Test your basic knowledge |

Comptia Security +: Os Hardening

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. NetBIOS port






2. DAC stands for ____________ access control






3. Four ways to implement group policies






4. IPSec port






5. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention






6. Allows a remote access server to communicate with an authentication server in order to determine if the user has access to the network






7. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications






8. NAS stands for...






9. A subnet on the network that separates the internal network from publicly exposed hosts






10. Access control method that uses ACLs






11. Define security settings and user's desktop environment on group of computers






12. Centrally managed NAC method requiring installation of software agents on each network client






13. Defining the software and hardware components that can be used in an organization






14. SMTP port






15. A remote authentication protocol used to communicate with an authentication server commonly used in UNIX networks.






16. DHCP stands for...






17. Recommended LDAP authentication






18. NNTP port






19. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers






20. Standard setup used when configuring machines - provide a starting point and consistent setup






21. The process of establishing a standard for security






22. FTP ports






23. POP3 port






24. DNS stands for...






25. LDAP authentication method that uses clear text






26. Telnet port






27. NAC method where organizations must run the current hardware and operating systems






28. Used to deliver news articles to users on the Internet - vulnerable to DoS attacks






29. NNTP stands for






30. EFS stands for...






31. Misconfiguration of an email server that could allow it to be used by an attacker to spread spam






32. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected






33. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password






34. Start with the most secure environment - the loosen the controls as needed






35. MAC stands for ____________ access control






36. Issued by software vendors to fix bugs - address security issues or add functionality






37. kerberos port






38. Reduce the possibility of a breach by locking down the file system - controlling software installation and use - limiting access - disabling unnecessary services and applying patches -






39. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material






40. Help to make sure devices meet security standards before they are allowed to connect to the network






41. Transferable access controls applied and controlled by the object owner






42. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries






43. RBAC stands for ____________ access control






44. SMTP stands for...






45. A DNS server is fed altered or spoofed records that are retained and then duplicated elsewhere






46. SAN stands for...






47. Label-based - hard coded access controls - at multiple levels - applied to all objects






48. Access control defined by roles or job functions






49. Access permissions applied by the owner of an object using ACLs - commonly found on PCs






50. TACACS port