Day 5: Windows Security Flashcards

1
Q

Which Windows OS should I use?

A

TBD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a workgroup?

A

TBD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are local users and groups?

A

TBD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a Security ID (SID) number?

A

TBD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is a Security Access Token (SAT)?

A

TBD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is Active Directory?

A

TBD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is a forest or trust?

A

TBD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is Group Policy and why is it so important?

A

TBD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the three classes of operating systems?

A
  • Client
  • Server
  • Embedded
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What type of Windows operating systems are intended for devices such as phones, tablets, laptops, PC workstations and gaming consoles?

A

Client Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What type of Windows operating system do users directly interact with by touch, voice, gesture, keyboard and mouse?

A

Client Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Often personally owned, what type of Windows operating system are designed for ease of use, graphical applications, and backward compatibility?

A

Client Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Windows 7, Windows 10, Windows Phone, and Xbox One are examples of what type of Windows Operating Systems?

A

Client Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What type of Windows operating systems are intended for devices such as rack-mounted computers that often have RAID storage, a lot of memory, and multiple network interfaces?

A

Server Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What type of Windows operating systems do users normally interact with physically or virtually over the network?

A

Server Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What type of Windows operating systems are not directly touched or seen?

A

Server Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What type of Windows operating systems are designed for web servers, email gateways, VPN gateways, file and print servers, VM hosting, DNS, DHCP, etc.?

A

Server Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Windows Server 2012 R2 and Windows Hyper-V are examples of what type of Windows operating system?

A

Server Operating Systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

What type of Windows operating systems are intended for devices such as point of sale terminals, automobile dashboards, electronic signs, industrial controllers, robotics, and all myriad IOT?

A

Embedded Operating Systems

20
Q

What type of Windows operating systems are usually customized by equipment manufacturers to suit just their hardware?

A

Embedded Operating Systems

21
Q

What are the primary Windows Client Operating Systems?

A
  • Windows XP
  • Windows Vista
  • Windows 7
  • Windows 8
  • Windows RT
  • Windows 10
22
Q

(T/F) Windows Client OS is normally released in a single edition to make it easy for security, management and license control.

A

False.

Each Windows Client OS is normally released in multiple editions.

23
Q

What Windows Client OS editions are intended for personal use, have fewer features, cannot be joined to AD and cost less?

A

Starter or Home editions

24
Q

What class of Windows Client OS editions are intended for business use?

A

Business, Professionals or Enterprise

25
Q

What category of Windows Client OS edition is intended for enthusiasts and often cost the most?

A

Ultimate

26
Q

If you want features, such as BitLocker, AppLocker, Kerberos, Group Policy, Encrypting File System and AD membership, what category of Windows Client OS would you use?

A

Enterprise or Ultimate

27
Q

(T/F) Windows for ARM editions do not have the same features and cannot run all the same applications as Windows for x86/x4 systems.

A

True

28
Q

What type of Windows operating systems are usually purchased and licensed one at a time?

A

Starter, Home, Business, Professional and Ultimate Client OS’s.

29
Q

(T/F) It is imperative to update Windows OS’s before they become obsolete because of the critical importance of keeping up-to-date with security patches.

A

True

30
Q

Unless your environment is small or uses Virtual Desktop Infrastructure (VDI) technologies, how far in advance should your project to do mass client upgrades?

A

2 years prior to end of life

31
Q

What is VDI?

A

Virtual Desktop Infrastructure

32
Q

What is it called when the product is no longer sold to retailers or OEMs?

A

End of Sales

33
Q

What is one of the problems associated with “End of Sales”?

A

Resellers might stockpile licenses to extend their product lines

34
Q

What is it called when warranties expire for the product, the product will no longer be improved, free incident support ends, and non-security hot fixes become unavailable unless specifically purchased during the Extended Support phase?

A

End of Mainstream Support

35
Q

What is it called when security hot fixes and paid support can no longer be purchased, except in special cases with Custom Support?

A

End of Extended Support

36
Q

What is it called when there will be no further hot fix or support options whatsoever unless they are negotiated with Microsoft?

A

End of Custom Support

37
Q

(T/F) If Windows cannot be upgraded before it expires, then threats to the system will remain constant moving forward.

A

False.

If a Windows computer cannot be upgraded before it expires, then every month that it continues to run increases the probability it will become compromised or infected with malware.

38
Q

What are some stop-gaps to use if Windows cannot be upgraded before it expires?

A
  • Block all network connectivity to/from expired computers
  • Switch from IE or Edge to another browser
  • Keep all applications up-to-date with patches
  • Install a HIPS or IDS
  • Backup more frequently
39
Q

(T/F) Beware, there may be websites that sell unofficial Windows hotfixes for expired OSs. Be especially wary of any hot fixes circulating for free on file-sharing sites or that are advertised through spam.

A

True

40
Q

Should you trust underground market hotfixes?

A

no

41
Q

Windows security is not just for traditional PCs, Laptops and tablets. What are some of the other Microsoft Client devices?

A
  • Windows phone
  • Xbox One
  • HoloLens
  • Surface Hum
42
Q

What Windows Client device has UEFI firmware, a TPM chip, whole disk encryption, supports VPNs, authenticates with Windows Azure accounts for SSO?

A

Windows Phone

43
Q

(T/F) The good thing about Windows Phone is that it runs a “real” operating system, so it has no potential exploits and malware.

A

False

The good thing about Windows Phone is that it runs a “real” operating system, but the bad thing is that it runs a real OS with all the potential exploits and malware.

44
Q

What are the SECURITY BEST PRACTICES that apply to Windows Phones

A
  • Keep updated with the latest OS
  • Use centralized MDM management (MobileIron)
  • Require PIN or Iris scan
  • Train users not to store sensitive data on their mobile devices
  • Backup on a regular basis
  • Use app whitelisting rules to block/allow apps based upon your policies
  • Use PIN-protected TPM virtual smart card to authenticate to LOB apps and VPN gateways
  • Revoke compromised certificates
  • Configure device so that after too many failed attempts, it should either wipe or it should encrypt
45
Q

Why would we care about Xbox and security?

A

Because, your users’ Xbox console will eventually become BYOD computers that they expect to use for work