusion Detection System (IDS) that relies on known
attack patterns to detect an intrusion is known as a signature-based
IDS. Answer: True
◉ Which of the following policies applies to any requests that fall
outside the criteria defined in an ACL? Answer: Implicit Deny Policy