312-38 Exam Details

  • Exam Code
    :312-38
  • Exam Name
    :EC-Council Certified Network Defender (CND)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :653 Q&As
  • Last Updated
    :May 29, 2026

EC-COUNCIL 312-38 Online Questions & Answers

  • Question 551:

    Which of the following are provided by digital signatures?

    A. Identification and validation
    B. Authentication and identification
    C. Integrity and validation
    D. Security and integrity

  • Question 552:

    Which of the following is a free security-auditing tool for Linux?

    A. SAINT
    B. SATAN
    C. Nessus
    D. HPing

  • Question 553:

    Which of the following VPN topologies establishes a persistent connection between an organization's main office and its branch offices using a third-party network or the Internet?

    A. Hub-and-Spoke
    B. Full Mesh
    C. Point-to-Point
    D. Star

  • Question 554:

    Which of the following is a technique for gathering information about a remote network protected by a firewall?

    A. Firewalking
    B. Warchalking
    C. Wardriving
    D. Wardialing

  • Question 555:

    Which of the following is a session layer protocol?

    A. RPC
    B. SLP
    C. RDP
    D. ICMP

  • Question 556:

    The CEO of Max Rager wants to send a confidential message regarding the new formula for its coveted soft drink, SuperMax, to its manufacturer in Texas. However, he fears the message could be altered in transit. How can he prevent this incident from happening and what element of the message ensures the success of this method?

    A. Hashing; hash code
    B. Symmetric encryption; secret key
    C. Hashing; public key
    D. Asymmetric encryption; public key

  • Question 557:

    Token Ring is standardized by which of the following IEEE standards?

    A. 802.2
    B. 802.4
    C. 802.3
    D. 802.1

  • Question 558:

    John is a network administrator and is monitoring his network traffic with the help of Wireshark. He suspects that someone from outside is making a TCP OS fingerprinting attempt on his organization's network. Which of following Wireshark filter(s) will he use to locate the TCP OS fingerprinting attempt? (Choose all that apply.)

    A. tcp.flags=0x00
    B. tcp.options.wscale_val==20
    C. tcp.flags==0x2b
    D. tcp.options.mss_val

  • Question 559:

    What is the best way to describe a mesh network topology?

    A. A network in which every computer in the network has a connection to each and every computer in the network.
    B. A network in which every computer meshes together to form a hybrid between a star and bus topology.
    C. A network in which every computer in the network can communicate with a single central computer.
    D. A network that is extremely cost efficient, offering the best option for allowing computers to communicate amongst each other.

  • Question 560:

    Which of the following security models enable strict identity verification for every user or device attempting to access the network resources?

    I. Zero-trust network model

    II.

    Castle-and-Moat model

    A. Both I and II
    B. I only
    C. II only
    D. None
    I. Zero-trust network model II. Castle-and-Moat model

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-38 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.