Accounting Information Systems, 8e—Test Bank, Chapter 12
Chapter 12—Electronic Commerce Systems
TRUE/FALSE
1. Electronic commerce refers only to direct consumer marketing on the Internet.
2. The standard format for an e-mail address is DOMAIN NAME@USER NAME.
3. The network paradox is that networks exist to provide user access to shared resources while one of its
most important objectives is to control access.
4. Business risk is the possibility of loss or injury that can reduce or eliminate an organization’s ability to
achieve its objectives.
5. IP spoofing is a form of masquerading to gain unauthorized access to a Web server.
6. The rules that make it possible for users of networks to communicate are called protocols.
7. A factor that contributes to computer crime is the reluctance of many organizations to prosecute
criminals for fear of negative publicity.
8. Cookies are files created by user computers and stored on Web servers.
9. Because of network protocols, users of networks built by different manufacturers are able to
communicate and share data.
10. Sniffing is the unauthorized transmitting of information across an Intranet.
11. The phrase .com has become an Internet buzz word. It refers to a top-level domain name for
communications organizations.
12. The client-server model can only be applied to ring and star topologies.
13. Only two types of motivation drive DoS attacks: 1) to punish an organization with which the
perpetrator had a grievance; and 2) to gain bragging rights for being able to do it.
14. A distributed denial of service (DDoS) attack may take the form of a SYN flood but not a smurf
attack.
15. The bus topology connects the nodes in parallel.
16. A network topology is the physical arrangement of the components of the network.
17. Business to consumer is the largest segment of Internet commerce.
18. A digital signature is a digital copy of the sender’s actual signature that cannot be forged.
19. A bus topology is less costly to install than a ring topology.
20. A smurf attack involves three participants: a zombie, an intermediary, and the victim.
21. In a hierarchical topology, network nodes communicate with each other via a central host computer.
22. Polling is one technique used to control data collisions.
Accounting Information Systems, 8e—Test Bank, Chapter 12
23. The more individuals that need to exchange encrypted data, the greater the chance that the key will
become known to an intruder. To overcome this problem, private key encryption was devised.
24. The most frequent use of EDI is in making vendor payments.
25. EDI is the inter-company exchange of computer processible business information in standard format.
26. A certification authority is an independent and trusted third party empowered with responsibility to
vouch for the identity of organizations and individuals engaging in Internet commerce.
27. The intermediary in a smurf attack is also a victim.
28. A ping is used to test the state of network congestion and determine whether a particular host computer
is connected and available on the network.
29. HTML tags are customized to delimit attributes, the content of which can be read and processed by
computer applications.
30. A ping is an Internet maintenance tool that is used to test the state of network congestion and
determine whether a particular host computer is connected and available on the network.
31. Cloud computing is the technology that has unleashed virtualization.
32. Cloud computing is decreasing as hardware resources become cheaper because acquisition of
resources is slow and not scalable.
MULTIPLE CHOICE
1. What do you call a system of computers that connects the internal users of an organization that is
distributed over a wide geographic area?
a.
LAN
b.
decentralized network
c.
multidrop network
d.
Intranet
2. Network protocols fulfill all of the following objectives except
a.
facilitate physical connection between network devices
b.
provide a basis for error checking and measuring network performance
c.
promote compatibility among network devices
d.
result in inflexible standards
3. To physically connect a workstation to a LAN requires a
a.
file server
b.
network interface card
c.
multiplexer
d.
bridge
4. Packet switching
a.
combines the messages of multiple users into one packet for transmission. At the receiving
end, the packet is disassembled into the individual messages and distributed to the
intended users.
b.
is a method for partitioning a database into packets for easy access where no identifiable
primary user exists in the organization.
c.
is used to establish temporary connections between network devices for the duration of a
communication session.
d.
is a denial of service technique that disassembles various incoming messages to targeted
users into small packages and then reassembles them in random order to create a useless
garbled message.
5. One advantage of network technology is
a.
bridges and gateways connect one workstation with another workstation
b.
the network interface card permits different networks to share data
c.
file servers permit software and data to be shared with other network users
d.
a universal topology facilitates the transfer of data among networks
6. A virtual private network:
a.
is a password-controlled network for private users rather than the general public.
b.
is a private network within a public network.
c.
is an Internet facility that links user sites locally and around the world.
d.
defines the path to a facility or file on the web.
e.
none of the above is true.
7. Which topology has a large central computer with direct connections to a periphery of smaller
computers? Also in this topology, the central computer manages and controls data communications
among the network nodes.
a.
star topology
b.
bus topology
c.
ring topology
d.
client/server topology
8. A ping signal is used to initiate
a.
URL masquerading
b.
digital signature forging
c.
Internet protocol spoofing
d.
a smurf attack
e.
none of the above is true
9. In a star topology, when the central site fails
a.
individual workstations can communicate with each other
b.
individual workstations can function locally but cannot communicate with other
workstations
c.
individual workstations cannot function locally and cannot communicate with other
workstations
d.
the functions of the central site are taken over by a designated workstation
Accounting Information Systems, 8e—Test Bank, Chapter 12
10. Which of the following statements is correct? The client-server model
a.
is best suited to the token-ring topology because the random-access method used by this
model detects data collisions.
b.
distributes both data and processing tasks to the server’s node.
c.
is most effective used with a bus topology.
d.
is more efficient than the bus or ring topologies.
11. Sniffer software is
a.
software used by malicious Web sites to sniff data from cookies stored on the user’s hard
drive
b.
used by network administrators to analyze network traffic
c.
used by bus topology Intranets to sniff for a carrier before transmitting a message to avoid
data collisions
d.
illegal programs downloaded from the Net to sniff passwords from the encrypted data of
Internet customers
12. In a ring topology
a.
all nodes are of equal status
b.
nodes manage private programs and databases locally
c.
shared resources are managed by a file server which is a node on the ring
d.
all of the above
13. The client/server technology
a.
increases the amount of data that is transmitted between the central file and the network
node
b.
eliminates the need for nodes to communicate with each other
c.
reduces the number of records that must be locked by having the file server perform record
searches
d.
functions only with a ring and bus topology
14. The primary difference between a LAN and a WAN is
a.
the geographical area covered by the network
b.
the transmission technology used
c.
the type of workstation used
d.
the size of the company
15. A star topology is appropriate
a.
for a wide area network with a mainframe for a central computer
b.
for centralized databases only
c.
for environments where network nodes routinely communicate with each other
d.
when the central database does not have to be concurrent with the nodes
16. In a ring topology
a.
the network consists of a central computer which manages all communications between
nodes
b.
has a host computer connected to several levels of subordinate computers
c.
all nodes are of equal status; responsibility for managing communications is distributed
among the nodes
d.
information processing units rarely communicate with each other
17. A distributed denial of service (DDoS) attack
a.
is more intensive that a Dos attack because it emanates from single source
b.
may take the form of either a SYN flood or smurf attack
c.
is so named because it effects many victims simultaneously, which are distributed across
the internet
d.
turns the target victim’s computers into zombies that are unable to access the Internet
e.
none of the above is correct
18. Which method does not manage or control data collisions that might occur on a network?
a.
multiplexing
b.
polling
c.
carrier sensing
d.
token passing
19. All of the following are true about the Open System Interface (OSI) protocol except
a.
within one node different layers communicate with other layers at that node
b.
one protocol is developed and applied to all the OSI layers
c.
specific layers are dedicated to hardware tasks and other layers are dedicated to software
tasks
d.
layers at each node communicate logically with their counterpart layers across nodes
20. NNTP
a.
is the document format used to produce Web pages.
b.
controls Web browsers that access the Web.
c.
is used to connect to Usenet groups on the Internet
d.
is used to transfer text files, programs, spreadsheets, and databases across the Internet.
e.
is a low-level encryption scheme used to secure transmissions in higher-level (HTTP)
format.
21. Which of the following statements is correct? TCP/IP
a.
is the basic protocol that permits communication between Internet sites.
b.
controls Web browsers that access the WWW.
c.
is the file format used to produce Web pages.
d.
is a low-level encryption scheme used to secure transmissions in HTTP format.
22. FTP
a.
is the document format used to produce Web pages.
b.
controls Web browsers that access the Web.
c.
is used to connect to Usenet groups on the Internet
d.
is used to transfer text files, programs, spreadsheets, and databases across the Internet.
e.
is a low-level encryption scheme used to secure transmissions in higher-level () format.
23. IP spoofing
a.
combines the messages of multiple users into a “spoofing packet” where the IP addresses
are interchanged and the messages are then distributes randomly among the targeted users.
b.
is a form of masquerading to gain unauthorized access to a web server.
c.
is used to establish temporary connections between network devices with different IP
addresses for the duration of a communication session.
d.
is a temporary phenomenon that disrupts transaction processing. It will resolve itself when
the primary computer completes processing its transaction and releases the IP address
needed by other users.
Accounting Information Systems, 8e—Test Bank, Chapter 12
24. HTML
a.
is the document format used to produce Web pages.
b.
controls Web browsers that access the Web.
c.
is used to connect to Usenet groups on the Internet.
d.
is used to transfer text files, programs, spreadsheets, and databases across the Internet.
e.
is a low-level encryption scheme used to secure transmissions in higher-level () format.
25. Which one of the following statements is correct?
a.
Cookies always contain encrypted data.
b.
Cookies are text files and never contain encrypted data.
c.
Cookies contain the URLs of sites visited by the user.
d.
Web browsers cannot function without cookies.
26. A message that is made to look as though it is coming from a trusted source but is not is called
a.
a denial of service attack
b.
digital signature forging
c.
Internet protocol spoofing
d.
URL masquerading
27. An IP Address:
a.
defines the path to a facility or file on the web.
b.
is the unique address that every computer node and host attached to the Internet must
have.
c.
is represented by a 64-bit data packet.
d.
is the address of the protocol rules and standards that governing the design of internet
hardware and software.
e.
none of the above is true.
28. A digital signature is
a.
the encrypted mathematical value of the message sender’s name
b.
derived from the digest of a document that has been encrypted with the sender’s private
key
c.
the computed digest of the sender’s digital certificate
d.
allows digital messages to be sent over analog telephone lines
29. HTTP
a.
is the document format used to produce Web pages.
b.
controls Web browsers that access the Web.
c.
is used to connect to Usenet groups on the Internet
d.
is used to transfer text files, programs, spreadsheets, and databases across the Internet.
e.
is a low-level encryption scheme used to secure transmissions in higher-level () format.
30. Which of the following statements is correct?
a.
Packet switching combines the messages of multiple users into a “packet” for
transmission. At the receiving end, the packet is disassembled into the individual messages
and distributed to the intended users.
b.
The decision to partition a database assumes that no identifiable primary user exists in the
organization.
c.
Packet switching is used to establish temporary connections between network devices for
the duration of a communication session.
d.
A deadlock is a temporary phenomenon that disrupts transaction processing. It will resolve
itself when the primary computer completes processing its transaction and releases the
data needed by other users.
31. The provision of computing power and disk space to client firms who access it from desktop PCs is
known as
a.
Computing-as-a-Service
b.
Infrastructure-as-a-Service
c.
Platform-as-a-Service
d.
Software-as-a-Service
32. This class of cloud computing enables client firms to develop and deploy onto the cloud infrastructure
consumer-generated applications using facilities provided by the vendor.
a.
Computing-as-a-Service
b.
Infrastructure-as-a-Service
c.
Platform-as-a-Service
d.
Software-as-a-Service
33. Which of the following is not a key feature of cloud computing?
a.
Acquisition of resources is rapid and infinitely scalable.
b.
Client firms can acquire IT resources from vendors on demand and as needed.
c.
Computing resources are pooled to meet the needs of multiple client firms.
d.
Individual clients have control over the physical location of the service being provided.
SHORT ANSWER
1. What is packet switching?
2. What is an extranet?
3. What is a URL?
4. What is an IP address?
5. What is spoofing?
6. Name the three types of addresses used on the Internet.
7. What is a ping?
8. What is an IRC?
9. Name the three parties involved in a smurf attack.
10. Explain the parts of an e-mail address and give an example (your own?).
11. What are cookies and why are they used?