Casp test Flashcards

1
Q

A natural disaster may disrupt operations at Site A, which would then cause an evacuation. Users are unable to log into the domain from their workstations after relocating to Site B.

A

Drag answer to Directory serveron site A

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

A natural disaster may disrupt operations at Site A, which would then cause the pump room at Site B to become inoperable.

A

Drag answer to SCADA
Master Controller

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

A natural disaster may disrupt operations at Site A, which would then cause unreliable Internet connectivity at Site B due to route flapping.

A

Modify BGP Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Code snippet 1 or SQL query that includes ?

A

SQL injection - perform sanitization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

if code has “get”

A

switch to “post”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

AAA Server IP:

A

10.1.0.10
default eap TLS
F5o4l3l2y1!

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

VPN Concentrator

A

AES 256gcm128
F504l3l2y1!
10.1.2.1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

WAPA

A

WAP*:A- Disable unneeded services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Laptop A

A

Laptop A- Disable unneeded services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Laptop B

A

Laptop B,. Enabled Disk encryption & Disable unneeded services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Switch A

A

Switch A- Change default administrative password & Disable mmeeded services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Switch B

A

Switch B- Disable unneeded services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

PC-A
PC-B

A

PC-A - Disable·unneeded services
PC-B * Disable unneeded services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

PC-C

A
  • Patch management, Disable unneeded services
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

this will show you ip, port, pid, name of task.

A

$sudo netstat -nltp
this will show you ip, port, pid, name of task.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

to see status

A

$sudo systemctl status -full name service-
to compare

17
Q

to kill process

A

$sudo kill -9 -pid- Kills the PID

18
Q

to stop process

A

$sudo systemctl stop
-full name service- Stops service

19
Q

to disable process 5th command

A

$sudo systemctl disable -full name service-
Disables at startup

20
Q

command to perform after process is diabled at startup to see network connections

A

$sudo netstat -nltp

21
Q

command to double check the status

A

$sudo systemctl
status -full name service- double checking

22
Q

10.1.45.65

A

SFTP Server Disable 8080

23
Q

10.1.45.66

A

Email Server Disable 415 and 443

24
Q

10.1.45.67

A

Web Server Disable 21, 80

25
10.1.45.68
UTM Appliance Disable 21
26
During the course of normal SOC operations, three anomalous events occurred and were flagged as potential IoCs. Evidence for each of these potential IoCs is provided.
IOC 1 - Update - nothing IOC 2 - Footprinting - Block ping across IOC 3 - P2p - block known bad ports