SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Misconfiguration of an email server that could allow it to be used by an attacker to spread spam
DHCP hardening
hardening
20 and 21
open mail relay
2. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
RBAC
DHCP
open mail relay
DNS hardening
3. Standard setup used when configuring machines - provide a starting point and consistent setup
configuration baselines
storage area network
security template
domain name service
4. Defining the software and hardware components that can be used in an organization
configuration management policy
NNTP
DAC
discretionary
5. Issued by software vendors to fix bugs - address security issues or add functionality
patches
20 and 21
file and print sharing hardening
configuration baselines
6. Start with the most secure environment - the loosen the controls as needed
simple authentication with security layer LDAPv3
least privileged principle
NNTP
rule of least privilege
7. Access control defined by roles or job functions
group policies
simple authentication with security layer LDAPv3
database hardening
RBAC
8. HTTP port
rule of least privilege
mandatory
80
simple mail transport protocol
9. LDAP stands for...
lightweight directory access protocol
DNS poisoning
22
security template
10. NNTP port
network attached storage
least privileged principle
organizational unit
119
11. DNS stands for...
database hardening
domain name service
role-based
open mail relay
12. Transferable access controls applied and controlled by the object owner
SSL
DAC
DNS poisoning
domain name service
13. Locking down the system
RBAC
MAC
system hardening
DNS hardening
14. Access control method that uses ACLs
FTP hardening
discretionary
DAC
500
15. A cryptographic protocol that provides security for communications over networks such as the Internet
storage area network
139
SSL
network news transfer protocol
16. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
TACACS
DNS hardening
DHCP hardening
baselining
17. Access control method used by organizations that have a high turn over
system hardening
local - site - domain - OU
161
RBAC
18. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
DHCP hardening
open mail relay
hardware based
DAC
19. NAC stands for
network access control
baselining
rule of least privilege
FTP hardening
20. POP3 port
SSL
110
139
network news transfer protocol
21. SMTP port
25
hotfix
MAC
DNS poisoning
22. Centrally managed NAC method requiring installation of software agents on each network client
endpoint based
NAC
DAC
139
23. Allows a remote access server to communicate with an authentication server in order to determine if the user has access to the network
dynamic host configuration protocol
discretionary
TACACS
88
24. Most restrictive access control method that uses security labels to control access
25
network access control
49
MAC
25. SAN stands for...
RBAC
22
RBAC
storage area network
26. FTP ports
20 and 21
NAC
storage area network
patches
27. NetBIOS port
139
hardening
DAC
simple authentication with security layer LDAPv3
28. TACACS
Terminal Access Controller Access-Control System
22
database hardening
encrypted file system
29. An accumulated set of software updates or hotfixes from Microsoft
service pack
DNS hardening
database hardening
lightweight directory access protocol
30. EFS stands for...
encrypted file system
rule of least privilege
500
storage area network
31. LDAP authentication method not recommended
hardware based
configuration management policy
anonymous authentication
group policies
32. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
TACACS
simple authentication with security layer LDAPv3
database hardening
RBAC
33. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
storage area network
FTP hardening
configuration baselines
role-based
34. RBAC stands for ____________ access control
simple mail transport protocol
NAC
FTP hardening
role-based
35. NAC method where organizations must run the current hardware and operating systems
infrastructure based
20 and 21
NAC
NNTP
36. OU stands for...
OS hardening
patches
organizational unit
mandatory
37. Protocol for assigning dynamic IP addresses to devices on a network
rule of least privilege
SNMP
DHCP
system hardening
38. DNS port
system hardening
53
DNS hardening
lightweight directory access protocol
39. NNTP stands for
network news transfer protocol
simple mail transport protocol
SNMP
SSL
40. Label-based - hard coded access controls - at multiple levels - applied to all objects
MAC
389
infrastructure based
DHCP
41. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
RBAC
DAC
file and print sharing hardening
DMZ
42. HTTP SSL port
NAC
discretionary
443
configuration management policy
43. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
OS hardening
SNMP
least privileged principle
49
44. Define security settings and user's desktop environment on group of computers
database hardening
hotfix
patches
group policies
45. SMTP port
25
open mail relay
119
local - site - domain - OU
46. NAS stands for...
security template
FAT
network attached storage
discretionary
47. SNMP port
local - site - domain - OU
group policies
NNTP
161
48. IPSec port
DMZ
500
file and print sharing hardening
443
49. Help to make sure devices meet security standards before they are allowed to connect to the network
RBAC
NAC
file and print sharing hardening
DNS hardening
50. kerberos port
DAC
443
open mail relay
88