SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. LDAP port
anonymous authentication
storage area network
SSL
389
2. Recommended LDAP authentication
dynamic host configuration protocol
443
simple authentication with security layer LDAPv3
simple network management protocol
3. HTTP port
80
NAC
FAT
database hardening
4. TACACS
DHCP hardening
system hardening
Terminal Access Controller Access-Control System
119
5. FTP ports
23
endpoint based
88
20 and 21
6. NNTP port
dynamic host configuration protocol
119
network attached storage
DAC
7. Issued by software vendors to fix bugs - address security issues or add functionality
patches
hardware based
database hardening
file and print sharing hardening
8. Microsoft software packages that contain one or more patches and can be applied without rebooting
file and print sharing hardening
MAC
TACACS
hotfix
9. DAC stands for ____________ access control
discretionary
domain name service
simple authentication with security layer LDAPv3
RBAC
10. Define security settings and user's desktop environment on group of computers
hotfix
hardening
25
group policies
11. Most restrictive access control method that uses security labels to control access
OS hardening
MAC
88
anonymous authentication
12. Transferable access controls applied and controlled by the object owner
53
DAC
simple authentication with security layer LDAPv3
DNS hardening
13. DNS port
53
25
open mail relay
group policies
14. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
simple mail transport protocol
local - site - domain - OU
database hardening
22
15. Telnet port
network news transfer protocol
DAC
23
FTP hardening
16. Defining the software and hardware components that can be used in an organization
hardening
25
hotfix
configuration management policy
17. NNTP stands for
DNS hardening
storage area network
network news transfer protocol
local - site - domain - OU
18. Label-based - hard coded access controls - at multiple levels - applied to all objects
49
MAC
service pack
hardware based
19. Centrally managed NAC method requiring installation of software agents on each network client
80
OS hardening
endpoint based
110
20. LDAP authentication method that uses clear text
OS hardening
simple authentication
role-based
security template
21. SSH port
RBAC
139
22
TACACS
22. SMTP port
simple mail transport protocol
network attached storage
25
dynamic host configuration protocol
23. Access control defined by roles or job functions
RBAC
DHCP
23
network news transfer protocol
24. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
DHCP hardening
infrastructure based
network access control
rule of least privilege
25. NAC stands for
patches
open mail relay
hotfix
network access control
26. NetBIOS port
DAC
open mail relay
139
database hardening
27. SMTP port
role-based
database hardening
MAC
25
28. SNMP stand for...
88
configuration baselines
RBAC
simple network management protocol
29. TACACS port
88
49
dynamic host configuration protocol
simple mail transport protocol
30. Contain possible security settings that can control one or multiple computers
security template
22
group policies
database hardening
31. NAS stands for...
88
network attached storage
DHCP hardening
least privileged principle
32. A cryptographic protocol that provides security for communications over networks such as the Internet
role-based
389
SSL
88
33. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
network news transfer protocol
139
SNMP
DNS hardening
34. LDAP authentication method not recommended
discretionary
anonymous authentication
SNMP
SSL
35. Used to deliver news articles to users on the Internet - vulnerable to DoS attacks
encrypted file system
storage area network
NNTP
OS hardening
36. Four ways to implement group policies
110
NAC
TACACS
local - site - domain - OU
37. Help to make sure devices meet security standards before they are allowed to connect to the network
least privileged principle
mandatory
network attached storage
NAC
38. A remote authentication protocol used to communicate with an authentication server commonly used in UNIX networks.
anonymous authentication
network attached storage
389
TACACS
39. Allows a remote access server to communicate with an authentication server in order to determine if the user has access to the network
baselining
MAC
network attached storage
TACACS
40. Start with the most secure environment - the loosen the controls as needed
baselining
119
file and print sharing hardening
rule of least privilege
41. NAC method where organizations must run the current hardware and operating systems
anonymous authentication
infrastructure based
baselining
database hardening
42. kerberos port
organizational unit
simple network management protocol
88
500
43. Locking down the system
system hardening
local - site - domain - OU
storage area network
OS hardening
44. Access control method used by organizations that have a high turn over
RBAC
22
local - site - domain - OU
88
45. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
rule of least privilege
DMZ
network access control
DAC
46. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
TACACS
hardware based
DMZ
anonymous authentication
47. HTTP SSL port
FAT
anonymous authentication
baselining
443
48. SNMP port
SSL
TACACS
simple mail transport protocol
161
49. IPSec port
role-based
encrypted file system
simple authentication
500
50. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
DAC
TACACS
mandatory
file and print sharing hardening