SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Reduce the possibility of a breach by locking down the file system - controlling software installation and use - limiting access - disabling unnecessary services and applying patches -
DNS hardening
139
OS hardening
group policies
2. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
SNMP
security template
FTP hardening
least privileged principle
3. TACACS
service pack
endpoint based
88
Terminal Access Controller Access-Control System
4. A subnet on the network that separates the internal network from publicly exposed hosts
DMZ
patches
discretionary
DAC
5. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
anonymous authentication
SNMP
service pack
DAC
6. HTTP SSL port
443
FTP hardening
database hardening
DAC
7. LDAP stands for...
lightweight directory access protocol
file and print sharing hardening
443
TACACS
8. OU stands for...
SNMP
organizational unit
storage area network
22
9. MAC stands for ____________ access control
database hardening
mandatory
139
25
10. Access control method that uses ACLs
SNMP
DAC
anonymous authentication
139
11. Access control defined by roles or job functions
RBAC
anonymous authentication
88
DMZ
12. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
88
domain name service
storage area network
hardware based
13. kerberos port
DAC
SNMP
network attached storage
88
14. Microsoft software packages that contain one or more patches and can be applied without rebooting
TACACS
139
hotfix
system hardening
15. FTP ports
TACACS
DNS hardening
simple mail transport protocol
20 and 21
16. NAS stands for...
DHCP
SSL
network attached storage
baselining
17. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
DNS hardening
role-based
DAC
simple authentication
18. NAC method where organizations must run the current hardware and operating systems
infrastructure based
mandatory
DHCP hardening
25
19. DAC stands for ____________ access control
discretionary
RBAC
hotfix
open mail relay
20. NAC stands for
open mail relay
SNMP
patches
network access control
21. LDAP authentication method not recommended
NAC
anonymous authentication
patches
network attached storage
22. The process of establishing a standard for security
simple authentication with security layer LDAPv3
NNTP
baselining
20 and 21
23. SMTP stands for...
Terminal Access Controller Access-Control System
RBAC
simple mail transport protocol
443
24. SNMP port
88
161
security template
discretionary
25. POP3 port
simple network management protocol
110
mandatory
storage area network
26. An accumulated set of software updates or hotfixes from Microsoft
lightweight directory access protocol
DAC
110
service pack
27. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
DMZ
RBAC
443
DNS hardening
28. Four ways to implement group policies
local - site - domain - OU
RBAC
rule of least privilege
TACACS
29. Making the OS less vulnerable to threats
DAC
53
network access control
hardening
30. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
database hardening
mandatory
88
110
31. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
configuration management policy
DHCP
network news transfer protocol
file and print sharing hardening
32. NNTP port
119
53
DHCP
SSL
33. NetBIOS port
mandatory
anonymous authentication
discretionary
139
34. Contain possible security settings that can control one or multiple computers
baselining
security template
80
network access control
35. Most restrictive access control method that uses security labels to control access
network news transfer protocol
MAC
OS hardening
patches
36. Used to deliver news articles to users on the Internet - vulnerable to DoS attacks
NNTP
lightweight directory access protocol
hardware based
MAC
37. HTTP port
25
RBAC
80
lightweight directory access protocol
38. SMTP port
119
110
lightweight directory access protocol
25
39. Access control method used by organizations that have a high turn over
MAC
RBAC
500
simple authentication with security layer LDAPv3
40. Telnet port
23
389
SSL
simple authentication with security layer LDAPv3
41. Defining the software and hardware components that can be used in an organization
MAC
domain name service
DHCP
configuration management policy
42. EFS stands for...
encrypted file system
110
20 and 21
baselining
43. A DNS server is fed altered or spoofed records that are retained and then duplicated elsewhere
infrastructure based
SSL
DNS poisoning
TACACS
44. IPSec port
500
mandatory
88
25
45. Protocol for assigning dynamic IP addresses to devices on a network
file and print sharing hardening
DHCP
DMZ
DAC
46. Allows a remote access server to communicate with an authentication server in order to determine if the user has access to the network
NNTP
TACACS
RBAC
23
47. LDAP port
389
DNS hardening
NAC
DAC
48. SMTP port
hardware based
simple mail transport protocol
25
DAC
49. DNS stands for...
organizational unit
SSL
DHCP
domain name service
50. Define security settings and user's desktop environment on group of computers
endpoint based
file and print sharing hardening
group policies
discretionary