Network Security mcq questions with answer – Set 5

#1. You need to set up a DMZ but want to keep the servers inside the DMZ on a private address space. You have plenty of public IP address space and just want to map each server’s private address to a unique public address. What type of NAT would be most appropriate?

#2. Your organization is looking to redesign its network perimeter. Your boss wants to purchase a new “all in one” device and put everything behind that device on a flat network. Others in the meeting argue that it would be better to have a primary firewall, a DMZ for public services, a secondary firewall, and a firewall separating the server farm from the rest of the network. What security principle is your boss overlooking that the others in the meeting are not?

#3. You are starting a sensitive application development project with another organization. Both organizations would like to share the same development platform, but neither organization wants to allow the other organization to access its internal networks. What is the most appropriate type of cloud service to use in this scenario?

#4. When would disabling SSID broadcasting make the most sense?

#5. Why is a site survey important to wireless security?

#6. What does LEAP do?

#7. What is a threat to VPN over open wireless?

#9. Which security practice(s) will be best for the networks that are used for employees? (Choose Three)

Select all that apply:

#10. Your boss asks you to reconfigure the network to also support a bring your own device (BYOD) initiative. Which security measure on the corporate network would not be compatible?

