100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached
logo-home
ITN 261 - Chapter 9 Questions with 100% Correct Answers Graded A+ | Verified | Latest Update 2024, Actual Complete Solutions ,Garanteed Distinction £6.49   Add to cart

Exam (elaborations)

ITN 261 - Chapter 9 Questions with 100% Correct Answers Graded A+ | Verified | Latest Update 2024, Actual Complete Solutions ,Garanteed Distinction

 11 views  0 purchase
  • Module
  • CompTIA
  • Institution
  • CompTIA

ITN 261 - Chapter 9 Questions with 100% Correct Answers Graded A+ | Verified | Latest Update 2024, Actual Complete Solutions ,Garanteed Distinction

Preview 2 out of 6  pages

  • August 2, 2024
  • 6
  • 2024/2025
  • Exam (elaborations)
  • Questions & answers
  • CompTIA
  • CompTIA
avatar-seller
100%
ITN
261
-
Chapter
9
Which
hardware
vendor
uses
the
term
SPAN
on
switches?
1.
HP
2.
3COM
3.
Cisco
4.
Juniper
3.
Cisco
Different
vendors
use
different
terms
to
refer
to
port
mirroring.
Cisco
uses
the
term
Switch
Port
Analyzer
(SPAN),
which
leads
to
the
process
sometimes
being
called
port
spanning.
If
you
saw
the
following
command
line,
what
would
you
be
capturing?
tcpdump
-i
eth2
host
192.168.10.5
2.
Traffic
just
from
192.168.10.5
3.
Traffic
to
and
from
192.168.10.5
4.
Traffic
just
to
192.168.10.5
5.
All
traffic
other
than
from
192.168.86.5
3.
Traffic
to
and
from
192.168.10.5
The
expression
host
192.168.10.5
is
BPF,
indicating
that
tcpdump
should
only
capture
packets
to
and
from
192.168.10.5.
If
you
wanted
to
only
get
it
to
or
from,
you
would
need
to
modify
host
with
src
or
dest.
In
the
following
packet,
what
port
is
the
source
port?
20:45:55.272087
IP
yazpistachio.lan.62882
>
loft.lan.afs3-fileserver:
Flags
[P.],
seq
915235445:915235528,
ack
3437317287,
win
2048,
options
[nop,nop,TS
val
1310611430
ecr
1794010423],
length
83
1.
lan
2.
fileserver
3.
yazpistachio
4.
62882
4.
62882
tcpdump
uses
the
format
hostname/IP .port
when
it
prints
an
address.
The
addresses
go
source
>
destination,
so
yazpistachio.lan
is
the
hostname
and
62882
is
the
port
on
the
source
address.
What
is
one
downside
to
running
a
default
tcpdump
without
any
parameters? 100%
0.
DNS
requests
1.
Not
enough
information
2.
Sequence
numbers
don't
show
3.
tcpdump
won't
run
without
additional
parameters
0.
DNS
requests
By
default,
tcpdump
does
name
resolution.
Not
only
does
tcpdump
look
up
port
numbers
and
print
their
service
names,
it
also
triggers
a
DNS
lookup.
This
DNS
lookup
is
network
traffic,
which
means
that
for
most
packets
there
is
probably
a
DNS
lookup
request
showing
in
the
packet
capture.
At
which
protocol
layer
does
the
Berkeley
Packet
Filter
operate?
0.
Internetwork
1.
Transport
2.
Data
Link
3.
Protocol
2.
Data
Link
BPF
operates
at
the
Data
Link
layer.
This
allows
filtering
down
to
the
MAC
address.
If
BPF
operated
at
other
layers,
you
wouldn't
get
the
entire
set
of
packet
headers.
What
do
we
call
an
ARP
response
without
a
corresponding
ARP
request?
0.
Is-at
response
1.
Who-has
ARP
2.
Gratuitous
ARP
3.
IP
response
2.
Gratuitous
ARP
When
an
ARP
response
is
sent
without
a
corresponding
ARP
request,
it's
an
unexpected
or
unnecessary
message.
This
makes
it
a
gratuitous
ARP.
Which
functionality
in
Wireshark
will
provide
you
with
percentages
for
every
protocol
in
the
packet
capture,
ordered
by
protocol
layers?
0.
Conversations
1.
Endpoints
2.
Protocol
hierarchy
3.
Statistics
view
2.
Protocol
hierarchy

The benefits of buying summaries with Stuvia:

Guaranteed quality through customer reviews

Guaranteed quality through customer reviews

Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.

Quick and easy check-out

Quick and easy check-out

You can quickly pay through credit card for the summaries. There is no membership needed.

Focus on what matters

Focus on what matters

Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!

Frequently asked questions

What do I get when I buy this document?

You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.

Satisfaction guarantee: how does it work?

Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.

Who am I buying these notes from?

Stuvia is a marketplace, so you are not buying this document from us, but from seller AnswersCOM. Stuvia facilitates payment to the seller.

Will I be stuck with a subscription?

No, you only buy these notes for £6.49. You're not tied to anything after your purchase.

Can Stuvia be trusted?

4.6 stars on Google & Trustpilot (+1000 reviews)

75759 documents were sold in the last 30 days

Founded in 2010, the go-to place to buy revision notes and other study material for 14 years now

Start selling
£6.49
  • (0)
  Add to cart