Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

GSEC GIAC Security Essentials Study Guide 100% Correct Answers Verified Latest 2024 Version

Rating
-
Sold
-
Pages
38
Grade
A+
Uploaded on
05-07-2024
Written in
2023/2024

How many bits are in the NETWORK portion of the following address block: Address: 10.1.0.0 Subnet: 255.255.255.224 A. 27 B. 32 C. 24 D. 29 - A. 27 What class is the address 170.19.82.45? A. Class C B. Class A C. Class B D. Class D - C. Class B Which utility makes use of ICMP to function? A. traceroute B. whasup C. icmpstat D. netstat - A. traceroute In the network 192.168.5.0/23, what would be the broadcast address?A. 192.168.4.0 B. 192.168.1.0 C. 192.168.5.255 D. 192.168.255.255 - C. 192.168.5.255 In the address ab00:fc87:234a:0090:5120:ffab:bc8a:0098/23, what does the /23 indicate? A. The address of the router B. The number of bits in the network portion of the address C. The position in the address where the messages should be sent D. The host address - B. The number of bits in the network portion of the address With the following IP header, what is the destination IP address: 45 00 03 3D 1E EB D E8 C0 A8 01 16 AD C2 4B 67 A. 192.168.1.38 B. 173.195.74.108 C. 103.75.194.137 D. 173.194.75.103 - D. 173.194.75.103 If you see the IP address fe80::0050:8790:4554:2300/16, the :: indicates what? A. There are 0s between the ::. B. This is a delimiter between addresses. C. This indicates empty space. D. There are 1s between the ::. - A. There are 0s between the ::.What can you say about the following packet capture? 14:18:25.906002 .1000 : S :(0) win 4096 14:18:26.094731 .1000: S :(0) ack win 4096 14:18:26.172394 .1000 : R :(0) win 0 14:18:26.507560 .999 : S :(0) win 4096 14:18:26.694691 .999: S :(0) ack win 4096 14:18:26.775037 .999 : R :(0) win 0 14:18:26.775395 .999 : R :(0) win 0 14:18:27.174846 .998: S :(0) ack win 4096 A. This is a SYN flood. B. These are unexpected messages. C. This is a sequence numbe - C. This is a sequence number prediction attack. What is the order of messages in a three-way handshake? A. SYN, ACK, ACK B. SYN, SYN/ACK, ACK C. SYN/ACK, ACK, SYN D. ACK, SYN, ACK - B. SYN, SYN/ACK, ACK

Show more Read less
Institution
Course

Content preview

GSEC GIAC Security Essentials Study Guide
| 100% Correct Answers | Verified | Latest
2024 Version
How many bits are in the NETWORK portion of the following address block:

Address: 10.1.0.0

Subnet: 255.255.255.224



A. 27

B. 32

C. 24

D. 29 - ✔✔A. 27



What class is the address 170.19.82.45?



A. Class C

B. Class A

C. Class B

D. Class D - ✔✔C. Class B



Which utility makes use of ICMP to function?



A. traceroute

B. whasup

C. icmpstat

D. netstat - ✔✔A. traceroute



In the network 192.168.5.0/23, what would be the broadcast address?

,A. 192.168.4.0

B. 192.168.1.0

C. 192.168.5.255

D. 192.168.255.255 - ✔✔C. 192.168.5.255



In the address ab00:fc87:234a:0090:5120:ffab:bc8a:0098/23, what does the /23 indicate?



A. The address of the router

B. The number of bits in the network portion of the address

C. The position in the address where the messages should be sent

D. The host address - ✔✔B. The number of bits in the network portion of the address



With the following IP header, what is the destination IP address:

45 00 03 3D 1E EB 40 00 40 06 5D E8 C0 A8 01 16 AD C2 4B 67



A. 192.168.1.38

B. 173.195.74.108

C. 103.75.194.137

D. 173.194.75.103 - ✔✔D. 173.194.75.103



If you see the IP address fe80::0050:8790:4554:2300/16, the :: indicates what?



A. There are 0s between the ::.

B. This is a delimiter between addresses.

C. This indicates empty space.

D. There are 1s between the ::. - ✔✔A. There are 0s between the ::.

,What can you say about the following packet capture?

14:18:25.906002 apollo.it.luc.edu.1000 > x-terminal.shell: S

1382726990:1382726990(0) win 4096

14:18:26.094731 x-terminal.shell > apollo.it.luc.edu.1000: S

2021824000:2021824000(0) ack 1382726991 win 4096

14:18:26.172394 apollo.it.luc.edu.1000 > x-terminal.shell: R

1382726991:1382726991(0) win 0

14:18:26.507560 apollo.it.luc.edu.999 > x-terminal.shell: S

1382726991:1382726991(0) win 4096

14:18:26.694691 x-terminal.shell > apollo.it.luc.edu.999: S

2021952000:2021952000(0) ack 1382726992 win 4096

14:18:26.775037 apollo.it.luc.edu.999 > x-terminal.shell: R

1382726992:1382726992(0) win 0

14:18:26.775395 apollo.it.luc.edu.999 > x-terminal.shell: R

1382726992:1382726992(0) win 0

14:18:27.174846 x-terminal.shell > apollo.it.luc.edu.998: S

2022080000:2022080000(0) ack 1382726993 win 4096



A. This is a SYN flood.

B. These are unexpected messages.

C. This is a sequence numbe - ✔✔C. This is a sequence number prediction attack.



What is the order of messages in a three-way handshake?



A. SYN, ACK, ACK

B. SYN, SYN/ACK, ACK

C. SYN/ACK, ACK, SYN

D. ACK, SYN, ACK - ✔✔B. SYN, SYN/ACK, ACK

, Which of the following is a private address (RFC1918)?



A. 1.1.1.1

B. 192.192.192.1

C. 10.45.60.10

D. 128.15.29.0 - ✔✔C. 10.45.60.10



A good example of a network using a mesh topology is:



A. The Internet

B. A bus network

C. Switched networks

D. Hybrid networks - ✔✔A. The Internet



This type of routing protocol uses the same algorithm as the navigation system in your car.



A. RIP

B. Border routing

C. Distance vector

D. Link-state - ✔✔D. Link-state



Your IDS sends an alert about an incident on your network. The alert indicated that there was a packet
that had the same source and destination. This might normally indicate an attempt at a Land attack,
which is a very old attack. After investigating, you see that the source address is 0.0.0.0 and the
destination is 224.0.0.1. What would you consider this alert to be?



A. A false negative

B. A false positive

C. A true negative

D. A true positive - ✔✔B. A false positive

Written for

Course

Document information

Uploaded on
July 5, 2024
Number of pages
38
Written in
2023/2024
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$8.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller
Seller avatar
hussle

Get to know the seller

Seller avatar
hussle Harvard College
Follow You need to be logged in order to follow users or courses
Sold
1
Member since
1 year
Number of followers
1
Documents
1635
Last sold
1 year ago
A+ ExamPrep Essentials

Explore my collection of high quality study guides and exam prep materials. Whether you\\\'re striving for top grades or looking to understand complex topics better, I provide: .Detailed Study Guide .Exam-ready notes .practice Tests .Subject coverage

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions