SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Highly configurable - discretionary - job based access control - more flexible that MAC - more precise that groups
configuration baselines
simple authentication
RBAC
443
2. Access control method that uses ACLs
security template
DAC
file and print sharing hardening
DHCP
3. An accumulated set of software updates or hotfixes from Microsoft
139
configuration baselines
DAC
service pack
4. Microsoft software packages that contain one or more patches and can be applied without rebooting
NAC
open mail relay
hotfix
baselining
5. File system that offers limited security and was primarily designed for desktop use
simple authentication
FAT
80
hardware based
6. A cryptographic protocol that provides security for communications over networks such as the Internet
domain name service
hardening
SSL
OS hardening
7. EFS stands for...
network attached storage
role-based
OS hardening
encrypted file system
8. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
SNMP
DAC
simple network management protocol
OS hardening
9. Centrally managed NAC method requiring installation of software agents on each network client
80
RBAC
system hardening
endpoint based
10. kerberos port
configuration management policy
88
DHCP
hotfix
11. Access control method used by organizations that have a high turn over
RBAC
least privileged principle
TACACS
22
12. Issued by software vendors to fix bugs - address security issues or add functionality
rule of least privilege
443
patches
database hardening
13. SMTP port
20 and 21
DNS hardening
25
mandatory
14. NNTP port
hardening
25
119
baselining
15. OU stands for...
organizational unit
patches
FAT
DNS poisoning
16. SMTP stands for...
389
storage area network
NNTP
simple mail transport protocol
17. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
DNS hardening
file and print sharing hardening
domain name service
DHCP
18. NAC stands for
DAC
Terminal Access Controller Access-Control System
RBAC
network access control
19. Making the OS less vulnerable to threats
22
hardening
DAC
Terminal Access Controller Access-Control System
20. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
DNS hardening
RBAC
anonymous authentication
hotfix
21. Standard setup used when configuring machines - provide a starting point and consistent setup
Terminal Access Controller Access-Control System
configuration baselines
TACACS
80
22. TACACS
file and print sharing hardening
500
Terminal Access Controller Access-Control System
25
23. Reduce the possibility of a breach by locking down the file system - controlling software installation and use - limiting access - disabling unnecessary services and applying patches -
DMZ
TACACS
OS hardening
organizational unit
24. LDAP authentication method not recommended
TACACS
anonymous authentication
FTP hardening
80
25. Define security settings and user's desktop environment on group of computers
infrastructure based
group policies
Terminal Access Controller Access-Control System
local - site - domain - OU
26. Access control defined by roles or job functions
20 and 21
RBAC
DAC
161
27. HTTP port
80
service pack
infrastructure based
Terminal Access Controller Access-Control System
28. POP3 port
encrypted file system
FTP hardening
110
patches
29. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
DHCP hardening
DNS hardening
MAC
23
30. Start with the most secure environment - the loosen the controls as needed
simple authentication with security layer LDAPv3
security template
local - site - domain - OU
rule of least privilege
31. Users granted least amount of access possible that enables them to complete their required work
least privileged principle
110
hardware based
FTP hardening
32. IPSec port
simple network management protocol
500
hardening
80
33. Locking down the system
161
443
system hardening
simple mail transport protocol
34. SNMP port
hardening
161
anonymous authentication
patches
35. Four ways to implement group policies
TACACS
389
local - site - domain - OU
hotfix
36. Defining the software and hardware components that can be used in an organization
configuration management policy
storage area network
simple mail transport protocol
local - site - domain - OU
37. FTP ports
NNTP
FAT
RBAC
20 and 21
38. Recommended LDAP authentication
NAC
simple authentication with security layer LDAPv3
lightweight directory access protocol
simple mail transport protocol
39. RBAC stands for ____________ access control
role-based
network news transfer protocol
80
hardware based
40. Most restrictive access control method that uses security labels to control access
hardening
discretionary
MAC
49
41. LDAP port
389
49
mandatory
infrastructure based
42. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
open mail relay
mandatory
simple mail transport protocol
DAC
43. HTTP SSL port
20 and 21
storage area network
443
23
44. NAC method where organizations must run the current hardware and operating systems
MAC
infrastructure based
storage area network
110
45. Allows a remote access server to communicate with an authentication server in order to determine if the user has access to the network
DAC
configuration baselines
service pack
TACACS
46. Telnet port
hotfix
least privileged principle
NAC
23
47. MAC stands for ____________ access control
119
anonymous authentication
domain name service
mandatory
48. NNTP stands for
25
network news transfer protocol
DAC
FAT
49. Contain possible security settings that can control one or multiple computers
baselining
open mail relay
security template
endpoint based
50. Transferable access controls applied and controlled by the object owner
DAC
database hardening
group policies
80