Sabtu, 30 Oktober 2010

Lab 9.2.7

Step 1 : Build the network and configure the hosts


Step 2 : Record the baseline IP address information for computers and intergrated router


a. IP address : 192.168.1.2
   Subnet mask : 255.255.255.0
   Default gateway : 192.168.1.1
   DNS : 
   DHCP :
   
b. Internal IP address : 192.168.1.3
    Subnet mask : 255.255.255.0
    Enabled.
    External (internet) IP address : 10.1.1.5
    Subnet mask : 255.0.0.0
    Default gateway IP address : 10.1.1.1
    DNS server :


c.IP address : 192.168.2.2
   Subnet mask : 255.255.255.0
   Default gateway :  192.168.2.1
   Web server 1 protocol and name : 
   Web server 2 protocol and name :
    FTP server 1 protocol and name :
    FTP server 2 protocol and name :

Step 3, 4, 5, 6, 7, 8

Masalah yang biasanya terjadi yaitu masalah routing.
Perintah - perintah yang bisa digunakan untuk menyelesaikan masalah ini :
- show ip route, untuk mengeluarkan isi dari tabel routing. Contoh nya : 
     ~ show ip route connected,
     ~ ip default network.
     ~ show ip route database
     ~ show ip route protocols
     ~ show ip route address
- Lakukan perintah ping dan telnet.
- Gunakan teknik top-down, bottom-up, dan divide and conquer.

Step 9 : Refelection

a. Divide and conquer.

b. Divide and conquer

Kuis Chapter 9

1. a small office uses a wireless ISR to connect to a cable modem for internet access. The network administrator receives a call tahat one office computer cannot access external website. The first troubleshooting step that the network administrator performs is to ping the ISR. While troubleshooting technique does this represent?
D. divide-and-conquer.

2. Select three items that should be documented after troubleshooting an internal web server crash (choose three)
      a. when the problem occurred
      e. steps that were performed to identify the cause of the problem
      f. steps that were performed that failed to identify the cause of the problem

3. A user calls the help desk  to report a workstation problem. While three questions would the most helpful information for troubleshooting? (choose three)
a.       A.if you received an error message, what was it?
b.      B.Have there been any changes to your workstation recently?
c.       D.what version of operationg system is running on your workstation?

4. A user wants to lest connectivity between host 3 and 8 on a network. Which command can be used to verify a connection?
      b. ping

5. Ipconfig = displays IP settings on host
Netstat = display network connections
Ping = tests connections to other IP host
Tracert = displays route taken to destination
Nslookup = asks name server for into on destination domain

6. Which three pieces of information are revealed by yhe config command? (choose three)
b. Ip address
e. subnet mask
f. default gateway

7. How does an activity LED indicate that traffic is moving through a port?
a. by flashing

8. What is one of the most common reasons why hosts could be unable to connect?
b. cabling problems

9. Which three factors can affect the ability of host to connect to an AP using radio frequency signals? (choose three)
      b. The 802.11A is not compatible with the 802.11 B/G standars
      c. The avalaible bandwith between devices is shared with APs
      e. Mulitple devices running on the same frequency causes interference

10. what step should be taken once a problem is resolved?
      c. update the documentation

Lab 8.4.3 Performing a Vulnerability Analysis

Step 1 : Download and install MBSA


b. MBSA versi 2.2


c. Fitur MBSA : 
         -Command-line and Graphical User Interface (GUI) options
         - Scan local computer, remote computer, or groups of computer
         -Scan against Microsoft's maintained list of updates (on Microsoft.com) or local server running Software Update Services 1.0
         - Scan for common security configuration vulnerabilitie
         - Scan for missing security updates
         - View reports in MBSA Graphical User Interface or Command Line Interface
         - Compatibility with SMS 2.0 and 2003 Software Update Services Feature Pack
         - Support for single processor and multiprocessor configurations
         - Localized to English, French, German, and Japanese although MBSA 1.2.1 can scan a machine of any local


f. Antara 1.5 MB - 1.7 MB


Step 2 : Build the network and configure the hosts


c. IP address : 192.168.1.1
    Subnet mask : 255.255.255.0


Step 3 : Run MBSA on a Host


a. Options yang muncul :
    - Welcome
    - Pick a computer to scan
    - Pick multiple computer to scan
    - Pick a security report to view
    - Help
    - About
    - Microsoft Security Web Site


Step 4 : Select a computer to scan


b. 2 cara spesifik untuk men-scan komputer : 
    - Scan using assign Update Services servers only
    - Scan using Microsoft Update only


Step 5 : View Security Update scan Results


a. 


b.


Step 6 : View Windows Scan Results in the Security Report


a. Local Account Password Test, Automatic Update, Guest Account, File system.


b. 


Step 7 : View Desktop Application Scan Results in the security report


a. Macro security


b. 4


c. Tidak.


Step 8 : Scan a server, if avaible


Step 10 : Refelction


a.  Tools :
        - Client versions of Windows, including Windows 
        - Windows Server, including Windows Server 2008
        - SQL Server
        - Internet Information Server (IIS)
        - Internet Explorer 
        - Microsoft Office

b. SQL server

c. Step 8.

Lab 8.4.2 Configuring Access Policies and DMZ Settings


Part 1 : Configuring access policies

Step 1 : Build The Network and Configure The Hosts

c. Host-A : IP address : 192.168.2.1
                  Subnet Mask : 255.255.255.0
                  Default Gateway : 192.168.2.2
   Host-B(DMZ Server) : IP address : 192.168.189.202
                                       Subnet Mask : 255.255.255.0
                                       Default Gateway : 192.168.189.1
   External Server : IP address : 192.168.10.1
                            Subnet Mask : 255.255.255.0
                            Default Gateway : 192.168.10.2

Step 2 : Log in to the user interface

c. Tipe koneksi internet nya : wireless internet connection.

d. Default router (internal) : IP address : 192.168.1.1
                                         Subnet mask : 255.255.255.0

f. Default router (external) : IP address : 192.168.2.1
                                          Subnet mask : 255.255.255.0

Step 3 :  View Multi Function device Firewall settings

b. Status SPI firewall protection : enabled.

c. Internet filter yang digunakan : filter anonymous internet request, filter IDENT (port 113). 

d. Keuntungan memfilter IDENT Provide :  mencegah penyusup dari luar menyerang router melalui internet.
    

Step 4 : Set up Internet Access Restrictions based on IP Address 

d. Ya.

e. Tidak.

f. Menggunakan proxy.

Step 5 : Set up an Internet Access Policy based on Application

c. 

f. Ya.

g. Tidak.


Part 2 : Configuring a DMZ on the multi-function device


Step 1 : Set up simple DMZ


c. Karena DMZ berguna untuk menambahkan lapisan keamanan untuk LAN.


e. Ya.


f. Ya.


g. Tidak.


Step 2 : Set up a host with single port forwarding


d. Ya.


e. Tidak.

Kuis Chapter 8

1. Drag the network threat on the left to the definition on the right.
a. Data loss à destroying data on a hard drive
b. Data manipulation à changing data for personal gain
c. Disruption of service à overloading a server to reduce its performance
d. Information theft à stealing data on a hard drive to gain a competitive advantage
e.  Identity à stealing information to impersonate someone and usually to obtain credit.

2. How does a phisher typically contact a victim?
by  E-mail

3. A file is downloaded from the internet. After the user opens the downloaded file, the user’s hard drive crashes and all information on the computer is lost. What type of attack occurred?
Virus

4. In rapid succession, an intruder tries a large number of possibilities to guess passwords. As a result, other users on the network are locked out. What type of attack occurred?
Brute force

5. What type of program installs and gathers personal information, including password and account information, from a computer without permission or knowledge of the user?
Spyware

6. A network administration is troubleshooting a computer that is operating strangely. It boots slowly, programs will not load, and the keyboard responds very slowly. What is the best action for the administrator to take?
Boot the PC and Run anti-virus and anti-spyware applications from an external drive.

7. Drag the term on left to the best description on the right.
a. Stateful packet inspection à can look inside the packet up through layer 7
b.  Website filtering à allows or denies access based on a URL
c.  Simple packet filtering à allows or denies access based on an IP or MAC address
d. NAT à keeps external users from knowing the IP Address used inside the network

8. Drag the term on left to the definition on the right.
a. Integrated à a feature of a network device such as a router.
b. Personal firewall à an application designed to protect a home PC
c. Appliance-based firewall à a device that has the sole function of being a firewall
d. Server-based firewall à an application designed to protect the enterprise network

9. 9. What are three security features commonly found on an ISR? (Choose Three)
-          DMZ
-          NAT
-          SPI

10. What are two purposes of a DMZ? (Choose two)
-   To create a network area that allows internal resources, such as a web server, to be accessed by external users.
-   To establish a network area where network resources can be shared by both internal and external users.

Lab 7.3.5 Configuring Wireless Security

Step 1 : Plan the security for your home network


a. 6 security best practice :
    1. Turn on WPA
    2. Change default administrator (username dan password)
    3. Change the default SSID
    4. Enable MAC address filtering
    5. Disable SSID Broadcast
    6. Enable firewalls on each computer and router


b. 6 resiko keamanan untuk setiap sistem :
    1. Interception
    2. Injection
    3. Jamming
    4. Locating Mobile Nodes
    5. Access Control
    6. Hijacking


Step 5 : Configure The Wireless Security Settings

b. SSID : monica.


Step 8  : Reflection

a. Otomatic Configuration DHCP, karena konfigurasi nya bisa di setting sesuai kebutuhan.

b. Item yang dapat memperkuat security nya :WPA, MAC address.

Lab 7.2.6 Configuring a Wireless Client

Lab 7.2.6


Step 1 : Install the Wireless NIC Wireless


b. Wireless NIC diproduksi oleh : intel.


c. Langkah install wireless NIC Driver : 
   - Klik Start, Control Panel, Performance & Maintenance, System, Hardware, Device Manager, Network Adapter, Properties.
   - Turn off komputer, cabut semua kabel dari komputer.
   - Masukkan wireless NIC card dengan hati - hati.
   - Kemudian booting kembali komputernya.
   - Found new hardware akan running secara otomatis, lalu masuk ke Control Panel dan pilih Add Hardware.




Step 3 : Attach To The Wireless Network


b. SSID yang mana yang digunakan : linksys.


d. Sinyal yang paling kuat untuk Wireless NIC : mixed.


e. Ya, karena banyak jaringan wireless yang tersedia.


g. Nama host wireless yang lainnya : elka.


h. Lebih baik menggunakan wireless NIC.


Step 4 : Determine the NIC Driver Version


b. Linksys




Step 5 : Determine If the NIC driver is the most current


a. Ya.


b. Intel.




Step 6 : Verify Connectivity


e. IP address : 192.168.1.1




Step 7 : Reflection


a. Setting nya sama.


b. Ya.

Lab 7.2.5 Configuring a Wireless Access Point

Step 1 : Verify Connectivity Between the Computer and the Multi-function Device.


d. Perintah yang digunakan untuk melakukan ping ke perangkat multi-fungsi :
    ping 10.1.1.5


Step 2 : Log in To The Multi-function Device and Configure The Wireless Network


e. SSID yang digunakan : informatika 2.


f. 2 options pada Radio Band : standar dan auto.


Step 3 : Reflection


a. Berapa banyak jaringan wireless yang bisa dikonfigurasi dalam satu kelas ?Berapa batasnya? 
Tidak terbatas, karena jaringan wireless bisa diakses oleh siapa saja, dan bisa dikonfigurasi sesuai dengan keinginan.



Kamis, 28 Oktober 2010

CCNA Discovery 1 Module 9 Exam Answers Version 4.0


CCNA Discovery 1 Module 9 Exam Answers Version 4.0
1. What should a network administrator do first after receiving a call from a user who cannot access the company web server?
• Reboot the web server.
• Replace the NIC of the computer.
• Ask the user to log off and log on again.
• Ask the user what URL has been typed and what error message displays.

2. A customer called the cable company to report that the Internet connection is unstable. After trying several configuration changes, the technician decided to send the customer a new cable modem to try. What troubleshooting technique does this represent?
• top-down
• bottom-up
• substitution
• trial-and-error
• divide-and-conquer

3. Only one workstation on a particular network cannot reach the Internet. What is the first troubleshooting step if the divide-and-conquer method is being used?
• Check the NIC, and then check the cabling.
• Check the workstation TCP/IP configuration.
• Test all cables, and then test layer by layer up the OSI model.
• Attempt to Telnet, and then test layer by layer down the OSI model.

4. Which two troubleshooting techniques are suitable for both home networks and large corporate networks? (Choose two.)
• having a backup ISR
• running network monitoring applications
• documenting the troubleshooting process
• keeping a record of system upgrades and software versions

• keeping spare switches, routers, and other equipment available

5. Identify two physical-layer network problems. (Choose two.)
• hardware failure
• software configuration
• devices not able to ping
• loose cable connections
• device driver configuration

6. Which ipconfig command requests IP configuration from a DHCP server?
• ipconfig
• ipconfig /all
• ipconfig /renew
• ipconfig /release

7. What command is used to determine the location of delay for a packet traversing the Internet?
• ipconfig
• netstat
• nslookup
• ping
• tracert

8. What command is used to determine if a DNS server is providing name resolution?
• ipconfig
• netstat
• nslookup
• tracert

9. Which troubleshooting method begins by examining cable connections and wiring issues?
• top-down
• bottom-up
• substitution
• divide-and-conquer

10. A technician suspects that a Linksys integrated router is the source of a network problem. While troubleshooting, the technician notices a blinking green activity LED on some of the ports. What does this indicate?
• Self-diagnostics have not completed.
• The power supply is the source of the problem.
• The ports are operational and are receiving traffic.
• The ports are operational, but no traffic is flowing.
• There are no cables plugged into those ISR ports.
• The ports have cables plugged in, but they are not functional.

11. A PC is plugged into a switch and is unable to connect to the network. The UTP cable is suspected. What could be the problem?
• A straight-through cable is being used
• The connectors at both ends of the cable are RJ-45.
• The RJ-45 connectors are crimped onto the cable jacket.
• A crossover cable is being used.

12. Refer to the graphic. What configuration is incorrect in the network shown?
• The host IP address is incorrect.
• The host subnet mask is incorrect.
• The host default gateway is incorrect.
• The wired connection is the wrong type of cable.
• The Linksys integrated router does not support wireless.

13. Which three settings must match on the client and access point for a wireless connection to occur? (Choose three.)
• SSID
• authentication
• MD5 checksum
• antennae type
• encryption key
• MAC address filters

14. A technician is troubleshooting a security breach on a new wireless access point. Which three configuration settings make it easy for hackers to gain access? (Choose three.)
• configuring NAT
• broadcasting the SSID
• using open authentication
• enabling MAC address filters
• using the default internal IP address
• using DHCP to provide IP addresses

15. Refer to the graphic. The wireless host cannot access the Internet, but the wired host can. What is the problem?
• The host WEP key is incorrect.
• The host IP address is incorrect.
• The host subnet mask is incorrect.
• The host default gateway is incorrect.
• The integrated router internal IP address is incorrect.
• The integrated router Internet IP address is incorrect.

16. Refer to the graphic. What configuration is incorrect in the network shown?
• The host IP address is incorrect.
• The host subnet mask is incorrect.
• The host default gateway is incorrect.
• The wired connection is the wrong type of cable.
• The Linksys integrated router does not support wireless.

17. When acting as a DHCP server, what three types of information can an ISR provide to a client? (Choose three.)
• physical address
• MAC address
• default gateway
• static IP address
• dynamic IP address
• DNS server address


18. What two items could be checked to verify connectivity between the router and the ISP? (Choose two.)
• router status page
• wireless card settings
• router operating system version
• local host operating system version
• connectivity status as indicated by LEDs

19. A technician is unsuccessful in establishing a console session between a PC and a Linksys integrated router. Both devices have power, and a cable is connected between them. Which two troubleshooting steps could help to diagnose this problem? (Choose two.)
• Ensure the correct cable is used.
• Ensure the SSID is the same on both devices.
• Ensure both devices have the same IP address.
• Ensure both devices have different subnet masks.
• Ensure the encryption type on both devices match.
• Ensure the link status LED on the integrated router is lit.

20. Network baselines should be performed in which two situations? (Choose two.)
• after the network is installed and running optimally
• after a virus outbreak is discovered on the network
• after major changes are implemented on the network
• after several computers are added to the network
• at the end of the work week

21. Typically, help desk personnel assist end users in which two tasks? (Choose two.)
• identifying when the problem occurred
• determining if other users are currently logged into the computer
• updating network diagrams and documentation
• implementing the solution to the problem
• running a network baseline test
• determining the cost of fixing the problem

22. How does remote-access software help in the troubleshooting process?
• Remote access uses a live chat feature.
• Users have to be present so that they can view LEDs and change cables if necessary.
• Diagnostics can be run without a technician being present at the site.
• FAQs can be consulted more easily.

23. Which two items should be added to the documentation following a troubleshooting event? (Choose two.)
• final resolution
• repetitive measures
• number of people involved in the problem
• accurate current network infrastructure diagrams
• results of successful and unsuccessful troubleshooting steps

CCNA Discovery 1 Module 8 Exam Answers Version 4.0


CCNA Discovery 1 Module 8 Exam Answers Version 4.0
1. Identify three techniques used in social engineering. (Choose three.)
• fishing
• vishing
• phishing

• spamming
• pretexting
• junk mailing

2. During a pretexting event, how is a target typically contacted?
• by e-mail
• by phone
• in person
• through another person

3. While surfing the Internet, a user notices a box claiming a prize has been won. The user opens the box unaware that a program is being installed. An intruder now accesses the computer and retrieves personal information. What type of attack occurred?
• worm
• virus
• Trojan horse
• denial of service

4. What is a major characteristic of a Worm?
• malicious software that copies itself into other executable programs
• tricks users into running the infected software
• a set of computer instructions that lies dormant until triggered by a specific event
• exploits vulnerabilities with the intent of propagating itself across a network

5. A flood of packets with invalid source-IP addresses requests a connection on the network. The server busily tries to respond, resulting in valid requests being ignored. What type of attack occurred?
• Trojan horse
• brute force
• ping of death
• SYN flooding

6. What type of advertising is typically annoying and associated with a specific website that is being visited?
• adware
• popups
• spyware
• tracking cookies

7. What is a widely distributed approach to marketing on the Internet that advertises to as many individual users as possible via IM or e-mail?
• brute force
• spam
• spyware
• tracking cookies

8. What part of the security policy states what applications and usages are permitted or denied?
• identification and authentication
• remote access
• acceptable use
• incident handling

9. Which statement is true regarding anti-virus software?
• Only e-mail programs need to be protected.
• Only hard drives can be protected.
• Only after a virus is known can an anti-virus update be created for it.
• Only computers with a direct Internet connection need it.

10. Which two statements are true concerning anti-spam software? (Choose two.)
• Anti-spam software can be loaded on either the end-user PC or the ISP server, but not both.
• When anti-spam software is loaded, legitimate e-mail may be classified as spam by mistake.
• Installing anti-spam software should be a low priority on the network.
• Even with anti-spam software installed, users should be careful when opening e-mail attachments.
• Virus warning e-mails that are not identified as spam via anti-spam software should be forwarded to other users immediately.

11. What term is used to describe a dedicated hardware device that provides firewall services?
• server-based
• integrated
• personal
• appliance-based

12. Which acronym refers to an area of the network that is accessible by both internal, or trusted, as well as external, or untrusted, host devices?
• SPI
• DMZ
• ISR
• ISP

13. Which statement is true about port forwarding within a Linksys integrated router?
• Only external traffic that is destined for specific internal ports is permitted. All other traffic is denied.
• Only external traffic that is destined for specific internal ports is denied. All other traffic is permitted.
• Only internal traffic that is destined for specific external ports is permitted. All other traffic is denied.
• Only internal traffic that is destined for specific external ports is denied. All other traffic is permitted.

14. To which part of the network does the wireless access point part of a Linksys integrated router connect?
• DMZ
• external
• internal
• a network other than the wired network

15. Refer to the graphic. What is the purpose of the Internet Filter option of Filter IDENT (Port 113. on the Linksys integrated router?
• to require a user ID and password to access the router
• to prevent outside intruders from attacking the router through the Internet
• to require a pre-programmed MAC address or IP address to access the router
• to disable tracking of internal IP addresses so they cannot be spoofed by outside devices

16. What statement is true about security configuration on a Linksys integrated router?
• A DMZ is not supported.
• The router is an example of a server-based firewall.
• The router is an example of an application-based firewall.
• Internet access can be denied for specific days and times.

17. What environment would be best suited for a two-firewall network design?
• a large corporate environment
• a home environment with 10 or fewer hosts
• a home environment that needs VPN access
• a smaller, less congested business environment

18. What is one function that is provided by a vulnerability analysis tool?
• It provides various views of possible attack paths.
• It identifies missing security updates on a computer.
• It identifies wireless weak points such as rogue access points.
• It identifies all network devices on the network that do not have a firewall installed.
• It identifies MAC and IP addresses that have not been authenticated on the network.

19. Many best practices exist for wired and wireless network security. The list below has one item that is not a best practice. Identify the recommendation that is not a best practice for wired and wireless security.
• Periodically update anti-virus software.
• Be aware of normal network traffic patterns.
• Periodically update the host operating system.
• Activate the firewall on a Linksys integrated router.
• Configure login permissions on the integrated router.
• Disable the wireless network when a vulnerability analysis is being performed.

20. What best practice relates to wireless access point security?
• activation of a popup stopper
• a change of the default IP address
• an update in the antivirus software definitions
• physically securing the cable between the access point and client

21. Refer to the graphic. In the Linksys Security menu, what does the SPI Firewall Protection option Enabled provide?
• It prevents packets based on the application that makes the request.
• It allows packets based on approved internal MAC or IP addresses.
• It requires that packets coming into the router be responses to internal host requests.
• It translates an internal address or group of addresses into an outside, public address.

CCNA Discovery 1 Module 7 Exam Answers Version 4.0


CCNA Discovery 1 Module 7 Exam Answers Version 4.0
1. Why is IEEE 802.11 wireless technology able to transmit further distances than Bluetooth technology?
• transmits at much lower frequencies
• has higher power output
• transmits at much higher frequencies
• uses better encryption methods

2. What are three advantages of wireless over wired technology? (Choose three.)
• more secure
• longer range
• anytime, anywhere connectivity
• easy and inexpensive to install

• ease of using licensed air space
• ease of adding additional devices

3. What are two benefits of wireless networking over wired networking? (Choose two.)
• speed
• security
• mobility
• reduced installation time

• allows users to share more resources
• not susceptible to interference from other devices

4. A technician has been asked to provide wireless connectivity to the wired Ethernet network of a building. Which three factors affect the number of access points needed? (Choose three.)
• the size of the building
• the number of solid interior walls in the building
• the presence of microwave ovens in several offices

• the encryption method used on the wireless network
• the use of both Windows and Appletalk operating systems
• the use of shortwave or infrared on the AP

5. Why is security so important in wireless networks?
• Wireless networks are typically slower than wired networks.
• Televisions and other devices can interfere with wireless signals.
• Wireless networks broadcast data over a medium that allows easy access.
• Environmental factors such as thunderstorms can affect wireless networks.

6. What does the Wi-Fi logo indicate about a wireless device?
• IEEE has approved the device.
• The device is interoperable with all other wireless standards.
• The device is interoperable with other devices of the same standard that also display the Wi-Fi logo.
• The device is backwards compatible with all previous wireless standards.

7. Which statement is true concerning wireless bridges?
• connects two networks with a wireless link
• stationary device that connects to a wireless LAN
• allows wireless clients to connect to a wired network
• increases the strength of a wireless signal

8. Which WLAN component is commonly referred to as an STA?
• cell
• antenna
• access point
• wireless bridge
• wireless client

9. Which statement is true concerning an ad-hoc wireless network?
• created by connecting wireless clients in a peer-to-peer network
• created by connecting wireless clients to a single, centralized AP
• created by connecting multiple wireless basic service sets through a distribution system
• created by connecting wireless clients to a wired network using an ISR

10. Refer to the graphic. In the Wireless menu option of a Linksys integrated router, what does the Network Mode option Mixed mean?
• The router supports encryption and authentication.
• The router supports both wired and wireless connections.
• The router supports 802.11b, 802.11g, and 802.11n devices.
• The router supports connectivity through infrared and radio frequencies.

11. Refer to the graphic. In the Wireless menu of a Linksys integrated router, what configuration option allows the presence of the access point to be known to nearby clients?
• Network Mode
• Network Name (SSID)
• Radio Band
• Wide Channel
• Standard Channel
• SSID Broadcast

12. Which two statements about a service set identifier (SSID) are true? (Choose two.)
• tells a wireless device to which WLAN it belongs
• consists of a 32-character string and is not case sensitive
• responsible for determining the signal strength
• all wireless devices on the same WLAN must have the same SSID
• used to encrypt data sent across the wireless network

13. Which two statements characterize wireless network security? (Choose two.)
• Wireless networks offer the same security features as wired networks.
• Wardriving enhances security of wireless networks.
• With SSID broadcast disabled, an attacker must know the SSID to connect.
• Using the default IP address on an access point makes hacking easier.

• An attacker needs physical access to at least one network device to launch an attack.

14. What type of authentication does an access point use by default?
• Open
• PSK
• WEP
• EAP

15. Which statement is true about open authentication when it is enabled on an access point?
• requires no authentication
• uses a 64-bit encryption algorithm
• requires the use of an authentication server
• requires a mutually agreed upon password

16. What are two authentication methods that an access point could use? (Choose two.)
• WEP
• WPA
• EAP
• ASCII
• pre-shared keys

17. What is the difference between using open authentication and pre-shared keys?
• Open authentication requires a password. Pre-shared keys do not require a password.
• Open authentication is used with wireless networks. Pre-shared keys are used with wired networks.
• Pre-shared keys require an encrypted secret word. Open authentication does not require a secret word.
• Pre-shared keys require a MAC address programmed into the access point. Open authentication does not require this programming.

18. What term describes the encoding of wireless data to prevent intercepted data from being read by a hacker?
• address filtering
• authentication
• broadcasting
• encryption
• passphrase encoding

19. What access-point feature allows a network administrator to define what type of data can enter the wireless network?
• encryption
• hacking block
• traffic filtering
• MAC address filtering
• authentication

20. What are the two WEP key lengths? (Choose two.)
• 8 bit
• 16 bit
• 32 bit
• 64 bit
• 128 bit


21. Complete the following sentence: WEP is used to ______ , and EAP is used to _____ wireless networks.
• encrypt; authenticate users on
• filter traffic; select the operating frequency for
• identify the wireless network; compress data on
• create the smallest wireless network; limit the number of users on

Kamis, 21 Oktober 2010

JAWABAN LAB ACTIVITY


Write down the exact SSID name that you are using……..(default)

Click on the Radio Band drop-down menu and write down the two options.
Wide  channel  and standard channel

CCNA Discovery
Networking for Home and Small Businesses

Step 3: Reflection

a.       How many wireless networks do you think could be configured in one classroom? What would limit this?
Pada satu ruangan cukup menggunakan satu perangkat wireless karena penggunaan nya tidak terbatas dan tidak menggunakan kabel.

b.      What do you see as a potential security problem when you broadcast your SSID from the AP?
Yang jadi masalah yang potensial yaitu penggunaan nya menggunakan listrik,sehingga saat listrik mati,maka  jaringan juga tidak dapat berfungsi.

Minggu, 17 Oktober 2010

CCNA Discovery 1 Module 5

1. How large are IPv4 addresses?
• 8 bits
• 16 bits
• 32 bits
• 64 bits
• 128 bits
2. Refer to the graphic. A user at the workstation cannot connect to the server. All cables have been tested and are working and all devices have IP addressing. However, the user cannot ping the server. What is causing the problem?
• The router interface does not have a default gateway.
• The switch does not have an IP address and default gateway.
• The workstation and server are on different logical networks.
• The workstation does not know the MAC address of the switch.
3. Which part of an IP address identifies a specific device on a network?
• first two octets
• third and fourth octets
• network portion
• host portion
• only the fourth octet
4. Given a host with the IP address 172.32.65.13 and a default subnet mask, to which network does the host belong?
• 172.32.65.0
• 172.32.65.32
• 172.32.0.0
• 172.32.32.0
5. Which default subnet mask provides the most host bits?
• 255.0.0.0
• 255.255.0.0
• 255.255.255.0
• 255.255.255.252
6. How many bits are available for Class B host IP addresses using a default subnet mask?
• 4
• 8
• 16
• 24
7. How many usable hosts are available given a Class C IP address with the default subnet mask?
• 254
• 255
• 256
• 510
• 511
• 512
8. Assuming a default mask, which portion of the IP address 175.124.35.4 represents the host?
• 175.124
• 35.4
• .4
• 124.35.4
• 175.124.35
9. Which of the following are private IP addresses? (Choose three.)
• 10.1.1.1
• 172.32.5.2
• 192.167.10.10
• 172.16.4.4
• 192.168.5.5
• 224.6.6.6
10. What destination IP address is used in a unicast packet?
• a specific host
• a group of hosts
• the default gateway
• the network broadcast address
11. What is the destination MAC address in a multicast Ethernet frame?
• the MAC address of the sending host
• the MAC address of the destination host
• an address that begins with 01-00-5E in hexadecimal
• a 48-bit hexadecimal address expressed as FF-FF-FF-FF-FF-FF
12. Yvonne is talking to her friend on the phone. What type of message is this?
• broadcast
• simulcast
• multicast
• unicast
13. What information must be included within a unicast message for it to be delivered on an Ethernet network?
• MAC and IP addresses for the default router
• IP address and subnet mask of the default gateway
• MAC and IP addresses that correspond to a destination group
MAC and IP addresses that correspond to a specific destination host
14. A PC obtains its IP address from a DHCP server. If the PC is taken off the network for repair, what happens to the IP address configuration?
• The configuration is permanent and nothing changes.
• The address lease is automatically renewed until the PC is returned.
• The address is returned to the pool for reuse when the lease expires.
• The configuration is held by the server to be reissued when the PC is returned.
15. Which type of server dynamically assigns an IP address to a host?
• ARP
• DHCP
• DNS
• RARP
16. Which three statements describe a DHCP Discover message? (Choose three.)
• The source MAC address is 48 ones (FF-FF-FF-FF-FF-FF).
• The destination IP address is 255.255.255.255.
• The message comes from a server offering an IP address.
• The message comes from a client seeking an IP address.
• All hosts receive the message, but only a DHCP server replies.
• Only the DHCP server receives the message.
17. Refer to the graphic. A host connects to a Linksys integrated router that is also a DHCP server and receives an IP address from it. Which address does the host need to access the ISP and the Internet?
• IP address of the destination host
• public gateway IP address of the ISP
• external IP address of the integrated router that connects to the ISP
• internal IP address of the integrated router that connects to the local network
18. Which statement is true concerning private IP addresses?
• ensures that two networks separated by the Internet use unique IP network numbers
• allows internal hosts to communicate with servers across the Internet
• solves the issue of a finite number of available public IP addresses
• allows for ISPs to be able to quickly determine network location
19. What is one of the purposes of NAT?
• filters network traffic based on IP address ranges
• prevents external users from detecting the IP addresses used on a network
• inspects traffic that might be harmful or used in an attack against the network
• translates IP addresses into easy-to-remember domain names
20. Which two statements describe packets that are sent through a Linksys integrated router using NAT? (Choose two.)
• Packets that are sent to any destination need to be translated.
• Packets that are sent to hosts on the same network need to be translated.
• Packets that are sent to a destination outside the local network need to be translated.
• Packets that are sent to a destination outside a local network do not need to be translated.
• Packets that are sent between hosts on the same local network do not need to be translated.
21. Refer to the graphic. NAT and DHCP are installed on the Linksys integrated router. Which IP address is most likely to be assigned to the local computer, Host1?
• 10.0.0.17
• 128.107.1.2
• 192.135.250.0
• 209.165.201.1

CCNA Discovery 1 Module 4


CCNA Discovery 1 Module 4 Exam Answers Version 4.0
1. Which definition describes the term Internet?
• a group of PCs connected together on a LAN
• a group of PCs connected together by an ISP
• a network of networks that connects countries around the world
• a worldwide collection of networks controlled by a single organization
2. What type of connection point is a point of presence (POP)?
• between a client and a host
• between two local networks
• between a computer and a switch
• between an ISP and a home-based LAN
3. What is the term for the group of high-speed data links that interconnect ISPs?
• Internet LAN
• ISP backbone
• Internet gateways
• Internet providers
• Internet backbone
4. Which device can act as a router, switch, and wireless access point in one package?
• hub
• bridge
• modem
• repeater
• ISR
5. What are three characteristics of business class ISP service? (Choose three.)
• fast connections
• extra web space
• free Windows upgrade
• cheapest cost available to all users
• additional e-mail accounts
• replacement hardware at no cost
6. What is a major characteristic of asymmetric Internet service?
• Download speeds and upload speeds are equal.
• Download speeds are slower than upload speeds.
• Upload speeds and download speeds are different.
• Upload speeds and download speeds are irrelevant.
7. Which three elements are required to successfully connect to the Internet? (Choose three.)
• an IP address
• file sharing enabled
• a network connection
• server services enabled
• access to an Internet service provider
• an address obtained directly from the RIR
8. What term describes each router through which a packet travels when moving between source and destination networks?
• NOC
• ISP
• hop
• segment
9. What does the tracert command test?
• NIC functionality
• the ISP bandwidth
• the network path to a destination
• the destination application functionality
10. What type of end-user connectivity requires that an ISP have a DSLAM device in their network?
• analog technology
• cable modem technology
• digital subscriber line technology

• wireless technology
11. Why would an ISP require a CMTS device on their network?
• to connect end users using cable technology

• to connect end users using analog technology
• to connect end users using wireless technology
• to connect end users using digital subscriber line technology
12. Refer to the graphic. What type of cabling is shown?
• STP
• UTP
• coax
• fiber
13. Refer to the graphic. What type of cabling is shown?
• STP
• UTP
• coax
• fiber
14. Which two places are most appropriate to use UTP cabling? (Choose two.)
• between buildings
• in a home office network
• where EMI is an issue
• in a cable TV network
• inside a school building
• in a manufacturing environment with hundreds of electrical devices
15. What does adherence to cabling standards ensure?
• data security
• no loss of signal
• no electromagnetic interference
• reliable data communications
16. Refer to the graphic. What type of cable is shown?
• crossover
• eight coax channels
• multimode fiber
• single-mode fiber
• straight-through
17. What connector is used to terminate Ethernet unshielded twisted pair (UTP) cabling?
• ST
• BNC
• RJ-11
• RJ-45
18. Which two characteristics describe copper patch panels? (Choose two.)
• uses RJ-11 jacks
• uses RJ-45 jacks
• supports only data transmissions
• allows quick rearrangements of network connections
• forwards transmissions based on MAC addresses
19. What are two advantages of cable management? (Choose two.)
• requires no preplanning
• aids in isolation of cabling problems
• protects cables from physical damage

• provides compliance with future standards
• provides a short-term solution for cable installation
20. What are two common causes of signal degradation when using UTP cabling? (Choose two.)
• installing cables in conduit
• having improper termination
• losing light over long distances
• installing low quality cable shielding
• using low quality cables or connectors
21. What are three commonly followed standards for constructing and installing cabling? (Choose three.)
• pinouts
• cable lengths
• connector color
• connector types

• cost per meter (foot)
• tensile strength of plastic insulator