SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
Search
Test your basic knowledge |
Comptia Security +: Os Hardening
Start Test
Study First
Subjects
:
certifications
,
comptia-security-+
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. NAC method where organizations must run the current hardware and operating systems
infrastructure based
DAC
role-based
DHCP hardening
2. NAS stands for...
network attached storage
DNS hardening
local - site - domain - OU
hotfix
3. Issued by software vendors to fix bugs - address security issues or add functionality
system hardening
patches
open mail relay
161
4. Recommended LDAP authentication
hotfix
443
file and print sharing hardening
simple authentication with security layer LDAPv3
5. Access control method used by organizations that have a high turn over
anonymous authentication
110
RBAC
MAC
6. kerberos port
dynamic host configuration protocol
TACACS
119
88
7. A cryptographic protocol that provides security for communications over networks such as the Internet
network attached storage
SNMP
SSL
NNTP
8. HTTP port
Terminal Access Controller Access-Control System
80
local - site - domain - OU
389
9. POP3 port
rule of least privilege
network access control
simple mail transport protocol
110
10. Start with the most secure environment - the loosen the controls as needed
rule of least privilege
Terminal Access Controller Access-Control System
security template
SSL
11. LDAP stands for...
500
lightweight directory access protocol
encrypted file system
network attached storage
12. Is a UDP-based network protocol - used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention
SNMP
endpoint based
161
MAC
13. RBAC stands for ____________ access control
service pack
DHCP hardening
simple authentication
role-based
14. Microsoft software packages that contain one or more patches and can be applied without rebooting
endpoint based
simple authentication with security layer LDAPv3
file and print sharing hardening
hotfix
15. Misconfiguration of an email server that could allow it to be used by an attacker to spread spam
80
161
open mail relay
500
16. NAC stands for
open mail relay
22
security template
network access control
17. NetBIOS port
role-based
88
139
configuration baselines
18. DNS stands for...
25
53
service pack
domain name service
19. LDAP port
file and print sharing hardening
389
SSL
security template
20. SNMP stand for...
domain name service
service pack
simple network management protocol
infrastructure based
21. SNMP port
least privileged principle
DAC
22
161
22. Centrally managed NAC method requiring installation of software agents on each network client
simple network management protocol
20 and 21
endpoint based
DAC
23. An accumulated set of software updates or hotfixes from Microsoft
simple authentication with security layer LDAPv3
49
service pack
local - site - domain - OU
24. NAC method requiring installation of a network appliance to monitor network devices and limit connectivity should non compliant activity be detected
hardware based
role-based
DAC
infrastructure based
25. HTTP SSL port
network attached storage
hardening
storage area network
443
26. Isolate directories - place server in DMZ - disallow anonymous access - audit logs - and review contents for unauthorized material
MAC
20 and 21
FTP hardening
22
27. TACACS port
49
hotfix
139
20 and 21
28. Access control defined by roles or job functions
NNTP
23
RBAC
DHCP hardening
29. A DNS server is fed altered or spoofed records that are retained and then duplicated elsewhere
53
RBAC
DNS hardening
DNS poisoning
30. Highly configurable - discretionary - job based access control - more flexible that MAC - more precise that groups
RBAC
organizational unit
NAC
119
31. Restrict zone transfers to designated servers - restrict users via ACLs who can query zone records - do not use recursive queries
DNS hardening
MAC
file and print sharing hardening
80
32. LDAP authentication method not recommended
anonymous authentication
simple authentication
88
configuration baselines
33. Telnet port
23
file and print sharing hardening
local - site - domain - OU
119
34. SAN stands for...
MAC
storage area network
NAC
local - site - domain - OU
35. IPSec port
500
SSL
simple mail transport protocol
hotfix
36. SMTP port
dynamic host configuration protocol
hardening
139
25
37. NNTP port
119
DMZ
DAC
simple mail transport protocol
38. TACACS
hardware based
RBAC
simple network management protocol
Terminal Access Controller Access-Control System
39. A subnet on the network that separates the internal network from publicly exposed hosts
TACACS
53
DMZ
domain name service
40. SSH port
anonymous authentication
22
infrastructure based
TACACS
41. Access permissions applied by the owner of an object using ACLs - commonly found on PCs
simple authentication with security layer LDAPv3
DAC
53
simple authentication
42. Define security settings and user's desktop environment on group of computers
group policies
network access control
DNS poisoning
MAC
43. Used to deliver news articles to users on the Internet - vulnerable to DoS attacks
80
DAC
Terminal Access Controller Access-Control System
NNTP
44. Most restrictive access control method that uses security labels to control access
simple mail transport protocol
MAC
DNS hardening
SNMP
45. LDAP authentication method that uses clear text
configuration baselines
22
simple authentication
OS hardening
46. DHCP stands for...
dynamic host configuration protocol
mandatory
local - site - domain - OU
security template
47. Label-based - hard coded access controls - at multiple levels - applied to all objects
MAC
local - site - domain - OU
endpoint based
NNTP
48. The process of establishing a standard for security
discretionary
baselining
patches
mandatory
49. DAC stands for ____________ access control
discretionary
SNMP
23
FAT
50. A remote authentication protocol used to communicate with an authentication server commonly used in UNIX networks.
110
25
DNS hardening
TACACS