Kamis, 28 Oktober 2010

ccna discovery 1.7

CCNA Discovery 1.7

1. • transmits at much higher frequencies

2. • anytime, anywhere connectivity

• easy and inexpensive to install

• ease of using licensed air space

3. •Speed

• allows users to share more resources

4. • the use of shortwave or infrared on the AP

• the presence of microwave ovens in several offices

• the encryption method used on the wireless network

5. • Environmental factors such as thunderstorms can affect wireless networks.

6. • The device is backwards compatible with all previous wireless standards.

7. • connects two networks with a wireless link

• increases the strength of a wireless signal

8. • access point

9. • created by connecting wireless clients in a peer-to-peer network

10.• The router supports 802.11b, 802.11g, and 802.11n devices.

11.• Network Name (SSID)

12. • consists of a 32-character string and is not case sensitive

• used to encrypt data sent across the wireless network

13. • Wardriving enhances security of wireless networks.

• With SSID broadcast disabled, an attacker must know the SSID to connect.

14. • EAP

15. • requires no authentication

16. • EAP .

17.• Open authentication requires a password. Pre-shared keys do not require a password.

18. • encryption

19.• MAC address filtering

20. • 16 bit

21.• identify the wireless network; compress data on

CCNA Discovery 1.8 & 1.9

 CCNA Discovery 1 Module 8
1. Identify three techniques used in social engineering. (Choose three.)
• fishing
• vishing
• phishing
• spamming
• pretexting
• junk mailing
2. During a pretexting event, how is a target typically contacted?
• by e-mail
• by phone
• in person
• through another person
3. While surfing the Internet, a user notices a box claiming a prize has been won. The user opens the box unaware that a program is being installed. An intruder now accesses the computer and retrieves personal information. What type of attack occurred?
• worm
• virus
• Trojan horse
• denial of service
4. What is a major characteristic of a Worm?
• malicious software that copies itself into other executable programs
• tricks users into running the infected software
• a set of computer instructions that lies dormant until triggered by a specific event
• exploits vulnerabilities with the intent of propagating itself across a network
5. A flood of packets with invalid source-IP addresses requests a connection on the network. The server busily tries to respond, resulting in valid requests being ignored. What type of attack occurred?
• Trojan horse
• brute force
• ping of death
• SYN flooding

6. What type of advertising is typically annoying and associated with a specific website that is being visited?
• adware
• popups
• spyware
• tracking cookies
7. What is a widely distributed approach to marketing on the Internet that advertises to as many individual users as possible via IM or e-mail?
• brute force
• spam
• spyware
• tracking cookies
8. What part of the security policy states what applications and usages are permitted or denied?
• identification and authentication
• remote access
• acceptable use
• incident handling
9. Which statement is true regarding anti-virus software?
• Only e-mail programs need to be protected.
• Only hard drives can be protected.
• Only after a virus is known can an anti-virus update be created for it.
• Only computers with a direct Internet connection need it.
10. Which two statements are true concerning anti-spam software? (Choose two.)
• Anti-spam software can be loaded on either the end-user PC or the ISP server, but not both.
• When anti-spam software is loaded, legitimate e-mail may be classified as spam by mistake.
• Installing anti-spam software should be a low priority on the network.
• Even with anti-spam software installed, users should be careful when opening e-mail attachments.
• Virus warning e-mails that are not identified as spam via anti-spam software should be forwarded to other users immediately.
11. What term is used to describe a dedicated hardware device that provides firewall services?
• server-based
• integrated
• personal
• appliance-based

12. Which acronym refers to an area of the network that is accessible by both internal, or trusted, as well as external, or untrusted, host devices?
• SPI
• DMZ
• ISR
• ISP
13. Which statement is true about port forwarding within a Linksys integrated router?
• Only external traffic that is destined for specific internal ports is permitted. All other traffic is denied.
• Only external traffic that is destined for specific internal ports is denied. All other traffic is permitted.
• Only internal traffic that is destined for specific external ports is permitted. All other traffic is denied.
• Only internal traffic that is destined for specific external ports is denied. All other traffic is permitted.
14. To which part of the network does the wireless access point part of a Linksys integrated router connect?
• DMZ
• external
• internal
• a network other than the wired network
15. Refer to the graphic. What is the purpose of the Internet Filter option of Filter IDENT (Port 113. on the Linksys integrated router?
• to require a user ID and password to access the router
• to prevent outside intruders from attacking the router through the Internet
• to require a pre-programmed MAC address or IP address to access the router
• to disable tracking of internal IP addresses so they cannot be spoofed by outside devices
16. What statement is true about security configuration on a Linksys integrated router?
• A DMZ is not supported.
• The router is an example of a server-based firewall.
• The router is an example of an application-based firewall.
• Internet access can be denied for specific days and times.

17. What environment would be best suited for a two-firewall network design?
• a large corporate environment
• a home environment with 10 or fewer hosts
• a home environment that needs VPN access
• a smaller, less congested business environment
18. What is one function that is provided by a vulnerability analysis tool?
• It provides various views of possible attack paths.
• It identifies missing security updates on a computer.
• It identifies wireless weak points such as rogue access points.
• It identifies all network devices on the network that do not have a firewall installed.
• It identifies MAC and IP addresses that have not been authenticated on the network.
19. Many best practices exist for wired and wireless network security. The list below has one item that is not a best practice. Identify the recommendation that is not a best practice for wired and wireless security.
• Periodically update anti-virus software.
• Be aware of normal network traffic patterns.
• Periodically update the host operating system.
• Activate the firewall on a Linksys integrated router.
• Configure login permissions on the integrated router.
• Disable the wireless network when a vulnerability analysis is being performed.
20. What best practice relates to wireless access point security?
• activation of a popup stopper
• a change of the default IP address
• an update in the antivirus software definitions
• physically securing the cable between the access point and client
21. Refer to the graphic. In the Linksys Security menu, what does the SPI Firewall Protection option Enabled provide?
• It prevents packets based on the application that makes the request.
• It allows packets based on approved internal MAC or IP addresses.
• It requires that packets coming into the router be responses to internal host requests.
• It translates an internal address or group of addresses into an outside, public address

CCNA Discovery 1 Module 9 Exam Answers Version 4.0
1. What should a network administrator do first after receiving a call from a user who cannot access the company web server?
• Reboot the web server.
• Replace the NIC of the computer.
• Ask the user to log off and log on again.
• Ask the user what URL has been typed and what error message displays.
2. A customer called the cable company to report that the Internet connection is unstable. After trying several configuration changes, the technician decided to send the customer a new cable modem to try. What troubleshooting technique does this represent?
• top-down
• bottom-up
• substitution
• trial-and-error
• divide-and-conquer
3. Only one workstation on a particular network cannot reach the Internet. What is the first troubleshooting step if the divide-and-conquer method is being used?
• Check the NIC, and then check the cabling.
• Check the workstation TCP/IP configuration.
• Test all cables, and then test layer by layer up the OSI model.
• Attempt to Telnet, and then test layer by layer down the OSI model.
4. Which two troubleshooting techniques are suitable for both home networks and large corporate networks? (Choose two.)
• having a backup ISR
• running network monitoring applications
• documenting the troubleshooting process
• keeping a record of system upgrades and software versions
• keeping spare switches, routers, and other equipment available
5. Identify two physical-layer network problems. (Choose two.)
• hardware failure
• software configuration
• devices not able to ping
• loose cable connections
• device driver configuration

6. Which ipconfig command requests IP configuration from a DHCP server?
• ipconfig
• ipconfig /all
• ipconfig /renew
• ipconfig /release
7. What command is used to determine the location of delay for a packet traversing the Internet?
• ipconfig
• netstat
• nslookup
• ping
• tracert
8. What command is used to determine if a DNS server is providing name resolution?
• ipconfig
• netstat
• nslookup
• tracert
9. Which troubleshooting method begins by examining cable connections and wiring issues?
• top-down
• bottom-up
• substitution
• divide-and-conquer
10. A technician suspects that a Linksys integrated router is the source of a network problem. While troubleshooting, the technician notices a blinking green activity LED on some of the ports. What does this indicate?
• Self-diagnostics have not completed.
• The power supply is the source of the problem.
• The ports are operational and are receiving traffic.
• The ports are operational, but no traffic is flowing.
• There are no cables plugged into those ISR ports.
• The ports have cables plugged in, but they are not functional.
11. A PC is plugged into a switch and is unable to connect to the network. The UTP cable is suspected. What could be the problem?
• A straight-through cable is being used
• The connectors at both ends of the cable are RJ-45.
• The RJ-45 connectors are crimped onto the cable jacket.
• A crossover cable is being used.
12. Refer to the graphic. What configuration is incorrect in the network shown?
• The host IP address is incorrect.
• The host subnet mask is incorrect.
• The host default gateway is incorrect.
• The wired connection is the wrong type of cable.
• The Linksys integrated router does not support wireless.
13. Which three settings must match on the client and access point for a wireless connection to occur? (Choose three.)
• SSID
• authentication
• MD5 checksum
antennae type
• encryption key
• MAC address filters
14. A technician is troubleshooting a security breach on a new wireless access point. Which three configuration settings make it easy for hackers to gain access? (Choose three.)
• configuring NAT
• broadcasting the SSID
• using open authentication

enabling MAC address filters
• using the default internal IP address
• using DHCP to provide IP addresses
15. Refer to the graphic. The wireless host cannot access the Internet, but the wired host can. What is the problem?
• The host WEP key is incorrect.
• The host IP address is incorrect.
• The host subnet mask is incorrect.
• The host default gateway is incorrect.
• The integrated router internal IP address is incorrect.
• The integrated router Internet IP address is incorrect.
16. Refer to the graphic. What configuration is incorrect in the network shown?
• The host IP address is incorrect.
• The host subnet mask is incorrect.
• The host default gateway is incorrect.
• The wired connection is the wrong type of cable.
• The Linksys integrated router does not support wireless.
17. When acting as a DHCP server, what three types of information can an ISR provide to a client? (Choose three.)
• physical address
• MAC address
• default gateway
• static IP address
• dynamic IP address
• DNS server address
18. What two items could be checked to verify connectivity between the router and the ISP? (Choose two.)
• router status page
• wireless card settings
• router operating system version

• local host operating system version
• connectivity status as indicated by LEDs
19. A technician is unsuccessful in establishing a console session between a PC and a Linksys integrated router. Both devices have power, and a cable is connected between them. Which two troubleshooting steps could help to diagnose this problem? (Choose two.)
• Ensure the correct cable is used.
• Ensure the SSID is the same on both devices.
• Ensure both devices have the same IP address.
• Ensure both devices have different subnet masks.
• Ensure the encryption type on both devices match.
• Ensure the link status LED on the integrated router is lit.
20. Network baselines should be performed in which two situations? (Choose two.)
• after the network is installed and running optimally
• after a virus outbreak is discovered on the network
• after major changes are implemented on the network
• after several computers are added to the network
• at the end of the work week
21. Typically, help desk personnel assist end users in which two tasks? (Choose two.)
• identifying when the problem occurred
• determining if other users are currently logged into the computer
• updating network diagrams and documentation
• implementing the solution to the problem
• running a network baseline test
• determining the cost of fixing the problem
22. How does remote-access software help in the troubleshooting process?
• Remote access uses a live chat feature.
• Users have to be present so that they can view LEDs and change cables if necessary.
• Diagnostics can be run without a technician being present at the site.
• FAQs can be consulted more easily.
23. Which two items should be added to the documentation following a troubleshooting event? (Choose two.)
• final resolution
• repetitive measures
• number of people involved in the problem
• accurate current network infrastructure diagrams
• results of successful and unsuccessful troubleshooting steps

Jumat, 22 Oktober 2010

Lab 7.2.6 Configuring a Wireless Client

Neneng Elsovia

00668

Pendidikan Teknik Informatika

Required Equipment
One each of the following:
Access Point (AP)
Computer
Wireless Client Hardware
Checklist:
1. Unit
2. CD-ROM: User Guide
and Setup Guide
3. Ethernet Cable
4. Power Adapter (1 pc)
5. Quick Installation Book
*We will be using two different client models: Linksys WUSB54G and WUSB200. We will also help
connect attendees’ client PCs if they have different WLS client hardware.
Steps 1–3 Review (should already be done)
Step
1 Computer Ready
2 Open Linksys Access Point Box
3 AP Box Items Checklist
Linksys Wireless CCNA Setup
Step 4
Installation Guide Step: Connecting the Router (Layer 1 Only)
Connect Ethernet cable and plug from switchport on router to your NIC
DO NOT connect wirelessly to manage the router!
0T
s Router Lab 10 © 2008 Cisco Systems, Inc. All rights reserved. Cisco Public
Linksys Wireless CCNA Setup
Step 5
Usually use CD to go through easy install. (Skipping)
PC Configuration as per Installation Guide: Explore Variables,
“What Can Go Wrong…”
1. Many APs create a lot of noise
2. Some APs can manage over the wireless out of box but should only manage
through hardwired connection; DO NOT connect wirelessly to manage the router!
3. SSIDs are the same on all Linksys; we want to change in the beginning of the lab
4. All routers use the 192.168.1.1 address; reassign IP address based on what
given by speaker
**After changing SSID and IP, disconnect and reconnect to router
5. As long as SSIDs are changed, overlapping DHCP scope should not be a
problem
6. Some Windows desktops loose their network connections and/or SSID broadcast;
this is a Windows issue
7. WUSB clients CD out of the box does not work with VISTA; CD setups do not
work with Macintosh
8. Internet Explorer should be used for all the management
Step 6 – Lab
Router Configuration
Before beginning, everyone
reset the “firmware” button on
the router
Follow along lab 7.2.5
Reminder: Do not use wireless
connection for management
Menu
Generally Main menu – black bar
d sub menu – blue bar
Menu tour
Network Mode
SSID (change to last name)
Radio Band
Wide Channel
Standard Channel
SSID Broadcast
Change IP Address
Presenter gives out IP addresses to each
wireless router
ƒOther Options: Different Linksys Technology
Offerings
Step 7
Wireless Client Configuration
Follow along lab 7.2.6
or
For advanced users, use time
to investigate product menus
Lab details in 7.2.6
Finding APs
Finding SSID
Signal strength
Step 8
Basic Wireless Features
Highlighting key points
Radio Band
Wireless Network Name
Wireless Mode
Wide Channel
Standard Channel
Security
Authentication
Network Type
IP Address
Subnet Mask
Default Gateway
DNS1
MAC Address filtering
Step 9
9 View differences WRV200 to
WRT300N
Join another router’s SSID and insure
web management is enabled
Compare home series vs business
series for differences and similaritie

Lab 7.2.5 Configuring a Wireless Access Point

Neneng Elsovia

00668

Pendidikan Teknik Informatika

Objective
•Configure the wireless access point (AP) portion of a multi-function device to allow access to a wireless client.
Background / Preparation
The Linksys WRT300N includes an integrated 4-port switch, a router and a wireless Access Point (AP). In this lab, you will configure the AP component of the multi-function device to allow access for wireless clients. The basic wireless capabilities of the multi-function device will be configured but this will not be a secure wireless network. Setting up a secure wireless network will be covered in a later lab.
The following resources are required:
• Windows XP based computer that is cabled to the multi-function device
• Linksys WRT300N
Step 1: Verify connectivity between the computer and the multi-function device
a. The computer used to configure the AP should be attached to one of the multi-function device’s switch ports.
b. On the computer, click the Start button and select Run. Type cmd and click OK or press Enter.
c. At the command prompt, ping the multi-function device using the default IP address 192.168.1.1 or the IP that has been configured on the multi-function device’s port. Do not proceed until the ping succeeds.
d. Write down the command used to ping the multi-function device.
The answer : ping 192.168.1.1 -t
NOTE: If the ping is not successful, try these troubleshooting steps:
• Check to make sure the IP address of the computer is on the 192.168.1.0 network. The computer must be on the same network as the multi-function device to be able to ping it. The DHCP service ofthe multi-function device is enabled by default. If the computer is configured as a DHCP client itshould have a valid IP address and subnet mask. If the computer has a static IP address, it must be in on the 192.168.1.0 network and the subnet mask must be 255.255.255.0.
• Make sure the cable is a known-good straight-through cable. Test to verify.
• Verify that the link light for the port where the computer is attached is lit.
• Check whether the multi-function device has power.
If none of these steps correct the problem, check with your instructor.
Step 2: Log in to the multi-function device and configure the wireless network
a. Open a web browser. In the address line, type http://ip_address, where ip_address is the IP address
of the wireless router (default is 192.168.1.1). At the prompt, leave the user name textbox empty, but
type the password assigned to the router. The default password is admin. Click OK.
b. In the main menu, click on the Wireless option.
c. In the Basic Wireless Settings window, the Network Mode shows mixed by default, because the AP supports 802.11b, g, and n wireless devices. You can use any of these standards to connect to the AP. If the wireless portion of the multi-function device is NOT being used, the network mode would be set to Disabled. Leave the default of Mixed selected.
d. Delete the default SSID (linksys) in the Network Name (SSID) textbox. Enter a new SSID using your last name or name chosen by your instructor. SSIDs are case-sensitive.
e. Write down the exact SSID name that you are using. __________________________________
____________________________________________________________________________
f. Click on the Radio Band drop-down menu and write down the two options.
____________________________________________________________________________
g. For a wireless network that can use 802.11b, g, or n client devices, the default is Auto. Auto allows
the Wide Channel option to be chosen and gives the best performance. The Standard Channel
option is used if the wireless client devices are 802.11b or g, or both b and g. The Wide Channel
option is used if only 802.11n client devices are being used. Leave the default of Auto selected.
h. SSID Broadcast is set to enabled by default, which enables the AP to periodically send out the SSID
using the wireless antenna. Any wireless devices in the area can detect this broadcast. This is how
clients detect nearby wireless networks.
i. Click on the Save Settings button. When the settings have been successfully saved, click on
Continue.
j. The AP is now configured for a wireless network with the name (SSID) that you gave it. It is important
to write down this information before starting the next lab or attaching any wireless NICs to the
wireless network.

Jumat, 15 Oktober 2010

Lab Activity Chapter 6

Oleh:Neneng Elsovia


Lab Activity 6.2.1
Step 1 : Observe DNS conversion
a. Click the Start button, select Run, type cmd, and then click OK. The command prompt window appears.
b. At the command prompt, type ping www.cisco.com. The computer needs to translate
www.cisco.com into an IP address so it knows where to send the Internet Control Message Protocol
(ICMP) packets. Ping is a type of ICMP packet.

d. IP address is shown on the screen = 60.254.168.170.
e. tidak sama

Step 2 : Verify DNS operation using the nslookup command
b.  default DNS server being used is ns4.unp.ac.id
g. the translated IP address is 60.254.168.170.
h. sama

Step 3 : Identify mail servers using the nslookup command
c. server : e144.cd.akamaiedge.net, address : 60.254.168.170, aliases : www.cisco.com
f. server : ns4.unp.ac.id, address : 10.1.1.5


Lab Activity 6.2.3
Step 1 : Examine FTP from the command prompt
d.  append, ascii, bell
f. to send one file
g. get –> receive one file, send –> send one file, recv –> receive one file

Step 2 : Use a GUI FTP client or web browser


Lab Activity 6.2.4
Step 3 : Enter POP3 e-mail account information
c. (POP3) mail server
d. (SMTP) mail server