SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Label-based - hard coded access controls - at multiple levels - applied to all objects
DMZ
system hardening
MAC
53
2. Define security settings and user's desktop environment on group of computers
SNMP
simple network management protocol
group policies
simple authentication
3. Access control method that uses ACLs
DAC
infrastructure based
network access control
mandatory
4. NNTP stands for
FTP hardening
lightweight directory access protocol
network news transfer protocol
encrypted file system
5. DNS port
500
161
53
storage area network
6. Access control defined by roles or job functions
TACACS
RBAC
service pack
open mail relay
7. NAS stands for...
network attached storage
group policies
RBAC
baselining
8. Recommended LDAP authentication
system hardening
Terminal Access Controller Access-Control System
simple authentication with security layer LDAPv3
49
9. EFS stands for...
encrypted file system
dynamic host configuration protocol
anonymous authentication
storage area network
10. Help to make sure devices meet security standards before they are allowed to connect to the network
configuration management policy
NAC
MAC
infrastructure based
11. TACACS port
hotfix
49
25
local - site - domain - OU
12. Defining the software and hardware components that can be used in an organization
DHCP hardening
500
25
configuration management policy
13. NetBIOS port
139
system hardening
configuration baselines
patches
14. The process of establishing a standard for security
baselining
simple authentication with security layer LDAPv3
DHCP
FAT
15. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
service pack
DMZ
500
DHCP hardening
16. SMTP stands for...
simple mail transport protocol
DHCP hardening
119
hardening
17. LDAP authentication method that uses clear text
500
simple authentication
DNS hardening
20 and 21
18. File system that offers limited security and was primarily designed for desktop use
RBAC
configuration management policy
25
FAT
19. kerberos port
baselining
database hardening
88
service pack
20. IPSec port
network attached storage
NAC
500
organizational unit
21. A subnet on the network that separates the internal network from publicly exposed hosts
FTP hardening
SSL
configuration baselines
DMZ
22. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
110
TACACS
DNS hardening
49
23. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
500
lightweight directory access protocol
file and print sharing hardening
simple authentication with security layer LDAPv3
24. LDAP authentication method not recommended
MAC
anonymous authentication
OS hardening
baselining
25. Transferable access controls applied and controlled by the object owner
389
simple network management protocol
patches
DAC
26. Centrally managed NAC method requiring installation of software agents on each network client
anonymous authentication
TACACS
endpoint based
lightweight directory access protocol
27. Microsoft software packages that contain one or more patches and can be applied without rebooting
simple mail transport protocol
hotfix
configuration baselines
DAC
28. Four ways to implement group policies
local - site - domain - OU
SSL
network access control
simple network management protocol
29. An accumulated set of software updates or hotfixes from Microsoft
MAC
hardening
RBAC
service pack
30. A cryptographic protocol that provides security for communications over networks such as the Internet
mandatory
80
encrypted file system
SSL
31. Start with the most secure environment - the loosen the controls as needed
rule of least privilege
TACACS
least privileged principle
system hardening
32. Users granted least amount of access possible that enables them to complete their required work
lightweight directory access protocol
baselining
FAT
least privileged principle
33. LDAP stands for...
lightweight directory access protocol
hotfix
network access control
500
34. RBAC stands for ____________ access control
139
161
discretionary
role-based
35. Highly configurable - discretionary - job based access control - more flexible that MAC - more precise that groups
encrypted file system
dynamic host configuration protocol
RBAC
group policies
36. DAC stands for ____________ access control
discretionary
23
network access control
least privileged principle
37. POP3 port
hardening
119
anonymous authentication
110
38. FTP ports
encrypted file system
MAC
rule of least privilege
20 and 21
39. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
DAC
simple mail transport protocol
network access control
RBAC
40. Used to deliver news articles to users on the Internet - vulnerable to DoS attacks
hardware based
group policies
NNTP
22
41. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
FTP hardening
dynamic host configuration protocol
TACACS
storage area network
42. OU stands for...
simple authentication with security layer LDAPv3
organizational unit
20 and 21
MAC
43. Protocol for assigning dynamic IP addresses to devices on a network
161
dynamic host configuration protocol
endpoint based
DHCP
44. A DNS server is fed altered or spoofed records that are retained and then duplicated elsewhere
hardware based
80
389
DNS poisoning
45. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
DHCP
simple mail transport protocol
database hardening
FTP hardening
46. Issued by software vendors to fix bugs - address security issues or add functionality
patches
open mail relay
simple network management protocol
encrypted file system
47. SMTP port
RBAC
22
25
NAC
48. Telnet port
SNMP
baselining
system hardening
23
49. SNMP stand for...
configuration management policy
53
simple network management protocol
dynamic host configuration protocol
50. HTTP SSL port
dynamic host configuration protocol
443
25
DNS poisoning