Font size
WorksheetsMTA Security Fundamentals Practice 2
Total questions: 21
Worksheet time: 11mins
The process of eliminating a risk by choosing not to participate in an action or activity describes which of the following?
Risk avoidance
Risk mitigate
Residual risk
Risk acceptance
A junior administrator notices, when looking at a folder's permissions, gray check boxes in the allow column for a group's permissions. What do the gray check boxes represent?
The permissions are conditional
The permissions are inherited
The permissions have bee disable temporarily
The permissions are explicit
Where are password policies established for an Active Directory domain?
Local Security Policy
Group Policy
Active Directory Users and Computers
Active Directory Administrative Center
Which servers/server apps can be used to push Windows updates to client machines? Choose two answers.
WSUS
WDM
SCCM
MDM
Which of the following statements is TRUE? (There may be more than one right answer)
The tool used to view audit logs is Event Viewer
You can audit logon failures to warn of hacking attacks
You cannot limit the size of audit logs
Select the statements that are FALSE only! (There may be more than one correct answer)
Trojan horses appear to be legitimate apps
Worms are self-replicating programs designed to slow a computer by overusing its system resources
Spyware is a government developed virus used in espionage
Which of the following statements about firewalls is TRUE? There may be more than one correct answer
Application-level firewalls can provide content filtering and virus protection
Application-level firewalls tend to be less resource-intensive than that of a traditional firewall
Application-level firewalls support caching
What monitors packet traffic on a network and reports the sender, destination, and type of packet?
A network sniffer
Protocol spoofing
SpeedTest
Microsoft Security Assessment Tool
Which protocols are considered unsecure and should be avoided in a server environment? Choose two answers
PAP
CHAP
SSH
Telnet
SFTP
Which is the most important security consideration for a company's server?
Hardening
Physical location
Password protection
Which type of device tends to have the least amount of consideration given for physical security?
Servers
Laptops
Desktops
Which type of VPN will often have a user connect through a web browser?
SSL
TPN
SLS
TTL
Choose which statements are true regarding DELEGATION. There may be more than one correct answer
The Delegation of Control Wizard is found in Active Directory Users and Computers
Users and groups can be delegated to a resource using the Delegation of Control Wizard
Organizational Units can be delegated to a resources using the Delegation of Control Wizard
Choose which statements regarding RADIUS are FALSE. There may be more than one correct answer
RADIUS is Cisco-proprietary
RADIUS performs centralized authentication
RADIUS provides auditing services
Choose which statements regarding ASYMMETRIC ENCRYPTION are TRUE. There may be more than one correct answer
Asymmetric encryption uses a single key to perform encryption and decryption
DES is an asymmetric encryption algorithm
RSA is an symmetric encryption algorithm
Choose which of the following statements regarding VPN's is TRUE. There may be more than one correct answer.
A VPN should use PPTP for tunneling
A VPN connects two entities over a wide area network, like the Internet
A VPN encapsulates and encrypts data to provide a secure connection
Which types of lists can be used as part of an anti-spam solution? Choose two answers
DNSWLs
RBLs
DNSBLs
RWLs
A person buying something securely from a website will receive a _________ key to use to encrypt sensitive data. A different ________ key is used to decrypt the data.
public, public
private, private
private, public
public, private
Which of the following are specific types of audits? Choose three answers
File and folder name changes
Directory service access
Desktop background changes
Logins
Policy changes
A _______ _________ is an attempt to fit an amount of data into a memory space that is too small to handle that data.
buffer overflow
worm attack
SQL injection
memory leak
When enabling Secure Dynamic DNS, who can create records on a DNS server?
Domain admins
DNS admins
Server admins
Members of an Active Directory domain
