Network-and-Security-Foundation Exam Questions & Answers
WGU Network Engineering and Security Foundation Exam - D315 • WGU
100% money-back guarantee
Sample Network-and-Security-Foundation Questions
Practice with real exam-style questions, each with the verified correct answer and explanation.
Which layer of the OSI model includes HTTP?
The Application layer (Layer 7 of the OSI model) includes Hypertext Transfer Protocol (HTTP), which is used for web communication. This layer provides network services directly to applications and users.
Network layer deals with IP addressing and packet routing.
Session layer manages connections but does not include HTTP.
Transport layer ensures reliable data transmission but does not handle application protocols.
Which layer of the TCP/IP model includes the Internet Protocol (IP)?
The Network or Internet layer of the TCP/IP model is responsible for addressing, routing, and delivering packets across networks. The Internet Protocol (IP) operates at this layer, ensuring that data is correctly routed from the source to the destination.
Physical or network access layer deals with hardware transmission (e.g., Ethernet, Wi-Fi).
Application layer includes end-user services (e.g., HTTP, FTP).
Transport layer manages data flow using protocols like TCP and UDP but does not handle IP addressing.
A company is developing a disaster recovery plan for its internal network.
What is the CIA triad component targeted in the scenario?
Availability ensures that systems and data remain accessible and operational, even in the event of failures or attacks. A disaster recovery plan (DRP) focuses on restoring IT infrastructure and operations after incidents like hardware failures, cyberattacks, or natural disasters. Strategies include data backups, failover systems, and redundant architectures.
Confidentiality focuses on restricting unauthorized access.
Integrity ensures data remains unaltered, but does not address service continuity.
Innovation is unrelated to the CIA triad.
An organization's network has been the target of several cyberattacks.
Which strategy should the organization use for Wi-Fi hardening?
Disabling ESSID broadcasting prevents the Wi-Fi network name from being publicly visible, making it harder for attackers to discover and target the network. While this is not a foolproof security measure, it adds an additional layer of protection against unauthorized access.
Trusting local hosts by default is risky and not a security best practice.
Adding more access points improves coverage but does not enhance security.
WEP is outdated and highly vulnerable to attacks; WPA2 or WPA3 should be used instead.
A company grants users permissions based on the department in which users work.
Which type of access control is involved?
Role-Based Access Control (RBAC) assigns permissions based on a user's role within an organization, such as department, job function, or hierarchy. This ensures that users only have access to resources necessary for their duties.
Attribute-based access control (ABAC) considers dynamic attributes like time, location, and device.
Context-based access control restricts access based on environmental conditions.
Discretionary access control (DAC) allows data owners to determine access rights.
Get access to all 62 verified questions with detailed answers.
Unlock All Network-and-Security-Foundation Questions