Unit 5: Network Security
Networking · Unit 5 · Paper 2

Network Security unit test

A test on this unit alone, marked as a percentage and a letter grade — for the test your class is actually sitting, rather than for May. Answer everything, then submit once: seeing the answer to question 3 before attempting question 4 makes the final percentage meaningless.

Each paper is built from this unit’s 40 terms and is the same for everyone, so a teacher can assign “Unit 5, Paper 2” and every student sits the identical test. Multiple choice is marked objectively; the written sections you mark yourself against the model answer and rubric.
Suggested time 33 min 30 points0/17 attempted
1

Network access control (NAC)

2

Guest network isolation

3

Split tunneling

4

IPsec

5

On-path attack

6

SIEM

7

DNS poisoning and DNSSEC

8

Certificate validation

9

ARP poisoning

10

Incident response phases

11

Firewall

12

Denial-of-service

Short answer 1. Define or explain: MAC filtering limits

3 pts

Short answer 2. Define or explain: Least privilege on a network

3 pts

Short answer 3. Define or explain: Vulnerability scanning

3 pts

Short answer 4. Define or explain: Defense in depth

3 pts

Free response

6 pts

This course has no free-response prompt tagged to this unit, so one from elsewhere in the course is used. It is still worth writing — the skill transfers.

A student types a web address into a browser on a laptop that has just joined a campus Wi-Fi network, and a page loads. (a) Describe what DHCP does for the laptop when it joins, and name two pieces of configuration it receives beyond its own IP address. (b) Describe how the domain name is resolved to an IP address, including what happens when the local resolver has no cached answer. (c) Explain encapsulation by describing what is added to the data as it moves down the sending host's stack. (d) The page fails to load but the student can reach a site by typing its IP address directly. State what this isolates as the likely fault and explain your reasoning.