IST-266 TEST 3 STUDY GUIDE | 110 QUESTIONS AND ANSWERS | 2026 UPDATE | WITH
COMPLETE SOLUTIONS.
The standard TCP/IP protocol uses IP addresses which are how many bytes in length?
a. 4
b. 8
c. 16
d. 32 - (answer)a. 4
Behavior-based monitoring attempts to overcome the limitations of both anomaly-based monitoring
and signature-based monitoring by being more adaptive and proactive instead of reactive. -
(answer)True
An administrator has two servers that host the same web content, but only one server is utilized at a
given time. What can be configured to make use of both servers in a manner that is transparent to the
end users?
a. Load balancing
b. DNS caching
c. Stateful packet filtering
d. DNS poisoning - (answer)a. Load balancing
A web server must be accessible to untrusted outside users. What can be done to isolate this host and
any additional hosts with similar requirements from more secured hosts on a network?
a. Install a bastion, configure host
b. Configure a reduction point on a firewall
c. Create a DMZ, add necessary hosts.
,IST-266 TEST 3 STUDY GUIDE | 110 QUESTIONS AND ANSWERS | 2026 UPDATE | WITH
COMPLETE SOLUTIONS.
d. Set up a choke in front of the web server - (answer)c. Create a DMZ, add necessary hosts.
A firewall that keeps a record of the state of a connection between an internal computer and an
external device is using what technology below?
a. Stateless packet filtering
b. Stateful frame filtering
c. Stateless frame filtering
d. Stateful packet filtering - (answer)d. Stateful packet filtering
Select below the technology that can be used to examine content through application-level filtering:
a. Application gateway
b. Web security gateway
c. Security proxy
d. Firewall - (answer)b. Web security gateway
What is the name for a computer or application program that intercepts user requests from the internal
secure network and then processes that request on behalf of the user?
a. telnet server
b. VPN server
c. proxy server
d. DNS server - (answer)c. proxy server
, IST-266 TEST 3 STUDY GUIDE | 110 QUESTIONS AND ANSWERS | 2026 UPDATE | WITH
COMPLETE SOLUTIONS.
Which of the following is not a component of an IP packet that a firewall rule can use for filtering
purposes?
a. Source address
b. Intent
c. Destination port
d. Direction - (answer)b. Intent
What type of monitoring compares network traffic, activities, transactions, or behavior against a
database of known attack patterns?
a. Packet
b. Signature
c. Protocol
d. Application - (answer)b. Signature
Which network address below is not a private IP address network?
a. 10.4.5.0
b. 172.63.255.0
c. 172.17.16.0
d. 192.168.255.0 - (answer)b. 172.63.255.0
The OSI model breaks networking steps down into a series of six layers. - (answer)False
COMPLETE SOLUTIONS.
The standard TCP/IP protocol uses IP addresses which are how many bytes in length?
a. 4
b. 8
c. 16
d. 32 - (answer)a. 4
Behavior-based monitoring attempts to overcome the limitations of both anomaly-based monitoring
and signature-based monitoring by being more adaptive and proactive instead of reactive. -
(answer)True
An administrator has two servers that host the same web content, but only one server is utilized at a
given time. What can be configured to make use of both servers in a manner that is transparent to the
end users?
a. Load balancing
b. DNS caching
c. Stateful packet filtering
d. DNS poisoning - (answer)a. Load balancing
A web server must be accessible to untrusted outside users. What can be done to isolate this host and
any additional hosts with similar requirements from more secured hosts on a network?
a. Install a bastion, configure host
b. Configure a reduction point on a firewall
c. Create a DMZ, add necessary hosts.
,IST-266 TEST 3 STUDY GUIDE | 110 QUESTIONS AND ANSWERS | 2026 UPDATE | WITH
COMPLETE SOLUTIONS.
d. Set up a choke in front of the web server - (answer)c. Create a DMZ, add necessary hosts.
A firewall that keeps a record of the state of a connection between an internal computer and an
external device is using what technology below?
a. Stateless packet filtering
b. Stateful frame filtering
c. Stateless frame filtering
d. Stateful packet filtering - (answer)d. Stateful packet filtering
Select below the technology that can be used to examine content through application-level filtering:
a. Application gateway
b. Web security gateway
c. Security proxy
d. Firewall - (answer)b. Web security gateway
What is the name for a computer or application program that intercepts user requests from the internal
secure network and then processes that request on behalf of the user?
a. telnet server
b. VPN server
c. proxy server
d. DNS server - (answer)c. proxy server
, IST-266 TEST 3 STUDY GUIDE | 110 QUESTIONS AND ANSWERS | 2026 UPDATE | WITH
COMPLETE SOLUTIONS.
Which of the following is not a component of an IP packet that a firewall rule can use for filtering
purposes?
a. Source address
b. Intent
c. Destination port
d. Direction - (answer)b. Intent
What type of monitoring compares network traffic, activities, transactions, or behavior against a
database of known attack patterns?
a. Packet
b. Signature
c. Protocol
d. Application - (answer)b. Signature
Which network address below is not a private IP address network?
a. 10.4.5.0
b. 172.63.255.0
c. 172.17.16.0
d. 192.168.255.0 - (answer)b. 172.63.255.0
The OSI model breaks networking steps down into a series of six layers. - (answer)False