MCQ Collection
Network Security MCQs
Network Security MCQs covering firewalls, attacks, protocols, and secure communication.
Choose an option to check your answer.
A.
is a malware packing technique
B.
restricts which MAC addresses can use a switch port
C.
replaces all firewalls
D.
allows unlimited unknown devices
Show Answer
Correct Answer: B. restricts which MAC addresses can use a switch port
Explanation:
The correct answer is that Port security restricts which MAC addresses can use a switch port.
Choose an option to check your answer.
A.
uses modern SAE authentication
B.
prevents IV reuse fully
C.
is stronger than WPA3 by design
D.
is an older wireless security protocol considered weak and unsuitable for modern protection
Show Answer
Correct Answer: D. is an older wireless security protocol considered weak and unsuitable for modern protection
Explanation:
The correct answer is that WEP is an older wireless security protocol considered weak and unsuitable for modern protection.
Choose an option to check your answer.
A.
cannot affect enterprise networks
B.
is an unauthorized access point connected to or imitating a trusted network
C.
is a type of VPN tunnel
D.
is always owned by the security team
Show Answer
Correct Answer: B. is an unauthorized access point connected to or imitating a trusted network
Explanation:
Wireless rogue access point is best described as something that is an unauthorized access point connected to or imitating a trusted network.
Choose an option to check your answer.
A.
is a malware analysis tool
B.
is a wireless antenna type
C.
is a password hashing scheme
D.
logically segments a switched network into separate broadcast domains
Show Answer
Correct Answer: D. logically segments a switched network into separate broadcast domains
Explanation:
The correct answer is that VLAN logically segments a switched network into separate broadcast domains.
Choose an option to check your answer.
A.
prevents IV reuse fully
B.
uses modern SAE authentication
C.
is an older wireless security protocol considered weak and unsuitable for modern protection
D.
is a network forensics standard
Show Answer
Correct Answer: C. is an older wireless security protocol considered weak and unsuitable for modern protection
Explanation:
WEP is best described as something that is an older wireless security protocol considered weak and unsuitable for modern protection.
Choose an option to check your answer.
A.
is always owned by the security team
B.
is a type of VPN tunnel
C.
is an unauthorized access point connected to or imitating a trusted network
D.
cannot affect enterprise networks
Show Answer
Correct Answer: C. is an unauthorized access point connected to or imitating a trusted network
Explanation:
This is correct because Wireless rogue access point is an unauthorized access point connected to or imitating a trusted network.
Choose an option to check your answer.
A.
is a malware analysis tool
B.
logically segments a switched network into separate broadcast domains
C.
is a wireless antenna type
D.
always removes need for routing
Show Answer
Correct Answer: B. logically segments a switched network into separate broadcast domains
Explanation:
VLAN is best described as something that logically segments a switched network into separate broadcast domains.
Choose an option to check your answer.
A.
prevents IV reuse fully
B.
is a network forensics standard
C.
is an older wireless security protocol considered weak and unsuitable for modern protection
D.
uses modern SAE authentication
Show Answer
Correct Answer: C. is an older wireless security protocol considered weak and unsuitable for modern protection
Explanation:
This is correct because WEP is an older wireless security protocol considered weak and unsuitable for modern protection.
Choose an option to check your answer.
A.
is always owned by the security team
B.
is a mandatory DNSSEC server
C.
is an unauthorized access point connected to or imitating a trusted network
D.
is a type of VPN tunnel
Show Answer
Correct Answer: B. is a mandatory DNSSEC server
Explanation:
The misconception is "is a mandatory DNSSEC server"; in reality, Wireless rogue access point is an unauthorized access point connected to or imitating a trusted network.
Choose an option to check your answer.
A.
sends false ARP messages to associate an attacker MAC address with another IP address
B.
is required for WPA3
C.
updates antivirus software
D.
only increases battery life
Show Answer
Correct Answer: A. sends false ARP messages to associate an attacker MAC address with another IP address
Explanation:
ARP spoofing is best described as something that sends false ARP messages to associate an attacker MAC address with another IP address.
Choose an option to check your answer.
A.
logically segments a switched network into separate broadcast domains
B.
is a wireless antenna type
C.
always removes need for routing
D.
is a malware analysis tool
Show Answer
Correct Answer: A. logically segments a switched network into separate broadcast domains
Explanation:
This is correct because VLAN logically segments a switched network into separate broadcast domains.
Choose an option to check your answer.
A.
is stronger than WPA3 by design
B.
is an older wireless security protocol considered weak and unsuitable for modern protection
C.
uses modern SAE authentication
D.
prevents IV reuse fully
Show Answer
Correct Answer: A. is stronger than WPA3 by design
Explanation:
The misconception is "is stronger than WPA3 by design"; in reality, WEP is an older wireless security protocol considered weak and unsuitable for modern protection.