CREST CPSA (Practitioner Security Analyst)

Networking Equipment

22 practice questions with explanations — 15 free to try

2 of these 22 questions are in the free 15-question taster · the full topic is part of Premium

PassNova has 22 CREST CPSA (Practitioner Security Analyst) practice questions on Networking Equipment, each with a clear explanation. A 15-question taster is free with no sign-up; the full bank is part of PassNova Premium. Updated for 2026.

Sample questions

Networking Equipment: example questions & answers

2 worked examples with answers and explanations below. Try 15 CREST CPSA (Practitioner Security Analyst) questions free in the browser; the full 22-question Networking Equipment bank is part of PassNova Premium.

  1. A tester finds SNMP responding on a Cisco device using the community string 'public'. Why is this a significant finding?

    • AThe string 'public' marks SNMPv3, so the device will demand a user password next
    • BDefault read community strings expose device configuration and interface data to anyone who guesses them✓
    • CSNMP requires a client certificate before replying, so the string is useless
    • DCommunity strings on SNMPv1 and v2c are strongly encrypted in transit, so knowing 'public' still reveals nothing useful to the tester

    Answer: SNMPv1 and v2c authenticate only with a community string sent in cleartext, and the well-known default 'public' typically grants read access to a wealth of configuration and interface data via the MIB. The string is not encrypted, community strings belong to v1 and v2c rather than to the user-based model of SNMPv3, and these versions do not use client certificates.

  2. On which UDP port does an SNMP agent normally listen for queries such as GET and GETNEXT requests?

    • A162
    • B123
    • C161✓
    • D69

    Answer: SNMP agents listen on UDP 161 for polling requests, while UDP 162 is used by the manager to receive traps and notifications. UDP 69 is TFTP and UDP 123 is NTP.

Start practising Networking Equipment →