SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. TACACS port
49
infrastructure based
RBAC
role-based
2. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
mandatory
161
hotfix
file and print sharing hardening
3. SNMP stand for...
simple network management protocol
25
discretionary
file and print sharing hardening
4. Start with the most secure environment - the loosen the controls as needed
rule of least privilege
80
TACACS
least privileged principle
5. Standard setup used when configuring machines - provide a starting point and consistent setup
configuration baselines
88
file and print sharing hardening
group policies
6. OU stands for...
dynamic host configuration protocol
FTP hardening
DMZ
organizational unit
7. Making the OS less vulnerable to threats
role-based
configuration baselines
hardening
DMZ
8. Define security settings and user's desktop environment on group of computers
group policies
DHCP
open mail relay
MAC
9. SAN stands for...
22
Terminal Access Controller Access-Control System
500
storage area network
10. NAC stands for
network access control
database hardening
DAC
443
11. DAC stands for ____________ access control
25
discretionary
domain name service
service pack
12. Allows a remote access server to communicate with an authentication server in order to determine if the user has access to the network
TACACS
local - site - domain - OU
simple authentication
open mail relay
13. kerberos port
mandatory
88
database hardening
hardening
14. DNS stands for...
DAC
network news transfer protocol
group policies
domain name service
15. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
lightweight directory access protocol
88
database hardening
DAC
16. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
hardware based
security template
88
SNMP
17. Access control method that uses ACLs
DAC
TACACS
RBAC
23
18. EFS stands for...
rule of least privilege
encrypted file system
infrastructure based
DAC
19. Users granted least amount of access possible that enables them to complete their required work
MAC
139
least privileged principle
local - site - domain - OU
20. RBAC stands for ____________ access control
161
FTP hardening
database hardening
role-based
21. Defining the software and hardware components that can be used in an organization
anonymous authentication
domain name service
configuration management policy
group policies
22. Locking down the system
system hardening
139
NNTP
DMZ
23. Reduce the possibility of a breach by locking down the file system - controlling software installation and use - limiting access - disabling unnecessary services and applying patches -
OS hardening
network attached storage
500
role-based
24. Four ways to implement group policies
local - site - domain - OU
389
network news transfer protocol
encrypted file system
25. Misconfiguration of an email server that could allow it to be used by an attacker to spread spam
hotfix
TACACS
open mail relay
network news transfer protocol
26. Microsoft software packages that contain one or more patches and can be applied without rebooting
local - site - domain - OU
network access control
hotfix
88
27. Centrally managed NAC method requiring installation of software agents on each network client
endpoint based
23
network news transfer protocol
simple mail transport protocol
28. A cryptographic protocol that provides security for communications over networks such as the Internet
database hardening
SSL
139
infrastructure based
29. FTP ports
SNMP
500
endpoint based
20 and 21
30. LDAP port
389
simple authentication
group policies
49
31. HTTP port
hardening
500
80
configuration management policy
32. Access control method used by organizations that have a high turn over
23
baselining
hotfix
RBAC
33. An accumulated set of software updates or hotfixes from Microsoft
service pack
389
rule of least privilege
simple network management protocol
34. File system that offers limited security and was primarily designed for desktop use
rule of least privilege
FAT
49
500
35. Label-based - hard coded access controls - at multiple levels - applied to all objects
system hardening
service pack
MAC
RBAC
36. HTTP SSL port
system hardening
SNMP
443
network attached storage
37. Issued by software vendors to fix bugs - address security issues or add functionality
patches
20 and 21
FAT
TACACS
38. Contain possible security settings that can control one or multiple computers
security template
local - site - domain - OU
TACACS
configuration management policy
39. MAC stands for ____________ access control
simple network management protocol
lightweight directory access protocol
23
mandatory
40. NNTP port
configuration baselines
389
TACACS
119
41. SNMP port
hardening
group policies
161
25
42. Transferable access controls applied and controlled by the object owner
DAC
database hardening
DNS hardening
TACACS
43. Highly configurable - discretionary - job based access control - more flexible that MAC - more precise that groups
TACACS
RBAC
DHCP
DNS poisoning
44. NetBIOS port
organizational unit
DAC
139
configuration baselines
45. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
mandatory
53
DAC
RBAC
46. SMTP port
domain name service
lightweight directory access protocol
25
53
47. POP3 port
discretionary
simple authentication
110
TACACS
48. Recommended LDAP authentication
simple authentication with security layer LDAPv3
FAT
patches
role-based
49. IPSec port
22
500
MAC
configuration management policy
50. NAS stands for...
22
389
organizational unit
network attached storage