MTA Security: 98-367 Flashcards
(157 cards)
Which of the following is a process in which data is changed before or while it is entered into a computer system? A. Data diddling B. Authentication C. Domain kiting D. Packet sniffing
Correct Answer: A
Which of the following contains a tree of domain names? A. Domain name space B. Domain name formulation C. Domain Name System D. Authoritative name server
Correct Answer: A
Mark works as a Systems Administrator for TechMart Incl. The company has Windows-based network.
Mark has been assigned a project to track who tries to log into the system and the time of the day at which
the attempts occur. He is also required to create a system to track when confidential files are opened and
who is trying to open it. Now, Mark logs when someone is not able to make a successful attempt to log into
the system as Administrator but he also wants to log when the user is successful to log into the system as
Administrator. Which of the following is the reason of logging by Mark when a user is successfully logged
into the system as well as when he is failed?
A. To determine if and when someone is authenticating successfully with high privilege.
B. To make sure that user is not using the Administrator account.
C. To determine if and when someone is authenticating successfully with high privilege.
D. To make sure that user is not facing any problem.
Correct Answer: C
Mark works as a Systems Administrator for TechMart Inc. The company has a Windows-based network.
The company is adding an open, high-speed, wireless access for their customers and secured wireless for
employees at all 37 branches. He wants to check the various security concerns for ensuring that business
traffic is secured. He is also in under pressure to make this new feature a winning strategy for a company.
Mark wants the employees to be free to troubleshoot their own wireless connections before contacting him.
Which of the following is the basic troubleshooting step that he can ask them to do?
A. To power cycle the wireless access points and then reboot the systems.
B. To configure the network to use only Extensible Authentication Protocol (EAP).
C. To reboot the computers they are using and then use the MAC filtering.
D. To right-click the network icon in the system tray and then select Troubleshoot Problems.
Correct Answer: D
Which of the following protects against unauthorized access to confidential information via encryption and works at the network layer? A. Firewall B. NAT C. IPSec D. MAC address
Correct Answer: C
You want to standardize security throughout your network. You primarily use Microsoft operating systems
for servers and workstations. What is the best way to have standardized security (i.e. same password policies, lockout policies, etc.) throughout the network on clients and servers?
A. Publish the desired policies to all employees directing them to implement according to policy.
B. Configure each computer to adhere to the standard policies.
C. When installing new workstations or servers, image a machine that has proper security settings and install
the new machine with that image.
D. Utilize Windows Security Templates for all computers.
Correct Answer: D
Mark works as a Network Administrator fot Blue Well Inc. The company has a Windows-based network.
Mark is facing a series of problems with email spam and identifying theft via phishing scams. He wants to
implement the various security measures and to provide some education because it is related to the best
practices while using email. Which of the following will Mark ask to employees of his company to do when
they receive an email from a company they know with a request to click the link to “verify their account
information”?
A. Provide the required information
B. Hide the email
C. Use Read-only Domain Controller
D. Delete the email
Correct Answer: D
Which of the following infects the computer and then hides itself from detection by antivirus software? A. EICAR virus B. Boot-sector virus C. Macro virus D. Stealth virus
Correct Answer: D
Which of the following states that a user should never be given more privileges than are required to carry out a task? A. Security through obscurity B. Segregation of duties C. Principle of least privilege D. Role-based security
Correct Answer: C
Which of the following are the major components of the IPsec protocol? Each correct answer represents
a complete solution. Choose all that apply.
A. Encapsulating Security Payload (ESP)
B. Authentication Header (AH)
C. Internet Encryption Key (IEK)
D. Internet Key Exchange (IKE)
Correct Answer: ABD
Which of following is required to be configured to ensure that the Bitlocker storage can be reclaimed?
A. BitLocker to use data recovery agents
B. BitLocker to use the password screen saver
C. BitLocker to use the Secret Retrieval Agent
D. BitLocker to use the Artificial Intelligence recovery option.
Correct Answer: A
The stronger password is a critical element in the security plan. Which of the following are the characteristics
used to make up a strong password?
A. It contains more than seven hundred characters and does not contain the user name, real name, or any
name that can be guessed by the attacker easily.
B. It contains more than seven characters and does not contain the user name, real name, or anyname that
can be guessed by the attacker easily.
C. It contains the user name, real name, or any name that can be remembered easily and does not contain
more than seven characters.
D. It contains more than seven characters and the user name, real name, or any name.
Correct Answer: B
Which of the following can be installed and configured to prevent suspicious emails from entering the
user’s network?
A. Kerberos
B. Single sign-on (SSO)
C. TCP/IP protocol
D. Microsoft Forefront and Threat Management Gateway
Correct Answer: D
Which of the following are types of password policies of Windows 7? Each correct answer represents a
complete solution. Choose all that apply.
A. Store Password Using Reversible Encryption
B. Minimum Password Length
C. User Name Length
D. Password Must Meet Complexity Requirements
Correct Answer: ABD
Which of the following is a technique used to attack an Ethernet wired or wireless network? A. ARP poisoning B. DNS poisoning C. Mail bombing D. Keystroke logging
Correct Answer: A
You work as a Network Administrator for Net Perfect Inc. The company has a Windows Server 2008
network environment. The network is configured as a Windows Active Directory-based single forest
single domain network. You want to configure Network Access Protection (NAP) on your network.
You want that the clients connecting to the network must contain certain configurations. Which of
the following Windows components ensure that only clients having certain health benchmarks
access the network resources? Each correct answer represents a part of the solution. Choose two.
A. Windows Firewall
B. System Health Agents (SHA)
C. Terminal Service
D. System Health Validators (SHV)
E. TS Gateway
Correct Answer: BD
You work as a Network Administrator for Tech Perfect Inc. The company has a Windows 2008 Active
Directory-based network. All client computers on the network run Windows Vista Ultimate. You have
configured a Dynamic DNS (DDNS) on the network. There are a lot of mobile users who often connect to
and disconnect from the network. Users on the network complain of slow network responses. You suspect
that the stale records on the DNS server may be the cause of the issue. You want to remove the stale
records.Which of the following technologies will you use to accomplish the task?
A. RODC
B. Aging
C. Scavenging
D. Forwarding
Correct Answer: C
Which of the following is the process used by attackers for listening to the network traffic? A. Eavesdropping B. Subnetting C. Sanitization D. Hacking
Correct Answer: A
Which of the following is a Windows configuration option that enables administrators to restrict communication among domain members only? A. Demilitarized zone B. Server isolation C. Domain isolation D. Domain kiting
Correct Answer: C
Which of the following are required to enable for preventing the users from downloading and installing
software from the Internet? Each correct answer represents a complete solution. Choose all that apply.
A. Software restriction policies
B. PTR record
C. User Account Control
D. Anti-Virus software
Correct Answer: AC
You check the logs on several clients and find that there is traffic coming in on an odd port (port 1872).
All clients have the Windows XP firewall turned on. What should you do to block this unwanted traffic?
A. Perform a virus scan to find the virus responsible for this traffic.
B. Check the exceptions in the firewall and unselect that port exception.
C. Trace back that traffic and find its origin.
D. Shut down the service that connects to that port.
Correct Answer: B
Which of the following is a set of rules that control the working environment of user accounts and computer accounts? A. Mandatory Access Control B. Access control list C. Group Policy D. Intrusion detection system
Correct Answer: C
By default, what level of security is set for the Local intranet zone? A. High-Medium B. Medium-Low C. High D. Low
Correct Answer: B
Mark works as a Desktop Administrator for TechMart Inc. The company has a Windows-based network.
He has bees assigned a project to upgrade the browsers to Internet Explorer (IE) 8 for working with the
latest Internet technologies Mark wants to ensure that the company uses a number of the security features
built into the browser while maintaining functionality within the company’s intranet. Mark is also educating
his users to be good Internet citizens and use the safe web sur?ng. Mark asked his team to be assured that
they are on a secured website. What they will do?
A. Take a look for a padlock in the lower right corner of the browser and https:// in the address bar.
B. Provide protection against a Distributed Denial of Services attack.
C. Call a team member while behaving to be someone else for gaining access to sensitive information.
D. Go into the Internet Options, select the Security, and add the intranet site to the list of Local Intranet Site.
Correct Answer: A