Practice Test Flashcards
(161 cards)
802.1Q
Standard for virtual lans
A sniffer is also known as a
protocol analyzer, but an analyzer analyzes and a sniffer doesn’t
Administrative controls
train personnel on security policies
deterrent controls
stop an attacker from attacking in the first place
detective controls
identify an attack in progress
preventive controls
stop an attack before it can cause damage
warm site
Dormant or performs non critical function, ready to be adapted to critical
cold site
has power and network hookups, think warehouse
hot site
fully configured alternative network
three major steps in a continuity of operations plan
audit mitigate and recover
which term is correct, risk assessment or risk analysis?
Risk assessment
periodic control testing
Best way to check effectiveness of safety measures
DNS Poisoning
redirects a domain name to a malicious IP address
DNS hijacking
setting up a fake DNS server
802.1x is a port-based authentication mechanism T or F
True
802.1x works over a LAN, a Wireless Lan, or both
both
hardware security module
cryptoprocessor device attached to servers and computers to provide digital key security
TPM
creates a secure computing environment with cryptoprocessors
Mandatory Access Control
Assigns a security level for users and resources, and the two much “match.”
Transitive Authentication is also known as
single sign on
Discretionary Access control is managed by
Access control lists
TOTP
Time-based one time password
Chap is deprecated because it
uses MD5
HMAC
Hash message authentication code - uses hash and key