Free ITS-110 Exam Braindumps (page: 4)

Page 3 of 26

An IoT security architect needs to minimize the security risk of a radio frequency (RF) mesh application.
Which of the following might the architect consider as part of the design?

  1. Make pairing between nodes very easy so that troubleshooting is reduced.
  2. Encrypt data transmission between nodes at the physical/logical layers.
  3. Prevent nodes from being rejected to keep the value of the network as high as possible.
  4. Allow implicit trust of all gateways since they are the link to the internet.

Answer(s): B


Reference:

https://www.bmc.com/blogs/osi-model-7-layers/



Which of the following methods is an IoT portal administrator most likely to use in order to mitigate Distributed Denial of Service (DDoS) attacks?

  1. Implement Domain Name System Security Extensions (DNSSEC) on all Internet-facing name servers
  2. Disable Network Address Translation Traversal (NAT-T) at the border firewall
  3. Implement traffic scrubbers on the upstream Internet Service Provider (ISP) connection
  4. Require Internet Protocol Security (IPSec) for all inbound portal connections

Answer(s): C


Reference:

https://www.computerweekly.com/news/252456702/How-traffic-scrubbing-can-guard- against-DDoS-attacks



A DevOps engineer wants to provide secure network services to an IoT/cloud solution.
Which of the following countermeasures should be implemented to mitigate network attacks that can render a network useless?

  1. Network firewall
  2. Denial of Service (DoS)/Distributed Denial of Service (DDoS) mitigation
  3. Web application firewall (WAF)
  4. Deep Packet Inspection (DPI)

Answer(s): B


Reference:

https://www.cloudflare.com/learning/ddos/what-is-a-ddos- attack/#:~:text=A%20distributed%20denial%2Dof%2Dservice,a%20flood%20of%20Internet%20traffic



What is one popular network protocol that is usually enabled by default on home routers that creates a large attack surface?

  1. Open virtual private network (VPN)
  2. Universal Plug and Play (UPnP)
  3. Network Address Translation (NAT)
  4. Domain Name System Security Extensions (DNSSEC)

Answer(s): B


Reference:

https://phoenixnap.com/blog/what-is-upnp






Post your Comments and Discuss CertNexus ITS-110 exam with other Community members:

ITS-110 Discussions & Posts