CCNA Security Chapter 6

Is this your test? Login to manage it. If not, you can generate an exam just like it.

This is a non-interactive preview of the quiz content.

1.
1 point
What security countermeasure is effective for preventing CAM table overflow attacks?
2.
1 point
What is the behavior of a switch as a result of a successful CAM table attack?
3.
1 point
Two devices that are connected to the same switch need to be totally isolated from one another. Which Cisco switch security feature will provide this isolation?
4.
1 point
What is the role of the Cisco NAC Server within the Cisco Secure Borderless Network Architecture?
5.
1 point
What two mechanisms are used by Dynamic ARP inspection to validate ARP packets for IP addresses that are dynamically assigned or IP addresses that are static? (Choose two.)
6.
1 point
What are three techniques for mitigating VLAN hopping attacks? (Choose three.)
7.
1 point
DHCP _________ is a mitigation technique to prevent rogue DHCP servers from providing false IP configuration parameters.
8.
1 point
What is the role of the Cisco NAC Guest Server within the Cisco Borderless Network architecture?
9.
1 point
What network attack seeks to create a DoS for clients by preventing them from being able to obtain a DHCP lease?
10.
1 point
In what situation would a network administrator most likely implement root guard?
11.
1 point
What is the only type of port that an isolated port can forward traffic to on a private VLAN?
12.
1 point
Which spanning-tree enhancement prevents the spanning-tree topology from changing by blocking a port that receives a superior BPDU?
13.
1 point
Which STP stability mechanism is used to prevent a rogue switch from becoming the root switch?
14.
1 point
Which two functions are provided by Network Admission Control? (Choose two.)
15.
1 point
Which security feature should be enabled in order to prevent an attacker from overflowing the MAC address table of a switch?
16.
1 point
Which three functions are provided under Cisco NAC framework solution? (Choose three.)
17.
1 point
How can a user connect to the Cisco Cloud Web Security service directly?
18.
1 point
What security benefit is gained from enabling BPDU guard on PortFast enabled interfaces?
19.
1 point
Which feature is part of the Antimalware Protection security solution?
20.
1 point
What component of Cisco NAC is responsible for performing deep inspection of device security profiles?
21.
1 point
What is the role of the Cisco NAC Manager in implementing a secure networking infrastructure?
22.
1 point
What protocol should be disabled to help mitigate VLAN hopping attacks?
23.
1 point
Refer to the exhibit. The Fa0/2 interface on switch S1 has been configured with the switchport port-security mac-address 0023.189d.6456 command and a workstation has been connected. What could be the reason that the Fa0/2 interface is shutdown?
24.
1 point
What additional security measure must be enabled along with IP Source Guard to protect against address spoofing?