Primary Definitions 19.0-22.0 Flashcards
(82 cards)
Hardening
Process of enhancing the security of a system, application, or network.
Least Functionality
A process of configuring a workstation or server with only essential applications and services for the user.
Secure Baseline Image
A standardized workstation setup, including OS, essential applications, and strict policies in corporate networks.
Allowlisting
A security measure that permits only approved applications to run on an operating system.
Blocklisting
Entails preventing listed applications from running, allowing all others to execute.
Services
Background applications that operate within the OS, executing a range of tasks.
Trusted Operating System (TOS)
Designed to provide a secure computing environment by enforcing stringent security policies that usually rely on mandatory access controls.
Evaluation Assurance Level (EAL)
Based on a set of predefined security standard and certification from the Common Criteria for Information Technology Security Evaluation.
SELinux (Security-Enhanced Linux)
Set of controls that are installed on top of another Linux distribution like CentOS or Red Hat Linux.
Hotfix
A software patch that solves a security issue and should be applied immediately after being tested in a lab environment.
Service Pack
Includes all the hotfixes and updates since the release of the operating system.
Group Policy
Set of rules or policies that can be applied to a set of users or computer accounts within an operating system.
Security Template
A group of policies that can be loaded through one procedure.
Context-based Permissions
Permission schemes that are defined by various properties for a given file or process.
Extended Service Set (ESS) configuration
Involves multiple wireless access points working together to create a unified and extended coverage area for users in a large building or facility.
Adjacent Channel Interference
Occurs when the channels selected for adjacent wireless access points do not have enough space between the channels.
Site Survey
Process of planning and designing a wireless network to provide a solution.
Heat Map
Graphical representation of the wireless coverage, the signal strength, and frequency utilization data a different locations on a map.
Wi-Fi Protected Access 3 (WPA3)
Latest version using AES encryption and introducing new features like Simultaneous Authentication of Equals (SAE), Enhanced Open, updated cryptographic protocols, and management protection frames.
Simultaneous Authentication of Equals (SAE)
Enhances security by offering a key establishment protocol to guard against offline dictionary attacks.
Enhanced Open/Opportunistic Wireless Encryption (OWE)
Major advancement in wireless security, especially for networks using open authentication.
Galois Counter Mode Protocol (GCMP)
Supports 128-bit AES for personal networks and 192-bit AES for enterprise networks with WPA3.
Management Protection Frames
Required to protect network from key recovery attacks.
Remote Authentication Dial-In User Service (RADIUS)
Client/server protocol offering AAA services for network users.