SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Label-based - hard coded access controls - at multiple levels - applied to all objects
database hardening
MAC
hardware based
simple authentication
2. A subnet on the network that separates the internal network from publicly exposed hosts
storage area network
DNS hardening
161
DMZ
3. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
20 and 21
DAC
hardware based
anonymous authentication
4. LDAP authentication method not recommended
group policies
anonymous authentication
storage area network
encrypted file system
5. Making the OS less vulnerable to threats
security template
hardening
simple authentication with security layer LDAPv3
389
6. Telnet port
rule of least privilege
MAC
23
SSL
7. Highly configurable - discretionary - job based access control - more flexible that MAC - more precise that groups
discretionary
simple network management protocol
88
RBAC
8. SSH port
organizational unit
configuration management policy
22
SSL
9. kerberos port
88
Terminal Access Controller Access-Control System
23
SNMP
10. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
MAC
119
FAT
DAC
11. SMTP port
25
161
119
baselining
12. LDAP stands for...
patches
53
lightweight directory access protocol
system hardening
13. HTTP port
80
NAC
RBAC
NNTP
14. OU stands for...
20 and 21
organizational unit
RBAC
MAC
15. POP3 port
110
FTP hardening
25
patches
16. NAC stands for
patches
network access control
simple mail transport protocol
25
17. NAS stands for...
network attached storage
500
22
RBAC
18. Four ways to implement group policies
FTP hardening
dynamic host configuration protocol
local - site - domain - OU
NNTP
19. NNTP stands for
DAC
SSL
network news transfer protocol
mandatory
20. DAC stands for ____________ access control
simple mail transport protocol
service pack
group policies
discretionary
21. SNMP stand for...
22
NAC
DAC
simple network management protocol
22. DNS stands for...
domain name service
OS hardening
FAT
MAC
23. A remote authentication protocol used to communicate with an authentication server commonly used in UNIX networks.
simple authentication
TACACS
hardening
configuration baselines
24. Start with the most secure environment - the loosen the controls as needed
rule of least privilege
TACACS
local - site - domain - OU
DNS poisoning
25. NAC method where organizations must run the current hardware and operating systems
patches
DAC
endpoint based
infrastructure based
26. SMTP stands for...
simple mail transport protocol
discretionary
dynamic host configuration protocol
RBAC
27. Define security settings and user's desktop environment on group of computers
network attached storage
FTP hardening
file and print sharing hardening
group policies
28. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
storage area network
TACACS
DAC
FTP hardening
29. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
simple network management protocol
SNMP
network access control
SSL
30. TACACS port
DAC
389
49
500
31. Reduce the possibility of a breach by locking down the file system - controlling software installation and use - limiting access - disabling unnecessary services and applying patches -
NNTP
OS hardening
encrypted file system
database hardening
32. HTTP SSL port
network news transfer protocol
443
80
FTP hardening
33. Protocol for assigning dynamic IP addresses to devices on a network
139
Terminal Access Controller Access-Control System
RBAC
DHCP
34. Centrally managed NAC method requiring installation of software agents on each network client
patches
500
hardware based
endpoint based
35. A cryptographic protocol that provides security for communications over networks such as the Internet
endpoint based
25
SSL
role-based
36. TACACS
Terminal Access Controller Access-Control System
DHCP hardening
DAC
hardening
37. Defining the software and hardware components that can be used in an organization
configuration management policy
20 and 21
RBAC
open mail relay
38. MAC stands for ____________ access control
NAC
group policies
23
mandatory
39. SMTP port
lightweight directory access protocol
25
DAC
20 and 21
40. Used to deliver news articles to users on the Internet - vulnerable to DoS attacks
discretionary
infrastructure based
NNTP
25
41. Standard setup used when configuring machines - provide a starting point and consistent setup
TACACS
configuration baselines
organizational unit
DHCP
42. FTP ports
local - site - domain - OU
20 and 21
110
SSL
43. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
DHCP hardening
hardware based
88
DAC
44. NetBIOS port
hardware based
RBAC
139
security template
45. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
file and print sharing hardening
open mail relay
configuration management policy
role-based
46. LDAP port
DMZ
TACACS
389
mandatory
47. SAN stands for...
RBAC
storage area network
SSL
FAT
48. Access control defined by roles or job functions
file and print sharing hardening
network attached storage
RBAC
DAC
49. Transferable access controls applied and controlled by the object owner
discretionary
DAC
dynamic host configuration protocol
configuration baselines
50. File system that offers limited security and was primarily designed for desktop use
20 and 21
MAC
FAT
MAC