Section 6: Hardening Flashcards

1
Q

What is the principle of Hardening?

A

Hardening is the a process to mitigate risk by minimizing vulnerability to reduce exposure to threats.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the principle of Least Functionality?

A

Process of configuring workstation or server to only provide the essential applications and services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a good way to Implement the Least functionality when adding a new device?

A

Centralized Group Policies
Baseline Images
Microsoft System Center configuration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is System Center Configuration Management?

A

System Center Configuration Management (SCCM) is a centralized management system for policies and software across the network of devices.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are two ways to restrict application on endpoints in the network?

A

Whitelist and Blacklist application

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is Application Whitelisting?

A

Application whitelisting is setting up specific application that are allowed to be used and black all others

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is Application Blacklisting?

A

Application blacklisting is restricting specific applications and allowing all others

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are Services on a device?

A

Services are a type of application that runs in the background of the application, preforming various functions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How do you open the Services app on Windows?

A

Run services.msc app

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How do you stop a service on windows from the command prompt?

A

> sc stop “service name”
or
net stop “service name”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How do you open services on OS X?

A

Activity monitor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How can you stop a service on OS X and Linux?

A

Terminal

user$ kill pid “pid number”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How could you open services on both Linux and OS X?

A

Because OS X is a linux based, you can use terminal on both of them stop and see services.

user$ top (to see services running)
user$ kill pid “pid number” (to stop service)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is a Trusted Operating System (TOS)?

A

Trusted Operating System (TOS) is an operating system that meets the requirements set by the government and has multilayered security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

List a few Trusted Operating Systems (TOS)?

A

macOS 10.6+
Windows 7 +
Redhat Enterprise server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a Patch or Hotfix?

A

Patch/Hotfix is a single problem-fixing piece of software for an operating system or application

17
Q

What is a Critical Update?

A

Critical Update is software code for a specific problem adding a critical, non-security bug in software

18
Q

What is a Service Pack?

A

Service Pack is a tested, cumulative grouping of patches, hot fixes, security updates, critical updates and possibly some features.

19
Q

What is Windows Update?

A

Windows update is a recommended update to fix a non-critical problem that users have found, as well as to provide additional features and capabilities

20
Q

What is a Driver Update?

A

Driver update is a device driver update to fix a security issue or add new feature to supported piece of hardware.

21
Q

What is Patch Management?

A

Patch management is the process of planning, testing, implementing, and auditing of software patches

22
Q

What is Planing in patch management?

A

Planning is the process of verifying the compatibility with our system and planing for how you will test and deploy the system.

23
Q

What is Testing in patch management?

A

Testing in patch management is the process of testing a new patch on a small subset of the network endpoints to ensure compatibility and reduce possibly of critical failures across you whole network.

24
Q

What is Implementation in patch management?

A

Implementation is the process of actually installing the patch into the network endpoints.

25
Q

What is Auditing in patch management?

A

Auditing is the process of checking the patch system for failures or other problems.

26
Q

What type of system can help with the implementation of patches during the patch management process in large networks?

A

Centrally located system (Microsoft System center configuration manager) is the best way to push patches out to large networks.

27
Q

What is group policy in relation to networks of endpoints?

A

Group policy us used to create and manage policies for your network.

28
Q

How do you access group policy in windows environment?

A

group policy in windows can be accesses with gpedit

29
Q

What is active directory?

A

active directory is an object based system for managing policies.

30
Q

What is a Security Template in group policy?

A

A security template is a group of policies that can be loaded through one procedure

31
Q

What it Group Policy Objectives?

A

Group Policy Object is a group of virtual policies that aid in the hardening of the system

32
Q

What is Baseline in group policy?

A

Baseline is the process of measuring changes in the network, hardware and software environment.

33
Q

What are the benefits of Baselining systems in the network?

A

The benefits of Baseling is it helps in establishing what is normal in the organization so you can identify what is abnormal.

34
Q

What is the most secure Windows file system?

A

New Technology File System (NTFS) is more secure because it support logging, encryption, larger partitions, and larger file size than FAT32

35
Q

What is apples file system?

A

APFS, Apple protected file system?

36
Q

What is NTFS for windows?

A

NTFS - New technology file system for windows which is the default file system for windows

37
Q

5 steps to reduce HDD data loss?

A

1) remove temp files - malware like to run in it
2) periodic file system check
3) Disk defragment
4) Backup of data
5) Use and practice restoration techniques (help check that backups are working)