5.1 Define key security concepts (threats, vulnerabilities, exploits, and mitigation techniques).
Objective 5.1 sits in Security Fundamentals, which carries 15% of the CCNA exam. The questions below are original, written from the official objective title above, and each explanation cites the Cisco page it rests on.
Objective title verbatim from the official objectives. Cisco exam page ↗
A worked example
Shown solved, with the whole explanation open: this is what every question here carries.
An attacker on a guest segment captures traffic and recovers a login sent in the clear, without sending a single packet. How is that attack classified?
Correct.
Concept
Attacks are usefully sorted by what the attacker has to be able to do rather than by the damage they cause. Reading traffic and injecting traffic need different positions on a network, so the two demand different defences.
Why B
Reading packets without writing any is the passive category, and password capture is its classic case. The later login with the captured password is active, but the capture that made it possible required no writing at all.
Now you: objective 5.1 questions
No account needed. The explanation opens when you answer.
Sample question 1 of 3
A shared hub in a lab is replaced by a switch. An analyser attached to a free port now sees far less of the other stations' traffic than it did before.
Sample question 2 of 3
Packets arriving on a branch router's Internet interface carry source addresses from the company's internal range. Which control drops them?
Sample question 3 of 3
An attacker can inject forged packets into a path but cannot see any of the replies. Which description fits that position?
That’s 3 of the full CCNA bank.
Keep going free: 10 questions per certification in bank practice, with no account.
Continue practicingRead the sources
These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.
More objectives in Security Fundamentals
- 5.2 5.2 Describe security program elements (user awareness, training, and physical access control).
- 5.6 5.6 Configure and verify access control lists.
- 5.7 5.7 Configure and verify Layer 2 security features (DHCP snooping, dynamic ARP inspection, and port security).
- 5.10 5.10 Configure and verify WLAN within the GUI using WPA2 PSK.