SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Telnet port
least privileged principle
DAC
500
23
2. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
139
NAC
FTP hardening
80
3. Transferable access controls applied and controlled by the object owner
NNTP
TACACS
DMZ
DAC
4. RBAC stands for ____________ access control
database hardening
22
139
role-based
5. NAS stands for...
RBAC
network attached storage
OS hardening
MAC
6. Start with the most secure environment - the loosen the controls as needed
rule of least privilege
discretionary
network attached storage
RBAC
7. Issued by software vendors to fix bugs - address security issues or add functionality
patches
389
20 and 21
FAT
8. Enable and monitor logs - perform regular backups - use file encryption - enable account lockout and strong user name and password
88
file and print sharing hardening
storage area network
network news transfer protocol
9. Access control method used by organizations that have a high turn over
FTP hardening
53
RBAC
TACACS
10. MAC stands for ____________ access control
mandatory
lightweight directory access protocol
500
role-based
11. DNS stands for...
domain name service
53
anonymous authentication
hardware based
12. Contain possible security settings that can control one or multiple computers
security template
configuration management policy
DAC
lightweight directory access protocol
13. NAC method where organizations must run the current hardware and operating systems
53
configuration management policy
network access control
infrastructure based
14. TACACS port
hardware based
lightweight directory access protocol
49
anonymous authentication
15. A remote authentication protocol used to communicate with an authentication server commonly used in UNIX networks.
file and print sharing hardening
TACACS
network attached storage
configuration management policy
16. HTTP SSL port
25
infrastructure based
443
network access control
17. Making the OS less vulnerable to threats
hardening
storage area network
least privileged principle
DHCP
18. Allows a remote access server to communicate with an authentication server in order to determine if the user has access to the network
389
25
TACACS
network access control
19. Label-based - hard coded access controls - at multiple levels - applied to all objects
encrypted file system
23
MAC
open mail relay
20. A DNS server is fed altered or spoofed records that are retained and then duplicated elsewhere
23
DNS poisoning
service pack
storage area network
21. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
DAC
dynamic host configuration protocol
25
500
22. Locking down the system
23
DAC
system hardening
389
23. Help to make sure devices meet security standards before they are allowed to connect to the network
Terminal Access Controller Access-Control System
NAC
baselining
patches
24. File system that offers limited security and was primarily designed for desktop use
service pack
119
FAT
mandatory
25. SMTP port
25
DHCP hardening
encrypted file system
FAT
26. DHCP stands for...
network news transfer protocol
dynamic host configuration protocol
open mail relay
SSL
27. Disable default accounts and passwords - regular backups - enable auditing features - monitor user privileges - implement authentication for users and applications
database hardening
25
hardening
RBAC
28. EFS stands for...
NAC
encrypted file system
FTP hardening
139
29. SSH port
configuration baselines
FAT
NAC
22
30. SMTP stands for...
DHCP
simple mail transport protocol
139
88
31. Bind MAC addresses of network devices to IP address - monitor logs - apply security patches - use IDS and strong authentication to detect rogue servers
RBAC
DAC
DHCP hardening
security template
32. Four ways to implement group policies
least privileged principle
local - site - domain - OU
389
security template
33. Defining the software and hardware components that can be used in an organization
configuration management policy
RBAC
23
80
34. Recommended LDAP authentication
DHCP
80
local - site - domain - OU
simple authentication with security layer LDAPv3
35. DAC stands for ____________ access control
hardening
hardware based
discretionary
hotfix
36. SNMP port
49
161
file and print sharing hardening
DHCP
37. HTTP port
161
domain name service
endpoint based
80
38. LDAP authentication method not recommended
25
system hardening
RBAC
anonymous authentication
39. Define security settings and user's desktop environment on group of computers
group policies
DHCP hardening
least privileged principle
53
40. IPSec port
500
22
DNS hardening
FAT
41. NNTP stands for
network news transfer protocol
110
22
network attached storage
42. NAC stands for
SSL
MAC
network access control
20 and 21
43. Access control method that uses ACLs
DHCP hardening
DAC
service pack
simple authentication with security layer LDAPv3
44. Misconfiguration of an email server that could allow it to be used by an attacker to spread spam
system hardening
discretionary
DHCP
open mail relay
45. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
hardware based
configuration baselines
infrastructure based
endpoint based
46. LDAP authentication method that uses clear text
RBAC
simple authentication
MAC
least privileged principle
47. DNS port
MAC
25
OS hardening
53
48. TACACS
NAC
Terminal Access Controller Access-Control System
20 and 21
MAC
49. SNMP stand for...
local - site - domain - OU
389
FAT
simple network management protocol
50. Most restrictive access control method that uses security labels to control access
FAT
system hardening
configuration management policy
MAC