Lesson 05 - Group 1: Enterprise Network Architecture

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/19

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 6:10 PM on 7/29/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

20 Terms

1
New cards
What network components operate primarily at OSI Layer 2?
Switches, wireless access points, MAC addresses, and VLANs.
2
New cards
What network components operate primarily at OSI Layer 3?
Routers, IP addresses, networks, and subnets.
3
New cards
Which protocols operate primarily at OSI Layer 4?
TCP and UDP.
4
New cards
What are examples of application-layer protocols?
HTTP, SMTP, SMB, FTP, and DNS.
5
New cards
Physical topology versus logical topology
Physical topology describes the actual nodes, links, switches, and cabling; logical topology describes how traffic, VLANs, subnets, and security zones are organized.
6
New cards
Hierarchical network design
Organizes switching and routing infrastructure into layers to improve scalability, limit broadcast domains, and enforce segmentation.
7
New cards
Broadcast domain
A group of devices that receive the same Layer 2 broadcast traffic.
8
New cards
Subnet
A logical Layer 3 division of an IP network identified by a network prefix or subnet mask.
9
New cards
VLAN
Virtual LAN; maps Layer 2 switch ports to a logical Layer 3 subnet independently of their physical switch location.
10
New cards
What is the primary security benefit of VLANs and subnets?
They segment systems and allow traffic between segments to be controlled.
11
New cards
Security zone
A network segment containing hosts with similar access-control and security requirements.
12
New cards
Why should database, client, public-facing, and infrastructure systems be placed in separate security zones?
To compartmentalize assets and restrict unnecessary communication between systems with different security requirements.
13
New cards
Attack surface
The points where a threat actor may gain access to a network or system.
14
New cards
Defense in depth
Using layered security controls across network boundaries, internal zones, and endpoints rather than relying on a single control.
15
New cards
What architectural weaknesses can increase network risk?
Single points of failure, complex dependencies, weak documentation or change control, and overdependence on perimeter security.
16
New cards
Air gap
Physical isolation in which a host or network is not connected to any other network.
17
New cards
What is a major disadvantage of an air-gapped network?
It is difficult to manage and may require updates to be transferred through removable media.
18
New cards
What major factors should be considered when selecting a network architecture?
Cost, responsiveness, scalability, availability, resilience, power, patch availability, and risk transference.
19
New cards
Availability versus resilience
Availability minimizes downtime; resilience reduces the time and difficulty required to recover from a failure.
20
New cards
Risk transference
Shifting some infrastructure risk to a third party through contracting or outsourcin