MCQ Collection
Network Security MCQs
Network Security MCQs covering firewalls, attacks, protocols, and secure communication.
Choose an option to check your answer.
A.
identifies known threats using predefined patterns or signatures
B.
requires no updates ever
C.
uses only random guessing
D.
detects every unknown attack perfectly
Show Answer
Correct Answer: D. detects every unknown attack perfectly
Explanation:
The misconception is "detects every unknown attack perfectly"; in reality, Signature-based detection identifies known threats using predefined patterns or signatures.
Choose an option to check your answer.
A.
stores firewall rules only
B.
replaces network switches
C.
encrypts all web sessions by default
D.
translates human-readable domain names into IP addresses
Show Answer
Correct Answer: D. translates human-readable domain names into IP addresses
Explanation:
The correct answer is that DNS translates human-readable domain names into IP addresses.
Choose an option to check your answer.
A.
cannot apply protocol-specific policy
B.
acts as an intermediary and can inspect application-layer communication
C.
is the same as a copper cable
D.
works only at the physical layer
Show Answer
Correct Answer: D. works only at the physical layer
Explanation:
The misconception is "works only at the physical layer"; in reality, Application proxy firewall acts as an intermediary and can inspect application-layer communication.
Choose an option to check your answer.
A.
identifies known threats using predefined patterns or signatures
B.
is the same as encryption
C.
uses only random guessing
D.
detects every unknown attack perfectly
Show Answer
Correct Answer: A. identifies known threats using predefined patterns or signatures
Explanation:
The correct answer is that Signature-based detection identifies known threats using predefined patterns or signatures.
Choose an option to check your answer.
A.
inserts false DNS data into a resolver cache to redirect users
B.
is required by DNSSEC
C.
strengthens DNS integrity
D.
only improves lookup speed safely
Show Answer
Correct Answer: A. inserts false DNS data into a resolver cache to redirect users
Explanation:
The correct answer is that DNS cache poisoning inserts false DNS data into a resolver cache to redirect users.
Choose an option to check your answer.
A.
acts as an intermediary and can inspect application-layer communication
B.
works only at the physical layer
C.
cannot apply protocol-specific policy
D.
is used to power wireless antennas
Show Answer
Correct Answer: A. acts as an intermediary and can inspect application-layer communication
Explanation:
The correct answer is that Application proxy firewall acts as an intermediary and can inspect application-layer communication.
Choose an option to check your answer.
A.
cannot learn baselines
B.
matches only exact known signatures
C.
looks for deviations from normal behavior that may indicate attacks
D.
is used only for cable testing
Show Answer
Correct Answer: C. looks for deviations from normal behavior that may indicate attacks
Explanation:
The correct answer is that Anomaly-based detection looks for deviations from normal behavior that may indicate attacks.
Choose an option to check your answer.
A.
inserts false DNS data into a resolver cache to redirect users
B.
is required by DNSSEC
C.
is an antivirus update
D.
only improves lookup speed safely
Show Answer
Correct Answer: A. inserts false DNS data into a resolver cache to redirect users
Explanation:
DNS cache poisoning is best described as something that inserts false DNS data into a resolver cache to redirect users.
Choose an option to check your answer.
A.
assigns IP addresses
B.
monitors network or host activity and generates alerts for suspicious behavior
C.
always blocks traffic automatically
D.
is only a backup storage device
Show Answer
Correct Answer: B. monitors network or host activity and generates alerts for suspicious behavior
Explanation:
The correct answer is that IDS monitors network or host activity and generates alerts for suspicious behavior.
Choose an option to check your answer.
A.
looks for deviations from normal behavior that may indicate attacks
B.
is used only for cable testing
C.
cannot learn baselines
D.
means deleting all logs
Show Answer
Correct Answer: A. looks for deviations from normal behavior that may indicate attacks
Explanation:
Anomaly-based detection is best described as something that looks for deviations from normal behavior that may indicate attacks.
Choose an option to check your answer.
A.
is an antivirus update
B.
only improves lookup speed safely
C.
is required by DNSSEC
D.
inserts false DNS data into a resolver cache to redirect users
Show Answer
Correct Answer: D. inserts false DNS data into a resolver cache to redirect users
Explanation:
This is correct because DNS cache poisoning inserts false DNS data into a resolver cache to redirect users.
Choose an option to check your answer.
A.
monitors network or host activity and generates alerts for suspicious behavior
B.
is only a backup storage device
C.
replaces user training
D.
assigns IP addresses
Show Answer
Correct Answer: A. monitors network or host activity and generates alerts for suspicious behavior
Explanation:
IDS is best described as something that monitors network or host activity and generates alerts for suspicious behavior.