Failed on 2nd practice exam Flashcards
a cloud network hub that allows users to interconnect virtual private clouds (VPC) and on-premises networks through a central console.
A transit gateway
Which value is the result of a quantitative or qualitative risk analysis?
Inherent risk
Which control types does a systems engineer implement when an initial locking mechanism does not perform as expected?
Compensating
Preventatve
control acts to eliminate or reduce the impact of an intrusion event.
A corrective control is used after an attack.
detective control
may not prevent or deter access, but it will identify and record any attempted or successful intrusion.
An organization remodels an office which results in the need for higher security during construction. Placing a security guard by the data center utilizes which control types?
Operational
Preventative
A control that acts to eliminate or reduce the likelihood that an attack can succeed.
A preventative control acts to eliminate or reduce the likelihood that an attack can succeed. A preventative control operates before an attack can take place.
A control implemented primarily by people rather than systems.
Operational control
What authentication protocol uses MSCHAP?
LEAP uses MSCHAP
What authentication protocl uses MSCHAPv2
PEAPv0 also known as EAP-MSCHAPv2.
What can assist in routing information on an attack to a honeynet?
Domain Name Service (DNS) sinkhole is used to intercept DNS requests attempting to connect to known malicious or unwanted domains and returning a fake IP address.
What authentication method does 802.1x framework use
EAP or extensible authentication protocol
What is a TAP?
A test access point (TAP) is a hardware device that copies signals from the physical layer and the data link layer
Test access points (TAPs) can be either active or passive.
Avoids frame loss
More reliable than SPAN
Can be active or passive
SPAN
SPAN (switched port analyzer) is simply mirroring ports.
Can only be active.
What is one way to protect against SSL stripping
HTTP Strict Transport Security (HSTS) forces browsers to connect using HTTPS only, mitigating downgrade attacks, such as Secure Socket Layer (SSL) stripping.