wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

MTA Security Fundamentals Practice 2

Total questions: 21

Worksheet time: 11mins

Name
Class
Date
1.

The process of eliminating a risk by choosing not to participate in an action or activity describes which of the following?

a)

Risk avoidance

b)

Risk mitigate

c)

Residual risk

d)

Risk acceptance

2.

A junior administrator notices, when looking at a folder's permissions, gray check boxes in the allow column for a group's permissions. What do the gray check boxes represent?

a)

The permissions are conditional

b)

The permissions are inherited

c)

The permissions have bee disable temporarily

d)

The permissions are explicit

3.

Where are password policies established for an Active Directory domain?

a)

Local Security Policy

b)

Group Policy

c)

Active Directory Users and Computers

d)

Active Directory Administrative Center

4.

Which servers/server apps can be used to push Windows updates to client machines? Choose two answers.

a)

WSUS

b)

WDM

c)

SCCM

d)

MDM

5.

Which of the following statements is TRUE? (There may be more than one right answer)

a)

The tool used to view audit logs is Event Viewer

b)

You can audit logon failures to warn of hacking attacks

c)

You cannot limit the size of audit logs

6.

Select the statements that are FALSE only! (There may be more than one correct answer)

a)

Trojan horses appear to be legitimate apps

b)

Worms are self-replicating programs designed to slow a computer by overusing its system resources

c)

Spyware is a government developed virus used in espionage

7.

Which of the following statements about firewalls is TRUE? There may be more than one correct answer

a)

Application-level firewalls can provide content filtering and virus protection

b)

Application-level firewalls tend to be less resource-intensive than that of a traditional firewall

c)

Application-level firewalls support caching

8.

What monitors packet traffic on a network and reports the sender, destination, and type of packet?

a)

A network sniffer

b)

Protocol spoofing

c)

SpeedTest

d)

Microsoft Security Assessment Tool

9.

Which protocols are considered unsecure and should be avoided in a server environment? Choose two answers

a)

PAP

b)

CHAP

c)

SSH

d)

Telnet

e)

SFTP

10.

Which is the most important security consideration for a company's server?

a)

Hardening

b)

Physical location

c)

Password protection

11.

Which type of device tends to have the least amount of consideration given for physical security?

a)

Servers

b)

Laptops

c)

Desktops

12.

Which type of VPN will often have a user connect through a web browser?

a)

SSL

b)

TPN

c)

SLS

d)

TTL

13.

Choose which statements are true regarding DELEGATION. There may be more than one correct answer

a)

The Delegation of Control Wizard is found in Active Directory Users and Computers

b)

Users and groups can be delegated to a resource using the Delegation of Control Wizard

c)

Organizational Units can be delegated to a resources using the Delegation of Control Wizard

14.

Choose which statements regarding RADIUS are FALSE. There may be more than one correct answer

a)

RADIUS is Cisco-proprietary

b)

RADIUS performs centralized authentication

c)

RADIUS provides auditing services

15.

Choose which statements regarding ASYMMETRIC ENCRYPTION are TRUE. There may be more than one correct answer

a)

Asymmetric encryption uses a single key to perform encryption and decryption

b)

DES is an asymmetric encryption algorithm

c)

RSA is an symmetric encryption algorithm

16.

Choose which of the following statements regarding VPN's is TRUE. There may be more than one correct answer.

a)

A VPN should use PPTP for tunneling

b)

A VPN connects two entities over a wide area network, like the Internet

c)

A VPN encapsulates and encrypts data to provide a secure connection

17.

Which types of lists can be used as part of an anti-spam solution? Choose two answers

a)

DNSWLs

b)

RBLs

c)

DNSBLs

d)

RWLs

18.

A person buying something securely from a website will receive a _________ key to use to encrypt sensitive data. A different ________ key is used to decrypt the data.

a)

public, public

b)

private, private

c)

private, public

d)

public, private

19.

Which of the following are specific types of audits? Choose three answers

a)

File and folder name changes

b)

Directory service access

c)

Desktop background changes

d)

Logins

e)

Policy changes

20.

A _______ _________ is an attempt to fit an amount of data into a memory space that is too small to handle that data.

a)

buffer overflow

b)

worm attack

c)

SQL injection

d)

memory leak

21.

When enabling Secure Dynamic DNS, who can create records on a DNS server?

a)

Domain admins

b)

DNS admins

c)

Server admins

d)

Members of an Active Directory domain