Home > Security Fundamentals

Security Fundamentals

July 16th, 2010 in CCNA Security Go to comments

Here you will find answers to Security Fundamentals

 

Question 1

Which classes does the U.S. government place classified data into? (Choose three)
A. SBU
B. Confidential
C. Secret
D. Top-secret

Answer: B C D

Explanation

Data should be classified so that administrators can do their best to secure that data. Below is a common way to classify data that many governments, including the military, use:

  • Unclassified: Data that has little or no confidentiality, integrity, or availability requirements and therefore little effort is made to secure it.
  • Sensitive But Unclassified (SBU): Data that could prove embarrassing if revealed, but no great security breach will occur.
  • Confidential: Data that must comply with confidentiality requirements. This is the lowest level of classified data in this scheme.
  • Secret: Data for which you take significant effort to keep secure. The number of individuals who have access to this data is usually considerably fewer than the number of people who are authorized to access confidential data.
  • Top secret: Data for which you make great effort and sometimes incur considerable cost to guarantee its secrecy. Usually a small number of individuals have access to top-secret data, on condition that there is a need to know.

But in the U.S, the government only classifies data into three levels: Confidential, Secret and Top Secret.

Question 2

Which method is of gaining access to a system that bypasses normal security measures?

A. Creating a back door
B. Starting a Smurf attack
C. Conducting social engineering
D. Launching a DoS attack


Answer: A

Explanation

A back door is a method of bypassing normal authentication to secure remote access to a computer while attempting to remain undetected. The most common backdoor point is a listening port that provides remote access to the system for users (hackers) who do not have, or do not want to use, access or administrative privileges.

Question 3

Which statement is true about a Smurf attack?

A. It sends ping requests to a subnet, requesting that devices on that subnet send ping replies to a target system.
B. It intercepts the third step in a TCP three-way handshake to hijack a session.
C. It uses Trojan horse applications to create a distributed collection of “zombie” computers, which can be used to launch a coordinated DDoS attack.
D. It sends ping requests in segments of an invalid size.


Answer: A

Explanation

Smurf attacks use ICMP echo request packets directed at IP broadcast addresses from a remote site. The intent is to cause DoS. The smurf program builds a network packet that appears to originate from another address (this is known as spoofing an IP address). The packet contains an ICMP ping message that is addressed to an IP broadcast address, meaning all IP addresses in a given network. The echo responses to the ping message are sent back to the “victim” address. Enough pings and resultant echoes can flood the network making it unusable for real traffic.

Question 4

With the increasing development of network, various network attacks appear. Which statement best describes the relationships between the attack method and the result?

1 Identify operating systems
2 Determine live hosts
3 Determine potential vulnerabilities
4 Identify devices
5 Identify active services

A.
Ping Sweep – 1 and 3
Port Scan – 2, 4 and 5

B.
Ping Sweep – 2 and 4
Port Scan – 1, 3 and 5

C.
Ping Sweep – 1 and 5
Port Scan – 2, 3 and 4

D.
Ping Sweep – 2 and 3
Port Scan – 1, 4 and 5


Answer: B

Explanation

Ping sweep: ping a series of IP addresses. Ping replies might indicate to an attacker that network resources can be reached at those IP addresses.

Port scan: Searching a network host for open ports. A port scan seeks to identify all listening ports on an identified host. Port scans often help attackers identify the operating system running on the target system. An attacker might perform a port scan to determine what services are available at specific IP addresses. For example, the Telnet application communicates on TCP port 23, and Simple Mail Transfer Protocol (SMTP) communicates on TCP port 25…

Question 5

Which one is the most important based on the following common elements of a network design?

A. Business needs
B. Best practices
C. Risk analysis
D. Security policy


Answer: A

Explanation

Business goals and risk analysis drive the need for network security. Regardless of the security implications, business needs must come first. The security system design must accommodate the goals of the business, not hinder them.

Note:

Business needs mean “what does your organization want to do with the network?”

Question 6

How does CLI view differ from a privilege level?

A. A CLI view supports only commands configured for that specific view, whereas a privilege level supports commands available to that level and all the lower levels.
B. A CLJ view supports only monitoring commands, whereas a privilege level allows a user to make changes to an IOS configuration.
C. A CLI view and a privilege level perform the same function. However, a CU view is used on a Catalyst switch, whereas a privilege level is used on an IOS router.
D. A CLI view can function without a AAA configuration, whereas a privilege level requires AAA to be configured.


Answer: A

Question 7

What are four methods used by hackers? (Choose four)

A.    social engineering attack
B.    Trojan horse attack
C.    front door attacks
D.    buffer Unicode attack
E.    privilege escalation attack
F.    footprint analysis attack


Answer: A B E F

Explanation

Social engineering: Using social skills to manipulate people inside the network to provide the information needed to
access the network. For example, an outside attacker calls a receptionist and pretends to be a member of the company’s IT department, and he convinces the receptionist to tell him her username and password. The attacker then can use those credentials to log into the network.

Trojan horse: a piece of software that appears to be a legitimate application but that also performs some unseen malicious functions.

Privilege escalation: An attacker compromises another subsystem and then, through this compromised subsystem, attacks the application.

Footprinting is the process of gathering all available information  about a target. A simple example is to use google or yahoo search engine to locate information about employees or the organization itself.

Question 8

Which protocol will use a LUN as a way to differentiate the individual disk drives that comprise a target device

A. iSCSI
B. ATA
C. SCSI
D. HBA


Answer: C

Explanation

In computer storage, a logical unit number (LUN) is an address for an individual disk drive and, by extension, the disk device itself. The term is used in the SCSI protocol as a way to differentiate individual disk drives within a common SCSI target device, such as a disk array.

Question 9

Which VoIP components can permit or deny a call attempt on the basis of a network’s available bandwidth?

A. MCU
B. Gatekeeper
C. Application server
D. Gateway


Answer: B

Question 10

Which option ensures that data is not modified in transit

A. Authentication
B. Integrity
C. Authorization
D. Confidentiality


Answer: B

Ping Sweep – 1 and
3















Port
Scan -
2, 4
and 5
c
B.
Ping
Sweep
– 2 and
4

Port
Scan -
1, 3
and 5
c
c.
Ping
Sweep
– 1 and
5

Port
Scan -
2, 3
and 4
r
D.
Ping
Sweep
– 2 and
3

Port
Scan -
1, 4
and 5

Comments
  1. ~!n.o.c.e!~
    September 14th, 2010

    GOOD EXPLANATION FOR THE ANSWER

  2. iamkhan
    September 23rd, 2010

    good introductory questions with best explanations.

    got exam on 30th September 2010. God bless me, securitytut and all other commenter’s.

  3. badmash
    October 23rd, 2010

    I just signed up to your blogs rss feed. Will you post more on this subject?

  4. kenny
    November 25th, 2010

    are these questions still valid pls??

  5. Ahmed
    February 21st, 2011

    Thanks for those explanations :)

  6. Mr.Debug
    March 28th, 2011

    I find the explanations very useful.

  7. Ratan Bhattacharya
    April 20th, 2011

    Please uploade some leatest dumps about ccna security …..

  8. Ratan bhattacharya
    April 25th, 2011

    guyes…..i till waiting for leatest dumps of ccna security…..so please upload ……..this is so urgant for me…

  9. anonymous
    April 27th, 2011

    Good luck

  10. Jaylen
    May 31st, 2011

    AFAICT you’ve covered all the bases with this aswner!

  11. amit
    August 9th, 2011

    good explanation

  12. cisco
    August 11th, 2011

    Hi, I’ve my exam on 19th august 2011. Is P4S 4.38 still valid? Questions shown here are still valid? Has anyone given exam recently?

  13. raghu
    September 19th, 2011

    The explaination is awesome….Hats off

  14. Alberto Castillo
    September 19th, 2011

    Thank’s 9tut for supporting this CCNA Security section, this blog is very useful for exams certifications!!! long life to 9tut.com!!!!! (Mexico)

  15. ratheesh
    September 20th, 2011

    i have passed CCNA security with same old dumps 167

  16. king
    October 24th, 2011

    thanks

  17. cisco
    December 4th, 2011

    it feels good to get them all right first try : )

  18. casanavo6166
    December 13th, 2011

    last day i passed ccna 640-802 with 100 % mark .I got job in data centr ….i had experience of 5 years in network side.Now i dealing with pix and asa .So i need to study security in detail.please refer a test

  19. Venkat
    December 28th, 2011

    Hi All, I am a CCNA certified and now willing to take CCNA Security Please provide me dumps if anyone have recent dumps.suggest me how to prepare and how many days of preparetion is required.
    My Email ID- Venkatp_982@yahoo.co.in

  20. Vinicius
    January 22nd, 2012

    Thanks =)

  21. akp
    January 24th, 2012

    does anyone know how much the test is for the ccna security in usd

  22. Mr. Green
    January 29th, 2012

    @akp $250 USD

  23. eddie
    February 7th, 2012

    does anybody have or can find the cisco press security 640-553 ebook?

  24. G-Man
    February 9th, 2012

    I passed 640-553 this week. All simulations and questions are still valid. IP addresses, ACL, and few other small details are changed, but if you practice on how to get to navigate through SDM (as opposed to just memorize the answers) you will be able to get the correct answer. Again, practice the navigation as is explained in here, and you will be ok!

  25. kambie11@yahoo.com
    February 16th, 2012

    Hi every ONE
    I just passed my CCNA, and now I want to study CCNA Security. I need all the help for study materials and dumps. I am struggling to learn, please help – together we can learn, please.
    My email is kambie11@yahoo.com

  1. No trackbacks yet.
Add a Comment