Font size
WorksheetsAccess Control Unit 2
Total questions: 70
Worksheet time: 43mins
Ensuring the consistency is maintained by authorized users
integrity
NTLM
residual risk
Line of Business (LOB) apps
A security discipline that requires that a particular user can only perform the tasks necessary for their role
principle of least privilege
shared folder
Universal Windows Platform (UWP) apps
risk avoidance
A list of all users and groups that have access to an object
ACL
User and Groups
Access Control
BuiltinGroups
The default domain computer network authentication protocol, which allows hosts to prove their identity over a non-secure network in a secure manner
Keberos
NTLM
Challenge Response
Password
Actual permissions when logging in and accessing a file or folder. They consist of explicit permissions plus any inherited permissions
Effective Permissions
Inherited Permissions
Access Control
Rights
The preferred file system for today’s Windows operating system
FAT32
NTFS
File Explorer
Flat File
Helps harden a computer system against malware by running only trusted applications, thereby preventing malicious code from running
Device Guard
UAC
Anit Virus Program
MS Defender
A Windows 10 biometric authentication system that uses a user’s face, iris, or fingerprint to unlock devices
Windows Hello
Windows BTF
Windows NTLM
Windows Secure
The default authentication protocol for Windows NT, stand-alone computers that are not part of a domain, and situations in which you are authenticating to a server using an IP address
NTLM
Kerberos
Password
MD5
Prevents one party from denying the actions it has carried out
Non-Repudiation
Access Control
Asymmetric Encryption
Hash
Which is an example of Two Factor Authentication
password and pin
Finger print and face scan
Security Token and Key fob
Microsoft Passport
What is the first version of Windows operating system did Bit Locker to go become available
Windows 8
Windows 8.1
Windows 7
Windows 10
The process of identifying and validating an individual,
Authentication
Authorization
Auditing
Access Control
The process of giving individuals access to system objects based on their identity
Authentication
Authorization
Auditing
Access Control
is the process of keeping track of a user’s activity while accessing network resources, including the amount of time spent in the network, the services accessed while there, and the amount of data transferred during each session
Auditing
Authenication
Idenitifcation
Authorization
A directory service technology created by Microsoft that provides a variety of network services
Active Directory
LDAP
RADIUS
Syslog
Syslog supports which part of Access Control
Identification
Authenication
Authorization
Auditing
The primary Windows server that stores a replica of the account and security information for a Windows based network
Domain Controller
Member Server
vCenter
File Server
As a one-way encryption, which means that after something has been encrypted with this method, it cannot be decrypted
HASH
Asymmetric Encryption
Symmetric Encryption
Doesn't not exist everything can be decrypted
A central, secure database in which Windows stores all hardware configuration information, software configuration information, and system security policies.
Registry
TPM
Security Kernel
CPU
A physical device that an authorized computer services user is given to ease authentication.
Security Token
Password
Finger print reader
Windows Hello
A written document that describes how a system, organization, or other entity is secured
Security Policy
Acceptable Use Policy
IRT Policy
Password Policy
An international standard for a secure cryptoprocessor
TPM
Security Kernel
CPU
HASH
Permissions granted to a folder (parent object or container) that flows into child objects (subfolders or files) inside that folder
Inherited Permissions
Explicit Permissions
Rights
NTLM
A logical object that provides a means for authenticating and auditing a computer's access to a Windows network
Computer Account
Process Explorer
Auditing
Kerberos
Defines the type of access that is granted to an object (an object can be identified with a security identifier) or object attribute
Permission
Access Control
Authorization
Rights
Authorizes a user to perform certain actions on a computer, such as logging on to a system interactively or backing up files and directories on a system.
Permission
Right
Authentication
Security Account Manager
Access control is defined by the owner/creator of the information. User can be share with few restrictions
DAC
MAC
Rule-BAC
Role-BAC
Full, Modify, read-execute, read, write are explains of permissions that might be on a(n)
Access Control List
Authentication List
Entry Control List
Sharing Folder
An administer needs to grant users access to different servers based on their job functions. Which Access Control model is the BEST choice to use?
Role-Based Access Control
Discretionary Access Control
Non-Discretionary Access Control
Mandatory Access Control
What authentication type is the default for Active Directory?
NTLM
Kerberos
MS-CHAP
MS-CHAPv2
What type of authentication method identifies and recognizes people based on physical traits such as fingerprints?
digital certificates
WEP
bio-metrics
RADIUS
Which type of group can be granted rights and permissions?
security
distribution
authorizing
SAM
What type of permissions are assigned directly to a file or folder?
explicit
inherited
encompassing
overriding
Which of the following is a mechanism that allows authentication of dial-in and other network connections?
VPN
NTFS
RADIUS
Single Sign-On
Method of Access Control where objects have labels. Access is set by the system AND data owner
MAC
DAC
Rule-BAC
Roll-BAC
The Kerberos Key Distribution Center Server provides two key functions. They are (pick two)
Authentication Server
Ticket-Granting Server
Logging Server
Cryptokey Management Server
What are the two major off-line attacks used to break passwords Pick Two
Brute-Force
Dictionary
Sniffers
Social Engineering
The network administrator has been tasked to help implement management's guidance that employees do not work on the weekends. What is the best action she/he can take to ensure compliance? Pick the Best Answer
Use Rule-BAC
Set up an ACL
Send a email out saying the network will not be available on the weekend
Implement Mandatory Access Control
