
GIAC Certified Intrusion Analyst
Domain 1Objective 5
UDP and ICMP GCIA Practice Questions (Page 3)
Part of the Network Fundamentals domain, which makes up ~35% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~33–56 in this domain), expect 7–11 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)
33questions here
7free pages
6concepts
Questions 11–15
- 11
A packet capture shows a UDP datagram with source port 53, destination port 5353, length 45, and checksum 0x1234. What is the purpose of the checksum field in this UDP header?
Select an answer first - 12
An analyst is reviewing a packet capture and sees a UDP packet with source port 53 and destination port 5353. The UDP length field is 45 bytes. What type of traffic is this most likely to be?
Select an answer first - 13
A network engineer is troubleshooting a connectivity issue. A packet capture shows an ICMP Time Exceeded message being sent back to the source. Which condition most likely triggered this ICMP message?
Select an answer first - 14
A network analyst is investigating a slow network connection. The analyst sees ICMP Redirect messages in the packet capture. What is the purpose of an ICMP Redirect message?
Select an answer first - 15
Which ICMP message type would a router send when it cannot forward a packet because the destination network is unreachable?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCIA” is a trademark of its owner, used for identification only.