wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Access Control Unit 2

Total questions: 70

Worksheet time: 43mins

Name
Class
Date
1.
The process of restricting access to a resource to only permitted users
a)
access control
b)
cracked password
c)
personal identification number (PIN)
d)
registry
2.
Refers to the number of incorrect logon attempts permitted before a system locks an account. Each bad logon attempt is tracked by the bad logon counter
a)
account lockout
b)
Credential Guard
c)
polymorphic virus
d)
removable device
3.
Also known as auditing
a)
accounting
b)
decryption
c)
principle of least privilege
d)
residual risk
4.
The exposure
a)
attack surface
b)
digital signature
c)
risk acceptance
d)
risk mitigation
5.
Also known as accounting
a)
auditing
b)
Discretionary Access Control
c)
risk assessment
d)
risk transfer
6.
The process of identifying an individual
a)
authentication
b)
DMZ (demilitarized zone)
c)
risk avoidance
d)
risk
7.
The process of giving individuals access to system objects based on their identity.
a)
authorization
b)
DNS poisoning
c)
risk management
d)
Role
8.
Describes a resource being accessible to a user
a)
availability
b)
DNS Security Extensions (DNSsec)
c)
risk mitigation
d)
Secure Content Management (SCM)
9.
An authentication method that identifies and recognizes people based on physical traits
a)
biometrics
b)
DNS spoofing
c)
risk transfer
d)
Secure Sockets Layer (SSL)
10.
A type of attack that tries as many possible combinations of characters as time and money permit.
a)
brute force attack
b)
domain user
c)
Role
d)
security baseline
11.
The characteristic of a resource ensuring access is restricted to only permitted users
a)
confidentiality
b)
explicit permission
c)
security policy
d)
single sign on (SSO)
12.
Using multiple layers of security to defend your assets.
a)
defense in depth
b)
group
c)
single sign on (SSO)
d)
spoofing
13.
A form of attach which attempts all words in one or more dictionaries. Lists of common passwords are also typically tested.
a)
dictionary attack
b)
Honey net
c)
sniffers
d)
STRIDE
14.
An attack that uses a dictionary containing an extensive list of potential passwords that the attacker then tries in conjunction with a user ID in an attempt to guess the appropriate password.
a)
dictionary attack
b)
Honeypot
c)
social engineering
d)
strong password
15.
is network traffic that begins inside of a network and proceeds through its routers to its destination somewhere outside of the network
a)
egress traffic
b)
Line of Business (LOB) apps
c)
Universal Windows Platform (UWP) apps
d)
hash function
16.
is traffic that originates from outside the network's routers and proceeds toward a destination inside the network
a)
ingress traffic
b)
NTFS Permission
c)
registry
d)
keylogger
17.

Ensuring the consistency is maintained by authorized users

a)

integrity

b)

NTLM

c)

residual risk

d)

Line of Business (LOB) apps

18.
A physical or logical device used to capture keystrokes.
a)
keylogger
b)
password
c)
risk mitigation
d)
Microsoft Passport
19.
Small devices that are used to process information
a)
mobile device
b)
removable device
c)
security policy
d)
Open Systems Interconnect (OSI)
20.
When two or more authentication methods are used to authenticate someone.
a)
multifactor authentication
b)
residual risk
c)
security token
d)
organizational units (OU)
21.
Prevents one party from denying the actions it has carried out.
a)
nonrepudiation
b)
risk assessment
c)
single sign on (SSO)
d)
password policy
22.
dictates the length and complexity requirements for passwords and how often a password should be changed
a)
password policy
b)
Secure Sockets Layer (SSL)
c)
symmetric encryption
d)
public key infrastructure (PKI)
23.
A secret series of characters that enables a user to access a particular file
a)
password
b)
security baseline
c)
threat modelling
d)
removable device
24.
A secret numeric password shared between a user and a system that can be used to authenticate the user to the system.
a)
personal identification number (PIN)
b)
security token
c)
UDP Flood
d)
risk acceptance
25.

A security discipline that requires that a particular user can only perform the tasks necessary for their role

a)

principle of least privilege

b)

shared folder

c)

Universal Windows Platform (UWP) apps

d)

risk avoidance

26.
The risk that remains after measures have been taken to reduce the likelihood or minimize the effect of a particular event.
a)
residual risk
b)
social engineering
c)
Windows Hello
d)
risk
27.
The act of identifying and then making an informed decision to accept the likelihood and impact of a specific risk.
a)
risk acceptance
b)
stateful inspection
c)
Active Directory
d)
Secure Content Management (SCM)
28.
Identifies the risks that might impact your particular environment.
a)
risk assessment
b)
STRIDE
c)
administrative share
d)
Secure Sockets Layer (SSL)
29.
The process of eliminating a risk by choosing not to engage in an action or activity.
a)
risk avoidance
b)
strong password
c)
application level firewall
d)
Security Account Manager (SAM)
30.
Taking steps to reduce the likelihood or impact of a risk.
a)
risk mitigation
b)
Syslog
c)
asymmetric encryption
d)
Security Compliance Manager 4.0 (SCM 4.0)
31.
The act of taking steps to move responsibility for a risk to a third party through insurance or outsourcing.
a)
risk transfer
b)
threat modelling
c)
attack surface
d)
security policy
32.
The probability that an event will occur. In reality
a)
risk
b)
threat
c)
auditing
d)
security token
33.
An action or occurrence that could result in the breach
a)
threat
b)
digital signature
c)
Discretionary Access Control
d)
Windows Hello
34.

A list of all users and groups that have access to an object

a)

ACL

b)

User and Groups

c)

Access Control

d)

BuiltinGroups

35.

The default domain computer network authentication protocol, which allows hosts to prove their identity over a non-secure network in a secure manner

a)

Keberos

b)

NTLM

c)

Challenge Response

d)

Password

36.

Actual permissions when logging in and accessing a file or folder. They consist of explicit permissions plus any inherited permissions

a)

Effective Permissions

b)

Inherited Permissions

c)

Access Control

d)

Rights

37.

The preferred file system for today’s Windows operating system

a)

FAT32

b)

NTFS

c)

File Explorer

d)

Flat File

38.

Helps harden a computer system against malware by running only trusted applications, thereby preventing malicious code from running

a)

Device Guard

b)

UAC

c)

Anit Virus Program

d)

MS Defender

39.

A Windows 10 biometric authentication system that uses a user’s face, iris, or fingerprint to unlock devices

a)

Windows Hello

b)

Windows BTF

c)

Windows NTLM

d)

Windows Secure

40.

The default authentication protocol for Windows NT, stand-alone computers that are not part of a domain, and situations in which you are authenticating to a server using an IP address

a)

NTLM

b)

Kerberos

c)

Password

d)

MD5

41.

Prevents one party from denying the actions it has carried out

a)

Non-Repudiation

b)

Access Control

c)

Asymmetric Encryption

d)

Hash

42.

Which is an example of Two Factor Authentication

a)

password and pin

b)

Finger print and face scan

c)

Security Token and Key fob

d)

Microsoft Passport

43.

What is the first version of Windows operating system did Bit Locker to go become available

a)

Windows 8

b)

Windows 8.1

c)

Windows 7

d)

Windows 10

44.

The process of identifying and validating an individual,

a)

Authentication

b)

Authorization

c)

Auditing

d)

Access Control

45.

The process of giving individuals access to system objects based on their identity

a)

Authentication

b)

Authorization

c)

Auditing

d)

Access Control

46.

is the process of keeping track of a user’s activity while accessing network resources, including the amount of time spent in the network, the services accessed while there, and the amount of data transferred during each session

a)

Auditing

b)

Authenication

c)

Idenitifcation

d)

Authorization

47.

A directory service technology created by Microsoft that provides a variety of network services

a)

Active Directory

b)

LDAP

c)

RADIUS

d)

Syslog

48.

Syslog supports which part of Access Control

a)

Identification

b)

Authenication

c)

Authorization

d)

Auditing

49.

The primary Windows server that stores a replica of the account and security information for a Windows based network

a)

Domain Controller

b)

Member Server

c)

vCenter

d)

File Server

50.

As a one-way encryption, which means that after something has been encrypted with this method, it cannot be decrypted

a)

HASH

b)

Asymmetric Encryption

c)

Symmetric Encryption

d)

Doesn't not exist everything can be decrypted

51.

A central, secure database in which Windows stores all hardware configuration information, software configuration information, and system security policies.

a)

Registry

b)

TPM

c)

Security Kernel

d)

CPU

52.

A physical device that an authorized computer services user is given to ease authentication.

a)

Security Token

b)

Password

c)

Finger print reader

d)

Windows Hello

53.

A written document that describes how a system, organization, or other entity is secured

a)

Security Policy

b)

Acceptable Use Policy

c)

IRT Policy

d)

Password Policy

54.

An international standard for a secure cryptoprocessor

a)

TPM

b)

Security Kernel

c)

CPU

d)

HASH

55.

Permissions granted to a folder (parent object or container) that flows into child objects (subfolders or files) inside that folder

a)

Inherited Permissions

b)

Explicit Permissions

c)

Rights

d)

NTLM

56.

A logical object that provides a means for authenticating and auditing a computer's access to a Windows network

a)

Computer Account

b)

Process Explorer

c)

Auditing

d)

Kerberos

57.

Defines the type of access that is granted to an object (an object can be identified with a security identifier) or object attribute

a)

Permission

b)

Access Control

c)

Authorization

d)

Rights

58.

Authorizes a user to perform certain actions on a computer, such as logging on to a system interactively or backing up files and directories on a system.

a)

Permission

b)

Right

c)

Authentication

d)

Security Account Manager

59.

Access control is defined by the owner/creator of the information. User can be share with few restrictions

a)

DAC

b)

MAC

c)

Rule-BAC

d)

Role-BAC

60.

Full, Modify, read-execute, read, write are explains of permissions that might be on a(n)

a)

Access Control List

b)

Authentication List

c)

Entry Control List

d)

Sharing Folder

61.

An administer needs to grant users access to different servers based on their job functions. Which Access Control model is the BEST choice to use?

a)

Role-Based Access Control

b)

Discretionary Access Control

c)

Non-Discretionary Access Control

d)

Mandatory Access Control

62.

What authentication type is the default for Active Directory?

a)

NTLM

b)

Kerberos

c)

MS-CHAP

d)

MS-CHAPv2

63.

What type of authentication method identifies and recognizes people based on physical traits such as fingerprints?

a)

digital certificates

b)

WEP

c)

bio-metrics

d)

RADIUS

64.

Which type of group can be granted rights and permissions?

a)

security

b)

distribution

c)

authorizing

d)

SAM

65.

What type of permissions are assigned directly to a file or folder?

a)

explicit

b)

inherited

c)

encompassing

d)

overriding

66.

Which of the following is a mechanism that allows authentication of dial-in and other network connections?

a)

VPN

b)

NTFS

c)

RADIUS

d)

Single Sign-On

67.

Method of Access Control where objects have labels. Access is set by the system AND data owner

a)

MAC

b)

DAC

c)

Rule-BAC

d)

Roll-BAC

68.

The Kerberos Key Distribution Center Server provides two key functions. They are (pick two)

a)

Authentication Server

b)

Ticket-Granting Server

c)

Logging Server

d)

Cryptokey Management Server

69.

What are the two major off-line attacks used to break passwords Pick Two

a)

Brute-Force

b)

Dictionary

c)

Sniffers

d)

Social Engineering

70.

The network administrator has been tasked to help implement management's guidance that employees do not work on the weekends. What is the best action she/he can take to ensure compliance? Pick the Best Answer

a)

Use Rule-BAC

b)

Set up an ACL

c)

Send a email out saying the network will not be available on the weekend

d)

Implement Mandatory Access Control