High School IntermediateModule I125-Question Test

I1 Module Test: Networking for Defenders

Test your understanding of network models, IPv4 and subnetting, ports and protocols, DNS and DHCP, firewalls, segmentation, diagrams, and integrated defensive analysis.

Lesson Progress

Module Test

High School IntermediateI1: Networking for Defenders • Lesson 9 of 9

100% complete

Readiness Check

Before You Begin

0/4 ready

Test Instructions

Complete all 25 questions in one focused attempt

Recommended process

  1. Read the full scenario or question.
  2. Identify the strongest evidence.
  3. Eliminate overconfident or unsafe choices.
  4. Select the most defensible answer.
  5. Submit only after all questions are answered.

Suggested score guide

23–25: Strong I1 mastery

20–22: Ready with targeted review

16–19: Review weak domains

0–15: Revisit the module lessons and labs

Domain Coverage

What this test measures

Questions 1–3

Network models and layered reasoning

Questions 4–8

IPv4 addressing, subnets, gateways, and evidence

Questions 9–13

Ports, protocols, services, and endpoint context

Questions 14–16

DNS, DHCP, NTP, and common services

Questions 17–20

Firewalls, rule quality, and least privilege

Questions 21–23

Segmentation and management access

Questions 24–25

Diagrams and integrated defensive analysis

Check Your Understanding

I1 Networking for Defenders Module Test

Choose your answers first. Explanations appear only after submission.

1. Why do defenders use the OSI and TCP/IP models?

2. Which OSI layer is most closely associated with IP addressing and routing?

3. What does successful DNS resolution prove?

4. What does /26 in 10.44.20.93/26 describe?

5. Which subnet contains 10.44.20.93/26?

6. What is the main purpose of a default gateway?

7. What may a 169.254.x.x address indicate?

8. Why can an IP address not prove every user action?

9. What is the main purpose of a network port?

10. Which statement best compares TCP and UDP?

11. Why can port 443 not prove traffic is trustworthy?

12. What is an ephemeral port?

13. Which evidence best connects a local program to a network connection?

14. Which record commonly includes an assigned address, gateway, DNS options, and lease window?

15. Why is NTP important to defenders?

16. What may NXDOMAIN mean?

17. Which firewall rule best follows least privilege?

18. What does a firewall allow event prove?

19. What is a shadowed firewall rule?

20. Why should temporary firewall rules expire?

21. What is the main purpose of network segmentation?

22. Why is a VLAN not a complete security control by itself?

23. Which management path is strongest?

24. What is diagram drift?

25. A managed device has the correct VLAN and successful DNS but receives an address from the wrong /26 scope and is denied as guest. What is the strongest next step?

Key Takeaways

What You Should Remember

1.Use network models to organize evidence rather than force every detail into one perfect box.
2.Read the full IP address and prefix before deciding whether systems share a subnet.
3.Ports and protocols provide service context but do not prove complete purpose or trustworthiness.
4.DNS, DHCP, firewall, endpoint, identity, inventory, and change records must be correlated.
5.Segmentation and firewall rules should follow least privilege, ownership, logging, review, testing, and rollback.
6.Strong defenders preserve evidence, state uncertainty honestly, and correct the earliest supported mismatch.

Module Navigation

Review or return to the Intermediate Track