Search Header Logo
Lesson 15 Defending Attacks Settings

Lesson 15 Defending Attacks Settings

Assessment

Presentation

•

Computers

•

11th - 12th Grade

•

Easy

Created by

Ryan Mordey

Used 4+ times

FREE Resource

10 Slides • 6 Questions

1

​Lesson 15 Defending Attacks Settings

By Ryan Mordey

2

Big Picture

Discussed how a range of threats can arise in computing.

Past

Discuss the importance of changing settings to defend against security threats.

Evaluate the effectiveness of defensive methods.

Present

Future

Careers: Network Security Specialist, Ethical Hacker, Network Forensics

3

Multiple Choice

What is used with an SQL Injection?

1

Boltons

2
Database connection strings
3
User authentication tokens
4
Valid SQL queries

4

Multiple Choice

What is the purpose of a semi-colon in an SQL statement?

1
To join multiple tables in SQL statements.
2
To define variables in SQL statements.
3

To terminate SQL statements to split the query.

4
To create comments in SQL statements.

5

media

Many network devices such as WAP's, switches, routers, modems, bridges and firewalls will have security settings that the user should be aware of.

Users need to check documentation to ensure that the settings provide an appropriate level of security. Admin passwords needs to be changed from the default and updates should be applied as soon as they are released.

​

​Network Security Settings

6

media

​The SSID (Service Set Identifier) is the name of the wireless network, which can help identify and connect to it. You can hide the SSID so users are unable to discover your network.

In the security option this is the level of encryption WPA2 (Wireless Protected Access) is the recommended setting as it is most secure. This will scramble the data in a much more complex way.

The password or network key is another layer of security to ensure only authorised users are accessing your network, the longer and more complex the key the higher the strength of security.

DHCP is used to assigned IP addresses to each device on a LAN normally a service provided by your router or a server. This should only be accessed by network technicians, the assignment of IP addresses can be logged in your router settings to record anomalies .

7

Open Ended

What is the purpose of WPA2 in your router settings? 2 Marks

8

media

Security settings on hardware is mostly set through your operating system.

The main security setting is authentication, which uses usernames and passwords to identify a user. Some issues with passwords is that a lot of users create simple passwords or users write their passwords down so others can find them. Multi factor authentication helps improve this, which involves something a users knows (password/pin) and something has (phone or email)

​

OS Settings

9

​OS Settings

An alternative to passwords or MFA is biometric authentication often used on mobile devices. This is considered more secure as it is more difficult to forge and cannot be forgotten or guessed. Additional hardware is often needed for this which adds to the price of the device.

User management provides each user with their own secure area with their own files and applications allowing for additional security and privacy. Groups of users can be made with different access levels admin having the most freedom to modify the system settings.

File management allows access controls to individual files, you can set folder to read only or, write or full control. You can also password protect individual folders.

10

Open Ended

Explain how multi factor authentication works. 2 Marks

11

Open Ended

Why is the use of biometrics considered more secure than a password? 3 Marks

12

media

In larger LAN using client server architecture the system admin can use Windows OS to create group policies. This will centralise administration of the features that users have access to.

We can take away features from programs or prevent applications from being run. This is configured on the server which can then implement changes to all devices connected to it.

​

​Network Policies

13

​Patch & Update Management

This is the process of identifying, testing and installing software patched to operating systems, applications and various network devices. Keeping software up to date is vital to ensure that it is secure. However on larger networks there are many devices with different software.

Centralised patch management is crucial to ensuring that all devices have the same patch level and is done at the same time. Patches are often rolled out out of office hours to minimise disruption.

14

Many networks log activity this includes the type of data being sent or received, date and time, source and destination and the amount of data sent. Firewalls can help log connections.

Auditing & Logging

Software from trusted sources are more reliable and will be free of any malware, official app stores on mobile platforms are important to ensure that any applications being used are legitimate and verified.

Trusted Software

Software & Auditing

15

Match

Connect the correct description to its term:

Networks log activity of data being sent, the time and the source or destination.

Identifying, installing, and updating the OS, applications and network devices to ensure it is secure.

Needs to be from a trusted source and be legitimate & verified through application stores.

Client-server architecture allows for groups to be made with limited access to data or applications.

Auditing & Logging

Patch Update & Management

Trusted Software

Network Policies

16

Main Task

Computer Task:

Create a guide for a network technician that outlines all the settings that should be considered and changed when setting up a new LAN within an office.

You should include settings from your networking hardware and settings that should be adapted within the Operating System.

Complete all the questions on the work sheet.

pattern-tertiary
​Lesson 15 Defending Attacks Settings

By Ryan Mordey

Show answer

Auto Play

Slide 1 / 16

SLIDE