
EC-CouncilCertified Network Defender
Domain 2Objective 1
Network Perimeter Security CND Practice Questions (Page 7)
Part of the Perimeter and Endpoint Security domain, which makes up ~24% of our current practice bank.
39questions here
8free pages
7concepts
Questions 31–35
- 31
Which of the following is the primary purpose of a network perimeter security strategy?
Select an answer first - 32
Which protocol is commonly used to establish a secure VPN tunnel and encrypt data transmitted between a remote user and the corporate network?
Select an answer first - 33
An IDS deployed at the network perimeter generates a high volume of alerts for port scans against the DMZ web server. The security team confirms the scans originate from a single external IP and no successful intrusions have occurred. The team wants to reduce alert fatigue while maintaining visibility. What should they do?
Select an answer first - 34
An organization's firewall has a rule that allows all outbound traffic. The security team wants to reduce the risk of data exfiltration while minimizing disruption to business operations. Which approach is most appropriate?
Select an answer first - 35
An organization deploys an IPS in inline mode at the perimeter. After deployment, users report that a legitimate business application is failing intermittently. The IPS logs show that the application's traffic matches a signature for a known exploit, but the traffic is benign. What should the administrator do first?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.