SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Issued by software vendors to fix bugs - address security issues or add functionality
patches
hotfix
file and print sharing hardening
organizational unit
2. HTTP SSL port
FTP hardening
443
88
500
3. FTP ports
500
20 and 21
simple mail transport protocol
network news transfer protocol
4. NAC stands for
network access control
simple authentication
hardening
MAC
5. RBAC stands for ____________ access control
role-based
FAT
anonymous authentication
DHCP hardening
6. NNTP port
dynamic host configuration protocol
119
service pack
MAC
7. POP3 port
network access control
110
discretionary
DHCP
8. LDAP stands for...
119
DAC
lightweight directory access protocol
NNTP
9. LDAP authentication method that uses clear text
110
simple authentication
23
DNS hardening
10. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
domain name service
RBAC
DNS hardening
configuration management policy
11. Transferable access controls applied and controlled by the object owner
DAC
25
DNS hardening
49
12. SNMP port
161
least privileged principle
organizational unit
file and print sharing hardening
13. SAN stands for...
storage area network
DHCP hardening
139
DAC
14. File system that offers limited security and was primarily designed for desktop use
baselining
FAT
TACACS
53
15. Access control method used by organizations that have a high turn over
dynamic host configuration protocol
SNMP
RBAC
hotfix
16. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
80
DAC
network access control
FTP hardening
17. DNS stands for...
161
lightweight directory access protocol
security template
domain name service
18. SSH port
25
SSL
DAC
22
19. TACACS port
25
49
110
rule of least privilege
20. SNMP stand for...
FTP hardening
simple network management protocol
161
500
21. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
SSL
database hardening
MAC
network access control
22. Define security settings and user's desktop environment on group of computers
simple mail transport protocol
group policies
rule of least privilege
119
23. Telnet port
500
23
configuration baselines
DNS hardening
24. Most restrictive access control method that uses security labels to control access
OS hardening
SSL
storage area network
MAC
25. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
baselining
25
SNMP
hardware based
26. TACACS
Terminal Access Controller Access-Control System
25
MAC
network attached storage
27. Standard setup used when configuring machines - provide a starting point and consistent setup
configuration baselines
DNS hardening
NAC
88
28. Reduce the possibility of a breach by locking down the file system - controlling software installation and use - limiting access - disabling unnecessary services and applying patches -
139
least privileged principle
group policies
OS hardening
29. Making the OS less vulnerable to threats
hardening
simple authentication with security layer LDAPv3
SNMP
TACACS
30. NetBIOS port
DAC
hotfix
DMZ
139
31. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
patches
NNTP
file and print sharing hardening
DAC
32. Allows a remote access server to communicate with an authentication server in order to determine if the user has access to the network
endpoint based
storage area network
22
TACACS
33. Highly configurable - discretionary - job based access control - more flexible that MAC - more precise that groups
53
hardening
simple mail transport protocol
RBAC
34. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
DHCP hardening
hotfix
500
OS hardening
35. Misconfiguration of an email server that could allow it to be used by an attacker to spread spam
open mail relay
110
domain name service
139
36. Access control method that uses ACLs
OS hardening
DAC
49
RBAC
37. HTTP port
80
139
hotfix
389
38. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
domain name service
FTP hardening
DNS poisoning
system hardening
39. A DNS server is fed altered or spoofed records that are retained and then duplicated elsewhere
389
OS hardening
service pack
DNS poisoning
40. OU stands for...
20 and 21
organizational unit
FAT
DAC
41. SMTP port
hotfix
FTP hardening
endpoint based
25
42. Help to make sure devices meet security standards before they are allowed to connect to the network
TACACS
service pack
encrypted file system
NAC
43. Users granted least amount of access possible that enables them to complete their required work
MAC
least privileged principle
patches
lightweight directory access protocol
44. Start with the most secure environment - the loosen the controls as needed
DHCP
rule of least privilege
NNTP
389
45. SMTP stands for...
389
simple authentication with security layer LDAPv3
database hardening
simple mail transport protocol
46. A subnet on the network that separates the internal network from publicly exposed hosts
DMZ
23
storage area network
network news transfer protocol
47. DAC stands for ____________ access control
simple authentication
discretionary
DMZ
network attached storage
48. Label-based - hard coded access controls - at multiple levels - applied to all objects
MAC
443
rule of least privilege
hardening
49. The process of establishing a standard for security
25
baselining
network news transfer protocol
OS hardening
50. A cryptographic protocol that provides security for communications over networks such as the Internet
storage area network
SSL
23
DMZ