P-TECH IT

Lesson 6: Network Security

Week of Mon, Oct 26 · lesson closes Sun, Nov 1

By the end of this lesson you can:

Take Meerk's quiz for Lesson 6

NotesSecurity FundamentalsFlashcards16 termsExercises1 tasks

This lesson's items

Exact due times are in Canvas.

Watch — Professor Messer

Professor Messer's Free Security+ SY0-701 Training Course

Free, independent educational resource. Not affiliated with or endorsed by CompTIA. Watch, then read the notes below.

Know these cold

Common Threats

  1. Phishing uses fake emails to steal credentials or deliver malware; spear phishing targets specific individuals.
  2. DoS (Denial of Service) floods a target with traffic; DDoS uses many compromised systems (botnet) simultaneously.
  3. Man-in-the-Middle (MitM) intercepts communication between two parties; often on unencrypted Wi-Fi.
  4. SQL injection inserts malicious SQL code into a web form input to manipulate a backend database.

Authentication and Access

  1. Authentication factors: something you know (password), have (token/smart card), are (biometric). MFA uses two or more.
  2. Passwords should be ≥12 characters, mix upper/lower/numbers/symbols, and be unique per account.
  3. Password managers securely store and generate unique passwords; preferred over reusing passwords.
  4. Account lockout policies prevent brute-force attacks by locking accounts after N failed login attempts.

Encryption Basics

  1. Symmetric encryption uses one key (AES-256 is standard); fast but key distribution is a challenge.
  2. Asymmetric encryption uses a key pair (RSA, ECC); public key encrypts, private key decrypts; solves key distribution.
  3. HTTPS uses TLS (Transport Layer Security) to encrypt web traffic between browser and server.
  4. Hashing (SHA-256) produces a fixed-length fingerprint of data; one-way — cannot be reversed.

Firewalls and Monitoring

  1. Firewalls filter traffic by IP, port, and protocol; stateful firewalls track connection state.
  2. An IDS (Intrusion Detection System) detects and alerts; an IPS (Intrusion Prevention System) also blocks.
  3. Antivirus uses signatures (known malware) and heuristics (behavioral detection) to find malware.
  4. Log monitoring and SIEM (Security Information and Event Management) aggregate events for threat detection.

Quick check — before the quiz

1. Which attack floods a target with traffic from many compromised computers?

2. MFA requires authentication using:

Meerk's quiz — open the Lesson 6 gate

10 questions, no time limit. 85% on your first attempt in a 24-hour window opens the gate. Retakes inside the window are practice — they help you learn, they don't count. Work alone; the point is to know it, not to have seen it.

Stuck?

Raise your hand. Mr. James gets a message right away and can help you remotely. Nothing else is stored — just your last name, grade, and where you're stuck.

Dinner Table Question

Ask at home: Have you ever created the same password for multiple accounts? Why is that dangerous?

En español: ¿Alguna vez usaste la misma contraseña en varias cuentas? ¿Por qué es peligroso?

← Lesson 5Lesson 7 →

↑ Back to top