Appendix A

Answers to Review Questions

Chapter 1: Network Security

1. B.

Firewalls provide protection by controlling traffic entering and leaving a network.

2. A.

Network-based IDSs aren't suitable for protecting against email spoofing.

3. B.

A DMZ provides a network segment where publicly accessible servers can be deployed without compromising the security of the private network.

4. C.

Switches can create VLANs. Broadcast storms aren't transmitted between one VLAN and another.

5. C.

Illegal or unauthorized zone transfers are a significant and direct threat to DNS servers.

6. D.

Fibre Channel is a form of network data-storage solution (SAN or NAS) that allows for high-speed file transfers upwards of 16 Gbps. It was designed to be operated ...

Get CompTIA Security+ Review Guide: Exam SY0-401, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.