SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. OU stands for...
organizational unit
configuration management policy
open mail relay
SSL
2. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
rule of least privilege
443
SNMP
80
3. Highly configurable - discretionary - job based access control - more flexible that MAC - more precise that groups
RBAC
encrypted file system
simple mail transport protocol
anonymous authentication
4. kerberos port
storage area network
119
network news transfer protocol
88
5. NetBIOS port
500
139
DNS poisoning
simple network management protocol
6. Transferable access controls applied and controlled by the object owner
lightweight directory access protocol
simple network management protocol
DAC
SSL
7. Label-based - hard coded access controls - at multiple levels - applied to all objects
hardening
MAC
network access control
Terminal Access Controller Access-Control System
8. File system that offers limited security and was primarily designed for desktop use
FAT
service pack
389
DNS hardening
9. A DNS server is fed altered or spoofed records that are retained and then duplicated elsewhere
encrypted file system
file and print sharing hardening
simple authentication with security layer LDAPv3
DNS poisoning
10. RBAC stands for ____________ access control
53
hotfix
80
role-based
11. The process of establishing a standard for security
baselining
389
least privileged principle
simple mail transport protocol
12. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
RBAC
NNTP
23
file and print sharing hardening
13. A cryptographic protocol that provides security for communications over networks such as the Internet
110
SSL
domain name service
open mail relay
14. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
baselining
139
Terminal Access Controller Access-Control System
database hardening
15. An accumulated set of software updates or hotfixes from Microsoft
RBAC
hotfix
161
service pack
16. LDAP authentication method that uses clear text
simple authentication
local - site - domain - OU
system hardening
infrastructure based
17. DHCP stands for...
simple mail transport protocol
OS hardening
dynamic host configuration protocol
TACACS
18. Users granted least amount of access possible that enables them to complete their required work
110
least privileged principle
endpoint based
simple mail transport protocol
19. Reduce the possibility of a breach by locking down the file system - controlling software installation and use - limiting access - disabling unnecessary services and applying patches -
configuration management policy
OS hardening
group policies
DAC
20. NAC stands for
simple mail transport protocol
DNS hardening
anonymous authentication
network access control
21. NAC method where organizations must run the current hardware and operating systems
file and print sharing hardening
service pack
infrastructure based
RBAC
22. SAN stands for...
baselining
group policies
infrastructure based
storage area network
23. Contain possible security settings that can control one or multiple computers
security template
SNMP
storage area network
DAC
24. TACACS port
FTP hardening
encrypted file system
49
domain name service
25. Standard setup used when configuring machines - provide a starting point and consistent setup
configuration baselines
80
MAC
TACACS
26. Four ways to implement group policies
local - site - domain - OU
discretionary
NNTP
hardware based
27. Defining the software and hardware components that can be used in an organization
DNS hardening
encrypted file system
configuration management policy
119
28. HTTP port
80
Terminal Access Controller Access-Control System
file and print sharing hardening
lightweight directory access protocol
29. EFS stands for...
encrypted file system
domain name service
TACACS
139
30. Issued by software vendors to fix bugs - address security issues or add functionality
patches
configuration management policy
discretionary
simple authentication with security layer LDAPv3
31. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
DHCP hardening
endpoint based
119
DAC
32. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
DNS hardening
25
443
DHCP hardening
33. NNTP stands for
network news transfer protocol
80
hardware based
389
34. SNMP stand for...
open mail relay
simple network management protocol
baselining
network news transfer protocol
35. FTP ports
organizational unit
TACACS
20 and 21
Terminal Access Controller Access-Control System
36. Define security settings and user's desktop environment on group of computers
DAC
25
20 and 21
group policies
37. Making the OS less vulnerable to threats
database hardening
hardening
simple authentication
simple authentication with security layer LDAPv3
38. NAS stands for...
network attached storage
139
TACACS
20 and 21
39. Telnet port
139
23
patches
lightweight directory access protocol
40. Centrally managed NAC method requiring installation of software agents on each network client
dynamic host configuration protocol
endpoint based
TACACS
25
41. Recommended LDAP authentication
organizational unit
TACACS
simple authentication with security layer LDAPv3
RBAC
42. SSH port
hotfix
configuration management policy
20 and 21
22
43. SMTP port
FAT
open mail relay
storage area network
25
44. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
FTP hardening
SNMP
anonymous authentication
service pack
45. POP3 port
Terminal Access Controller Access-Control System
network attached storage
hotfix
110
46. Help to make sure devices meet security standards before they are allowed to connect to the network
configuration management policy
lightweight directory access protocol
Terminal Access Controller Access-Control System
NAC
47. Locking down the system
DHCP hardening
system hardening
simple mail transport protocol
local - site - domain - OU
48. LDAP port
389
DHCP hardening
storage area network
RBAC
49. SMTP port
25
discretionary
OS hardening
role-based
50. IPSec port
80
500
simple network management protocol
group policies