SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Locking down the system
service pack
500
NNTP
system hardening
2. LDAP authentication method that uses clear text
dynamic host configuration protocol
simple authentication
MAC
simple authentication with security layer LDAPv3
3. Used to deliver news articles to users on the Internet - vulnerable to DoS attacks
NNTP
DNS hardening
database hardening
49
4. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
group policies
RBAC
file and print sharing hardening
389
5. Recommended LDAP authentication
storage area network
SSL
Terminal Access Controller Access-Control System
simple authentication with security layer LDAPv3
6. LDAP authentication method not recommended
network attached storage
DMZ
local - site - domain - OU
anonymous authentication
7. LDAP stands for...
network news transfer protocol
role-based
lightweight directory access protocol
domain name service
8. LDAP port
389
local - site - domain - OU
DNS poisoning
network news transfer protocol
9. Telnet port
storage area network
23
DAC
simple mail transport protocol
10. DNS stands for...
lightweight directory access protocol
domain name service
RBAC
SSL
11. SMTP port
DHCP
500
25
open mail relay
12. NAC stands for
local - site - domain - OU
network access control
simple authentication
open mail relay
13. SNMP port
MAC
DAC
22
161
14. HTTP SSL port
49
443
MAC
network news transfer protocol
15. A remote authentication protocol used to communicate with an authentication server commonly used in UNIX networks.
role-based
baselining
TACACS
discretionary
16. Define security settings and user's desktop environment on group of computers
TACACS
hotfix
discretionary
group policies
17. Four ways to implement group policies
DAC
open mail relay
local - site - domain - OU
53
18. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
RBAC
NNTP
SNMP
SSL
19. NAC method where organizations must run the current hardware and operating systems
storage area network
SNMP
dynamic host configuration protocol
infrastructure based
20. Access control method used by organizations that have a high turn over
RBAC
88
389
DHCP hardening
21. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
security template
DAC
database hardening
organizational unit
22. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
389
domain name service
discretionary
FTP hardening
23. Access control defined by roles or job functions
dynamic host configuration protocol
RBAC
rule of least privilege
domain name service
24. Issued by software vendors to fix bugs - address security issues or add functionality
DAC
patches
Terminal Access Controller Access-Control System
service pack
25. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
hotfix
500
20 and 21
DAC
26. SMTP stands for...
baselining
simple mail transport protocol
DAC
80
27. Start with the most secure environment - the loosen the controls as needed
RBAC
rule of least privilege
network news transfer protocol
49
28. SMTP port
role-based
simple authentication with security layer LDAPv3
25
security template
29. TACACS port
rule of least privilege
49
service pack
SNMP
30. The process of establishing a standard for security
Terminal Access Controller Access-Control System
simple authentication
anonymous authentication
baselining
31. RBAC stands for ____________ access control
simple authentication
25
role-based
hardening
32. Misconfiguration of an email server that could allow it to be used by an attacker to spread spam
389
simple network management protocol
configuration baselines
open mail relay
33. DHCP stands for...
rule of least privilege
dynamic host configuration protocol
DAC
local - site - domain - OU
34. NNTP port
discretionary
119
configuration management policy
NAC
35. An accumulated set of software updates or hotfixes from Microsoft
TACACS
service pack
encrypted file system
infrastructure based
36. Highly configurable - discretionary - job based access control - more flexible that MAC - more precise that groups
mandatory
RBAC
network access control
domain name service
37. OU stands for...
configuration management policy
storage area network
49
organizational unit
38. EFS stands for...
RBAC
encrypted file system
simple authentication with security layer LDAPv3
anonymous authentication
39. Help to make sure devices meet security standards before they are allowed to connect to the network
network news transfer protocol
DNS hardening
NAC
DHCP hardening
40. Access control method that uses ACLs
security template
least privileged principle
simple network management protocol
DAC
41. Standard setup used when configuring machines - provide a starting point and consistent setup
MAC
configuration baselines
20 and 21
80
42. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
baselining
SNMP
role-based
DNS hardening
43. POP3 port
110
80
simple network management protocol
hardware based
44. Defining the software and hardware components that can be used in an organization
TACACS
configuration management policy
service pack
organizational unit
45. HTTP port
hardware based
88
80
simple authentication with security layer LDAPv3
46. File system that offers limited security and was primarily designed for desktop use
simple authentication
MAC
FAT
infrastructure based
47. Transferable access controls applied and controlled by the object owner
DNS poisoning
DAC
DHCP hardening
configuration management policy
48. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
SSL
simple authentication
DHCP hardening
DNS poisoning
49. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
group policies
20 and 21
hotfix
hardware based
50. IPSec port
DAC
DHCP
mandatory
500