Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Associate (CCNA)

Domain 5Objective 1

5.1 Define Key Security Concepts (threats, Vulnerabilities, Exploits, and Mitigation Techniques) 200-301 Practice Questions (Page 2)

Part of the Security Fundamentals domain, which accounts for 15% of the 200-301 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 1–1 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)

30questions here
6free pages
4concepts
15%of the exam

Questions 6–10

  1. 6expert · hard

    A company is experiencing intermittent network outages. Analysis shows that the company's public web server is receiving a high volume of UDP traffic on port 53 from many different sources, and the server's CPU is saturated. The traffic appears to be DNS queries. Which type of attack is this, and which mitigation is MOST effective?

    Select an answer first
  2. 7application · medium

    A network administrator is reviewing security for a remote-access VPN. The VPN appliance has a default administrative account with a well-known password, and the administrator notices failed login attempts from the internet. Which vulnerability is being exploited, and which mitigation should be applied first?

    Select an answer first
  3. 8application · medium

    A company wants to reduce the risk of employees inadvertently installing malware by visiting malicious websites. The employees need to access a wide range of legitimate websites for research. Which mitigation is most appropriate?

    Select an answer first
  4. 9application · medium

    A network administrator notices that a router has an open Telnet service enabled on the management interface. An attacker uses a password-cracking tool to gain access. Which type of vulnerability is being exploited, and which mitigation would be MOST effective?

    Select an answer first
  5. 10expert · hard

    A company's network is experiencing a slow but steady increase in traffic from a botnet. The traffic is spread across many protocols and ports, making it difficult to block. The company wants to minimize the impact without causing downtime. Which approach is BEST?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-301” is a trademark of its owner, used for identification only.