Chapter 8 Flashcards
What is the main objective of implementing security controls in Microsoft Windows systems and networks?
To protect Microsoft Windows systems and networks
Define network in the context of Microsoft Windows.
A collection of computers and devices joined by connection media
What are the three main types of vulnerabilities that need attention for securing a Microsoft Windows network?
- Physical and logical access
- Traffic flow
- Computer and device security
What does a Local Area Network (LAN) cover?
A small physical area, such as an office or building
What is a Metropolitan Area Network (MAN)?
Connects two or more LANs but does not span an area larger than a city or town
What is the purpose of a Wide Area Network (WAN)?
To connect multiple LANs and WANs and span very large areas
List some network security controls.
- Access controls for protected resources
- Communication controls
- Anti-malware software
- Recovery plans
- Configuration management
- Monitoring tools
- Software patch management
True or False: Using firewalls is a method to control unauthorized traffic on a network.
True
What type of connection media is most commonly used in networks?
Unshielded twisted pair (UTP)
What is the main advantage of fiber-optic cable?
Immunity to radio and electrical interference
Fill in the blank: The protocol that enables secure communication over the web is _______.
HTTPS
What is the primary function of a router in a network?
To connect two or more separate networks
What does a network file server provide?
Secure access to stored data for remote users
What is the role of a firewall?
To filter network traffic to block suspicious packets or messages
What does NAT stand for, and what is its function?
Network address translation; it hides the true IP address of internal computers from outside nodes
What is the significance of the OSI Reference Model?
It describes how computers use multiple layers of protocol rules to communicate across a network
List some common network communication protocols.
- Telnet
- Secure Shell (SSH)
- HTTPS
- SSL/TLS
- TCP/IP
- IPSec
- SSTP
True or False: Telnet encrypts all information transmitted, making it secure.
False
What is the main purpose of service accounts in Windows?
To define rights and permissions based on user accounts
What should be done to secure services in a Windows environment?
Disable or remove unnecessary services
Fill in the blank: The most common protocol pair for internet communication is _______.
TCP/IP
What is the purpose of configuration management software in network security?
To control network device configuration changes
What is the recommended practice for running each service in Windows?
Run each service as a user that possesses the minimum privileges necessary to perform the service’s functions.
What should be done if a service is not needed?
Stop it, disable it, remove it.