ASSESSMENT EXAM
QUESTIONS AND CORRECT DETAILED
ANSWERS
What includes interoperable modules used to orchestrate large pools of
computing, storage, and networking resources?
OpenStack
Network functions virtualization (NFV)
OpenFlow
Network functions virtualization infrastructure (NFVI) - ✔✔✔
Correct Answer > OpenStack
How do virtual overlay networks function in relation to existing network
structures?
Provision and manage networks alongside other virtual resources
Link physical computers through secured wired connections
Page 1 of 36
,Establish a well-defined trusted domain barrier without multiple firewalls
Interchange protocols among the application, transport, and network layers -
✔✔✔ Correct Answer > Provision and manage networks alongside other virtual
resources
A network administrator designed a three-layer security system for the network.
An attack on the system has exploited a hole in the first layer of the security
system. Which layer does the attack face next?
Detection and response mechanisms
Preventative mechanisms
Recovery mechanisms
Encapsulation and encryption mechanisms - ✔✔✔ Correct Answer >
Detection and response mechanisms
Which technique can a network administrator use to identify potential
weaknesses that would be accessible to a trusted network user?
Authenticated vulnerability scan
Network communication scan
Corrupted packet log scan
VNF service flooding scan - ✔✔✔ Correct Answer > Authenticated
vulnerability scan
Page 2 of 36
,Which tool can a developer use to ensure that the code loaded in the VNF
execution environment is authentic?
Secure Boot
OpenFlow
VNF Manager
Ruby vSphere - ✔✔✔ Correct Answer > Secure Boot
Which method improves network partitioning to reduce threat effectiveness?
Physical segregation of hardware
Consolidation of controllers
Merging of communication channels
Expanding demilitarized zones - ✔✔✔ Correct Answer > Physical segregation
of hardware
Which function does an intrusion prevention system (IPS) perform in a
network?
It scans for patterns that could be a threat and only alerts the administrator via
text message.
Page 3 of 36
, It scans for patterns that could be a threat and takes the configured action
against them.
It scans for threats, logs them as a nuisance, and then allows the traffic through.
It scans for nonthreatening traffic and blocks all other traffic to a network. -
✔✔✔ Correct Answer > It scans for patterns that could be a threat and takes the
configured action against them.
How are security threats that happen within a computer network classified?
As detectable and unknown
As malicious and robust
As divisive and destructive
As intentional and unintentional - ✔✔✔ Correct Answer > As intentional and
unintentional
Why does an intrusion detection system (IDS) use a TAP or SPAN port to
analyze a copy of the inline traffic stream?
To ensure that inline network performance is not impacted
To act as a gatekeeper through which all network traffic must pass
To prevent damage to any packet data that is analyzed
To facilitate the storage and tracking of network packet data -
Page 4 of 36