MCQ Collection
Network Security MCQs
Network Security MCQs covering firewalls, attacks, protocols, and secure communication.
Choose an option to check your answer.
A.
sends false ARP messages to associate an attacker MAC address with another IP address
B.
only increases battery life
C.
signs DNS records cryptographically
D.
is required for WPA3
Show Answer
Correct Answer: A. sends false ARP messages to associate an attacker MAC address with another IP address
Explanation:
The correct answer is that ARP spoofing sends false ARP messages to associate an attacker MAC address with another IP address.
Choose an option to check your answer.
A.
is only a web browser plugin
B.
secures IP traffic using authentication, integrity, and optional confidentiality services
C.
removes all routing needs
D.
works only for naming domains
Show Answer
Correct Answer: A. is only a web browser plugin
Explanation:
The misconception is "is only a web browser plugin"; in reality, IPsec secures IP traffic using authentication, integrity, and optional confidentiality services.
Choose an option to check your answer.
A.
is a subnetting formula
B.
removes need for certificates
C.
is a router chassis type
D.
protects application communication by providing encryption, integrity, and authentication support
Show Answer
Correct Answer: D. protects application communication by providing encryption, integrity, and authentication support
Explanation:
The correct answer is that SSL/TLS protects application communication by providing encryption, integrity, and authentication support.
Choose an option to check your answer.
A.
is only for one user laptop
B.
connects separate networks securely over an untrusted network
C.
is a DNS cache attack
D.
cannot use encryption
Show Answer
Correct Answer: B. connects separate networks securely over an untrusted network
Explanation:
The correct answer is that Site-to-site VPN connects separate networks securely over an untrusted network.
Choose an option to check your answer.
A.
removes all routing needs
B.
is a malware family
C.
secures IP traffic using authentication, integrity, and optional confidentiality services
D.
is only a web browser plugin
Show Answer
Correct Answer: C. secures IP traffic using authentication, integrity, and optional confidentiality services
Explanation:
The correct answer is that IPsec secures IP traffic using authentication, integrity, and optional confidentiality services.
Choose an option to check your answer.
A.
is a UDP port scanner
B.
binds an identity to a public key through a certificate authority or trust model
C.
stores a private key in plain text for everyone
D.
is the same as a firewall rule
Show Answer
Correct Answer: B. binds an identity to a public key through a certificate authority or trust model
Explanation:
The correct answer is that Digital certificate binds an identity to a public key through a certificate authority or trust model.
Choose an option to check your answer.
A.
is a packet capture file format
B.
cannot use encryption
C.
connects separate networks securely over an untrusted network
D.
is a DNS cache attack
Show Answer
Correct Answer: C. connects separate networks securely over an untrusted network
Explanation:
Site-to-site VPN is best described as something that connects separate networks securely over an untrusted network.
Choose an option to check your answer.
A.
is a password reset method
B.
provides authentication and integrity for IP packets but not payload confidentiality
C.
is a DNS record type
D.
provides only wireless channel scanning
Show Answer
Correct Answer: B. provides authentication and integrity for IP packets but not payload confidentiality
Explanation:
The correct answer is that AH in IPsec provides authentication and integrity for IP packets but not payload confidentiality.
Choose an option to check your answer.
A.
contains only a MAC address
B.
is a UDP port scanner
C.
binds an identity to a public key through a certificate authority or trust model
D.
is the same as a firewall rule
Show Answer
Correct Answer: C. binds an identity to a public key through a certificate authority or trust model
Explanation:
Digital certificate is best described as something that binds an identity to a public key through a certificate authority or trust model.
Choose an option to check your answer.
A.
connects separate networks securely over an untrusted network
B.
is a packet capture file format
C.
is a DNS cache attack
D.
cannot use encryption
Show Answer
Correct Answer: A. connects separate networks securely over an untrusted network
Explanation:
This is correct because Site-to-site VPN connects separate networks securely over an untrusted network.
Choose an option to check your answer.
A.
is a DNS record type
B.
provides authentication and integrity for IP packets but not payload confidentiality
C.
is a denial-of-service tool
D.
is a password reset method
Show Answer
Correct Answer: B. provides authentication and integrity for IP packets but not payload confidentiality
Explanation:
AH in IPsec is best described as something that provides authentication and integrity for IP packets but not payload confidentiality.
Choose an option to check your answer.
A.
is a UDP port scanner
B.
binds an identity to a public key through a certificate authority or trust model
C.
is the same as a firewall rule
D.
contains only a MAC address
Show Answer
Correct Answer: B. binds an identity to a public key through a certificate authority or trust model
Explanation:
This is correct because Digital certificate binds an identity to a public key through a certificate authority or trust model.