SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Making the OS less vulnerable to threats
least privileged principle
hardening
Terminal Access Controller Access-Control System
SNMP
2. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
TACACS
DNS hardening
endpoint based
389
3. Start with the most secure environment - the loosen the controls as needed
DAC
DMZ
hotfix
rule of least privilege
4. NAC stands for
80
443
network access control
TACACS
5. NetBIOS port
anonymous authentication
configuration management policy
139
Terminal Access Controller Access-Control System
6. NNTP stands for
network news transfer protocol
least privileged principle
110
DNS hardening
7. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
network access control
FAT
DHCP hardening
open mail relay
8. LDAP authentication method not recommended
simple mail transport protocol
DHCP
anonymous authentication
TACACS
9. Recommended LDAP authentication
simple mail transport protocol
simple authentication with security layer LDAPv3
system hardening
RBAC
10. HTTP SSL port
443
OS hardening
file and print sharing hardening
simple mail transport protocol
11. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
443
system hardening
file and print sharing hardening
group policies
12. SAN stands for...
OS hardening
lightweight directory access protocol
storage area network
TACACS
13. HTTP port
security template
80
database hardening
group policies
14. SSH port
SSL
22
RBAC
organizational unit
15. Centrally managed NAC method requiring installation of software agents on each network client
53
organizational unit
443
endpoint based
16. NNTP port
organizational unit
group policies
119
storage area network
17. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
hardware based
service pack
DAC
23
18. DNS stands for...
simple authentication with security layer LDAPv3
OS hardening
domain name service
file and print sharing hardening
19. Four ways to implement group policies
Terminal Access Controller Access-Control System
FTP hardening
SNMP
local - site - domain - OU
20. LDAP port
389
DMZ
baselining
DAC
21. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
configuration baselines
DAC
DHCP
NAC
22. Protocol for assigning dynamic IP addresses to devices on a network
organizational unit
DHCP
group policies
FTP hardening
23. LDAP stands for...
lightweight directory access protocol
simple network management protocol
FAT
RBAC
24. A cryptographic protocol that provides security for communications over networks such as the Internet
mandatory
discretionary
SSL
lightweight directory access protocol
25. POP3 port
simple mail transport protocol
patches
110
file and print sharing hardening
26. Most restrictive access control method that uses security labels to control access
139
discretionary
patches
MAC
27. Users granted least amount of access possible that enables them to complete their required work
patches
least privileged principle
119
SNMP
28. An accumulated set of software updates or hotfixes from Microsoft
DAC
service pack
lightweight directory access protocol
configuration management policy
29. LDAP authentication method that uses clear text
simple authentication
DMZ
110
infrastructure based
30. Used to deliver news articles to users on the Internet - vulnerable to DoS attacks
open mail relay
network access control
DAC
NNTP
31. NAS stands for...
Terminal Access Controller Access-Control System
MAC
NAC
network attached storage
32. IPSec port
23
500
simple network management protocol
mandatory
33. A remote authentication protocol used to communicate with an authentication server commonly used in UNIX networks.
TACACS
patches
DHCP hardening
hotfix
34. Label-based - hard coded access controls - at multiple levels - applied to all objects
service pack
161
443
MAC
35. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
database hardening
TACACS
encrypted file system
simple network management protocol
36. The process of establishing a standard for security
simple network management protocol
139
baselining
DNS hardening
37. TACACS
role-based
Terminal Access Controller Access-Control System
DNS poisoning
network attached storage
38. Issued by software vendors to fix bugs - address security issues or add functionality
rule of least privilege
110
53
patches
39. SMTP stands for...
network attached storage
role-based
simple mail transport protocol
simple network management protocol
40. NAC method where organizations must run the current hardware and operating systems
SNMP
53
infrastructure based
network news transfer protocol
41. DAC stands for ____________ access control
discretionary
system hardening
DAC
security template
42. A DNS server is fed altered or spoofed records that are retained and then duplicated elsewhere
discretionary
80
DNS poisoning
database hardening
43. DNS port
53
22
500
NAC
44. SNMP port
161
DNS hardening
system hardening
NAC
45. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
SNMP
DAC
storage area network
MAC
46. Telnet port
encrypted file system
23
service pack
network news transfer protocol
47. Defining the software and hardware components that can be used in an organization
389
configuration management policy
23
file and print sharing hardening
48. TACACS port
49
DAC
OS hardening
discretionary
49. Standard setup used when configuring machines - provide a starting point and consistent setup
encrypted file system
organizational unit
configuration baselines
hardware based
50. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
least privileged principle
MAC
FTP hardening
security template