Question 1
A wireless deauthentication attack is primarily classified as what type of attack?
Correct Answer:
Denial of service attack
Explanation:
A wireless deauthentication attack falls primarily under the category of a denial of service attack. This type of attack aims to disrupt the normal functioning of a network by sending deauthentication frames to a target user or device. When a device receives these frames, it is effectively instructed to disconnect from the network, which can lead to service interruptions. In the context of wireless networks, the attacker exploits the lack of authentication in the deauthentication frames, allowing them to forcefully disconnect users from the network. This can prevent legitimate users from accessing the network services they need, thereby denying them service. The other types of attacks listed—downgrade attacks, brute-force attacks, and cryptographic attacks—have different objectives and mechanisms. Downgrade attacks typically involve forcing a system to revert to a less secure state; brute-force attacks focus on guessing passwords or encryption keys; and cryptographic attacks exploit weaknesses in algorithms or key management. Therefore, the nature of a wireless deauthentication attack aligns most closely with the characteristics of a denial of service attack.
Question 2
What action can increase security by making sure software is current and patched?
Correct Answer:
Regularly update software
Explanation:
Regularly updating software is a crucial action in enhancing security because it ensures that any known vulnerabilities are addressed and patched. Software developers frequently release updates that fix security holes and other bugs that could be exploited by attackers. Keeping software current reduces the risk of malware infections and data breaches, as outdated software can be an easy target for cybercriminals who use known vulnerabilities to gain unauthorized access to systems. In addition to protecting against threats, regular updates can also introduce new features and improve performance, creating a more robust and secure user experience overall. This proactive approach to maintenance not only secures the software itself but also helps maintain the integrity and confidentiality of the entire system it operates within.
Question 3
Which type of attack sends emails claiming to be from your bank asking you to verify your username and password?
Correct Answer:
Phishing
Explanation:
The correct choice is phishing, which is a type of attack that involves sending deceptive emails that appear to come from a reputable source, such as a bank. The goal of phishing is to trick the recipient into providing sensitive information, like usernames and passwords, by convincing them that the email is legitimate. Typically, these emails will include a call to action urging the recipient to click a link that leads to a fake website designed to capture their login credentials. Phishing attacks exploit the trust that users have in familiar institutions, making them particularly effective. They often use threats or urgent language to prompt a quick response, increasing the likelihood that users will act without critically examining the message. The other options do not match the scenario of an email seeking to obtain confidential information through deceptive practices. For instance, a dictionary attack refers to a method of breaking passwords through systematic attempts using a predefined list of potential passwords. A brute force attack is an alternative approach that involves trying every possible combination of passwords until the correct one is found. Lastly, a man-in-the-middle attack involves intercepting and possibly altering communication between two parties, which does not align with the described scenario of sending emails. Thus, phishing is the precise method of attack that matches the description provided, as it specifically targets
Question 4
Which process in a network ensures resources are allocated appropriately after user authentication?
Correct Answer:
Authorization
Explanation:
The process that ensures resources are allocated appropriately after a user has been authenticated is authorization. Authorization determines what an authenticated user is permitted to do and which resources they can access within a network. This step follows authentication, where the system verifies the identity of the user. Once a user's identity is confirmed, authorization policies come into play to grant or deny access to specific resources based on the user's roles, permissions, and access levels. This process is critical in maintaining security and ensuring that users only have access to the information and resources necessary for their roles, thereby mitigating the risk of unauthorized access and potential data breaches. It is separate from authentication, which focuses solely on confirming identity, and accounting, which involves tracking user activities and resource usage. Access control serves as the overarching framework that includes both authentication and authorization but does not specifically handle the allocation of resources after identity verification.
Question 5
What type of network can connect devices within a very short range, usually less than 10 meters?
Correct Answer:
PAN
Explanation:
The correct answer is a personal area network (PAN), which is specifically designed to connect devices in close proximity, typically within a range of about 10 meters. PANs are commonly used for linking devices such as smartphones, tablets, laptops, and wireless peripherals like headphones or keyboards. The main characteristic that defines a PAN is its limited range, which makes it suitable for personal use in a small area, such as a room or personal workspace. In contrast, the other types of networks mentioned operate over larger distances. A local area network (LAN) connects devices within a limited geographical area, such as a single building or campus. A metropolitan area network (MAN) spans a larger area, usually encompassing a city or a large campus, while a wide area network (WAN) covers broad geographical areas, potentially connecting multiple cities or countries. Therefore, because of its specific range limitations and purpose, a PAN is the most appropriate and accurate choice for this question.
Question 1
Exam overview

About this Exam

The ITEC2112 D315 Network and Security - Foundations Pre-assessment Practice Exam is a crucial diagnostic tool for students enrolled in Western Governors University's (WGU) Information Technology programs. This course serves as the introduction to fundamental principles that undergird all digital communication and security protocols. It is designed for students starting their journey into IT, providing them with the necessary vocabulary, concepts, and framework to advance into more specialized topics like network engineering or cybersecurity. Successfully passing this course confirms a student's grasp of how computers connect and how they must be protected.

More details

Additional Information

What the Course Entails and Exam Details

This foundational course introduces core concepts across two major domains: network engineering and information security. Students delve into the practical and theoretical aspects of modern data communication. The course syllabus covers the essential knowledge areas, which are reflected in the exam's questions.

Core Topics Include:

  • Networking Fundamentals: Detailed study of network types (LAN, WAN, MAN), network topologies, and the function of crucial devices like routers, switches, and wireless access points.

  • The OSI Model and TCP/IP Suite: A deep understanding of standard protocols, port numbers (e.g., DNS, HTTP, SSH, SMTP), and how layers like Physical, Data Link, Network, Transport, and Application enable global connectivity.

  • Network Security Principles: Fundamental concepts such as the CIA Triad (Confidentiality, Integrity, Availability), AAA (Authentication, Authorization, Accounting), and the importance of various security controls.

  • Common Attack Vectors: Identifying risks like malware (viruses, worms, trojans), social engineering (phishing), Denial-of-Service (DoS), and other common network vulnerabilities.

  • Defense in Depth: Exploring various practical defense methods including firewalls, Intrusion Detection Systems (IDS), encryption technologies, and securing network access.


What to Expect in the Final Exam

Upon demonstrating competency through the Pre-assessment, students schedule the final Objective Assessment (OA). The final exam mirrors the pre-assessment's format and content weightings but features a unique set of questions designed to comprehensively test knowledge retention and practical understanding of network security fundamentals.

Final Exam Structure:

  • Format: The final exam consists of multiple-choice questions administered online. These questions often use scenarios to test practical application, not just rote memorization.

  • Duration: Candidates are typically allotted around 120 minutes (2 hours) to complete the test.

  • Passing Score: WGU uses a cut-score model, where a passing score is a predetermined level of performance. This cut score is generally in the range of 70% proficiency, though specific details may vary based on the specific exam form.

  • Specific Rules: The final exam is a high-stakes, proctored environment. Students must use a webcam to be monitored live by a remote proctor. The student's environment must be clear of unauthorized materials, and a state-issued ID is required for verification.


How to Study and Exam Centers

The key to success in this foundational exam lies in a structured approach using WGU’s provided resources. The pre-assessment is your most valuable tool.

Actionable Study Strategies:

  1. Take the Pre-assessment Early: Do not wait until the end of your studies to take the diagnostic exam. Take it after completing an initial review of the material to identify your current knowledge gaps and target weak areas.

  2. Analyze Your Results: WGU provides a detailed coaching report after each attempt at the pre-assessment. Focus exclusively on the competencies where you scored "Unsatisfactory" or "Approaching Competence."

  3. Utilize WGU Course Materials: Go back into the course material, reading, and activities, concentrating on the topics you missed. uCertify materials and supplemental reading recommendations are critical.

  4. Use Flashcards and Group Study: Create flashcards for crucial terms, common ports (like port 80 for HTTP, 443 for HTTPS, 22 for SSH, etc.), and the layers of the OSI model. Join WGU student study groups for collaborative learning and peer support.

  5. Schedule the Final Proactively: Once you are consistently passing the Pre-assessment with a comfortable margin, schedule your final Objective Assessment. Momentum and confidence are vital.

Exam Centers and Protocol:

WGU’s competency-based model means that all examinations, including the Network and Security - Foundations final, are taken entirely online. There are no physical WGU testing centers for this exam. Students use specialized remote proctoring services, primarily through platforms like Meazure Learning (formerly known as ProctorU). This allows you to take the exam from the comfort of your own home or private location, as long as you meet the stringent proctoring requirements, which include a webcam, a functional microphone, a high-speed internet connection, and a private, well-lit room.


Job Opportunities from the Course

Passing the ITEC2112 D315 Network and Security - Foundations course is a definitive step in building the foundational skill set required for a wide array of entry-level information technology roles. This competence confirms understanding in the basic building blocks of modern digital infrastructure and risk management, unlocking several career paths within the IT and cybersecurity industries.

Potential Career Paths:

  • Junior Network Administrator

  • IT Support Specialist (Tier 1 & 2)

  • Entry-Level Security Analyst

  • Network Technician

  • Help Desk Analyst

  • Cloud Support Associate

  • Junior Systems Administrator

Quiz information

Frequently Asked Questions

The complete question count is available after full access is unlocked.
No fixed duration is currently configured for this quiz.
Question explanations are included where they are available in the quiz content, helping you review the reasoning after answering.
Yes. You can retake the practice test again as you continue studying during your available access period.
After your access is confirmed, you can continue into the complete practice exam from this quiz flow.
Unless explicitly stated otherwise, this page provides independent practice material for study and exam preparation and is not the official examination itself.
Keep studying

Related Questions