Question 1
Which statement best describes IDS signatures?
Correct Answer:
Signatures enable detection of known threats; without them, detection may fail
Explanation:
Signatures in an IDS are predefined patterns that match known malicious activity. This is what allows the system to recognize and alert on known threats: if the traffic or payload fits one of the signatures, an alert is triggered. Without these patterns, the IDS would lack specific indicators to identify those attacks, so detection of known techniques could fail. Think of signatures as a catalog of known bad behaviors—the exact payload strings, sequence of bytes, or protocol abuses that have been observed before. They’re essential for fast, accurate detection of those known threats, but they’re not a magic shield against everything. They require regular updates to cover new exploits, and they don’t catch novel, unknown attacks. They can also produce false positives when legitimate activity matches a signature, and they do not provide encryption or tamper-proofing for the IDS itself.
Question 2
What does HTTP status code 301 Moved Permanently indicate?
Correct Answer:
Resource is found at a new permanent URI
Explanation:
A 301 Moved Permanently tells you the resource has a new permanent URI. The server responds with the new URL in the Location header, and clients should use that address for all future requests. Caches and search engines will update to the new location, treating this as a long-term change. This is different from temporary redirects, which indicate the move isn’t permanent, and from error or access-denied responses. So the best description is that the resource is found at a new permanent URI.
Question 3
In promiscuous mode, which statement best describes the NIC's behavior?
Correct Answer:
Accept and process every packet it receives.
Explanation:
Promiscuous mode removes the NIC’s usual destination-based filtering, so the adapter passes all frames it sees up to the host rather than discarding those not addressed to it. This allows packet sniffers to capture traffic not intended for this machine. Because of this behavior, the NIC effectively accepts and processes every packet it receives. The other statements describe normal filtering or selective processing, which is not what promiscuous mode does.
Question 4
What does HTTP status code 403 Forbidden indicate?
Correct Answer:
Client does not have enough privileges
Explanation:
HTTP status code 403 Forbidden means the server understood the request but refuses to authorize access due to insufficient permissions. Even if your credentials are valid, the action or resource is not allowed for your account or context. It’s about authorization rules, not about the resource being missing or the server being down. This differs from a 401, which signals authentication is required or has failed. In practice, you’d see this when trying to reach an admin-only page, a restricted file, or an API endpoint your user role isn’t allowed to access. To resolve, you’d need the appropriate privileges or an ACL/permission change from an administrator.
Question 5
What does the payload of a packet represent?
Correct Answer:
The actual information
Explanation:
The payload is the actual information carried by the packet. In networking, a packet has a header and a data portion. The header holds addressing and control information—source and destination addresses, protocol, sequencing, and similar fields—to route and deliver the packet. The payload is the part that carries the user or application data—the content the sender wants the receiver to process. Encoding refers to how bits are represented or transformed for transmission (such as encryption) and isn’t the payload itself. Metadata is supplementary information about the data, not the data itself. So, the payload represents the actual information being transmitted, such as an HTTP request/response or the contents of a file.
Question 1
Exam overview

About this Exam

Prepare with the eLearnSecurity Junior Penetration Tester (eJPT) Class Practice Exam practice quiz. This question bank includes 10 questions covering describes, http, status, code, and indicate. Use it to review important concepts, identify knowledge gaps, and build confidence for the related exam, course, or assessment.

More details

Additional Information

eLearnSecurity Junior Penetration Tester (eJPT) Class Practice Exam

This practice set contains 10 questions from the matching question bank and focuses on describes, http, status, code, and indicate. Work through each question carefully, review the provided solutions, and revisit topics that need more study before your next attempt.

This is an independent study resource intended for practice and review; it is not an official examination or an endorsement by any organization named in the title.

Quiz information

Frequently Asked Questions

The complete question count is available after full access is unlocked.
No fixed duration is currently configured for this quiz.
Question explanations are included where they are available in the quiz content, helping you review the reasoning after answering.
Yes. You can retake the practice test again as you continue studying during your available access period.
After your access is confirmed, you can continue into the complete practice exam from this quiz flow.
Unless explicitly stated otherwise, this page provides independent practice material for study and exam preparation and is not the official examination itself.
Keep studying

Related Questions