Skip to main content

Communication And Network Security

Domain 04 Practice Set: 01

CISSP DOMAIN 04: Communication And Network Security (Assessment Mode)

  CISSP Domain 4:This domain covers the design, implementation, and management of secure communication channels and network infrastructure. Key topics include network protocols, secure network design principles, network components, transmission methods, and security controls for ensuring the confidentiality, integrity, and availability of data in transit.   These questions aim to test your understanding of critical security concepts and technologies involved in securing communication channels and network infrastructures, aligning with the objectives of Domain 4 of the CISSP exam.

Domain 04: Practice Set 01

Disclaimer: The practice exam questions provided are representative of the certification exam, but not the actual questions you will see on the certification exam. Practice exams are for self-assessment.

Page : 1/10

1. What is the primary function of a Content Delivery Network (CDN)?
2. Which type of firewall operates at the application layer to filter traffic?
3. What is the function of a WAF (Web Application Firewall)?
4. What is the primary security benefit of using TLS over SSL for securing network communications?
5. What is the primary function of the Secure Shell (SSH) protocol?

Page : 2/10

6. Which of the following network security mechanisms uses a combination of digital certificates and asymmetric cryptography to provide secure communications over an untrusted network?
7. Which of the following network devices can be used to segment a network into different broadcast domains?
8. What is the primary purpose of implementing Network Access Control (NAC) in a corporate network?
9. What is the purpose of implementing a honeypot in a network?
10. Which protocol is commonly used to retrieve emails from a server?

Page : 3/10

11. Which of the following protocols supports multicast traffic in IPv6, enabling the efficient distribution of data to multiple destinations?
12. Which of the following technologies can be used to detect unauthorized devices on a network through passive monitoring and analysis of network traffic?
13. Which protocol is used to secure communications between a web server and a web browser?
14. What does the term "network segmentation" refer to in the context of network security?
15. Which of the following is a benefit of implementing an IDS/IPS in a network?

Page : 4/10

16. Which of the following network topologies is most resilient to a single point of failure?
17. Which type of malware records every keystroke made by a user?
18. Which technology allows multiple virtual networks to operate on the same physical network infrastructure?
19. Which type of attack involves intercepting and altering communication between two parties without their knowledge?
20. Which of the following best describes the function of a SIEM (Security Information and Event Management) system?

Page : 5/10

21. Which of the following technologies helps prevent ARP spoofing attacks?
22. Which cryptographic protocol is used to secure data transmitted over a wireless network?
23. Which protocol is used to securely transfer files over the internet?
24. Which protocol is used to dynamically assign IP addresses to devices on a network?
25. What is the primary purpose of implementing a VPN (Virtual Private Network) in a corporate environment?

Page : 6/10

26. Which of the following technologies is used to detect and prevent MAC address spoofing in a network?
27. Which of the following is a primary function of a load balancer in a network?
28. Which protocol is primarily used to synchronize time across network devices?
29. In a wireless network, which of the following encryption methods is considered the most secure?
30. Which type of firewall inspects incoming and outgoing packets at the network layer?

Page : 7/10

31. Which of the following protocols provides confidentiality, integrity, and authenticity of messages on the internet?
32. Which type of attack involves flooding a network with a large number of ICMP Echo Request packets?
33. Which of the following is a primary function of a DNS (Domain Name System)?
34. Which network protocol is designed to provide secure, authenticated communications for directory services, particularly in Microsoft Active Directory environments?
35. In a software-defined network (SDN), which component is responsible for making centralized decisions about the flow of network traffic?

Page : 8/10

36. What is the main advantage of using MPLS (Multiprotocol Label Switching) in a network?
37. What is the main security purpose of implementing a VLAN in a network?
38. Which type of attack is characterized by an attacker intercepting and potentially altering communication between two parties who believe they are directly communicating with each other?
39. What is the primary purpose of implementing QoS (Quality of Service) in a network?
40. Which of the following is a characteristic of the BGP (Border Gateway Protocol) that makes it susceptible to routing attacks such as prefix hijacking?

Page : 9/10

41. What is the purpose of DNSSEC (Domain Name System Security Extensions)?
42. Which protocol is commonly used for sending email from a client to a server?
43. In the context of wireless network security, what is the purpose of the 802.1X standard?
44. What is the primary function of a network IDS (Intrusion Detection System)?
45. Which advanced network security technique involves segmenting a network into smaller, isolated sections to prevent lateral movement of threats?

Page : 10/10

46. What is the main advantage of using a firewall with stateful inspection over a stateless firewall?
47. Which protocol operates at the network layer and is responsible for logical addressing?
48. Which of the following best describes a DMZ (Demilitarized Zone) in network security?
49. What is the main advantage of using a Next-Generation Firewall (NGFW) over a traditional firewall?
50. What is the purpose of Network Address Translation (NAT)?
CISSP Practice Test, Quiz & Flashcards

More practice question and flash cards

Risk & Security Management

Domain_01_CISSP Practice Set 01

Asset Security

Domain_02_CISSP Practice Set 01

Security Architecture & Engineering

Domain_03_CISSP Practice Set 01

Communication & Network Security

Domain_04_CISSP Practice Set 01

Identity & Access Management

Domain_05_CISSP Practice Set 01

Domain 04: Mindmaps, Flashcards and more…

Learn More

CISSP Practice Sets Status

CISSP practice sets and Questions counter

5

CISSP Practice Sets

250

Questions

5.8

Test Submited by Users