Hardening Flashcards

1
Q

Process of configuring workstation or server to only provide essential applications and services

A

Least Functionality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Only applications that are on the list are allowed to be run by the operating system while all other application are blocked

A

Application Whitelist

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Any application placed on the list will be prevented from running while all other applications are permitted to run.

A

Application Blacklist

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

An operating system that meets the requirements set forthby government and has multi level security

A

Trusted Operating System

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

A single problem fixing piece of software for an operating system or application

It requires a system reboot.

A

Patches

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Software code for a specific problem addressing a critical, non security bug in the software.

A

Critical update

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

A tested accumulative grouping of patches, hotfixes, security updates, critical update and possibly some feature or design changes.

A

Service pack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Software code that is issued for a product-specific security related vulnerabilty

A

Security Update

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Recommends update to fix a non critical problem that users have found as well as to provde additional features or compatibilities.

A

Windows update

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Updated device driver to fix a security issue or add a feature to a supported piece of hardware

A

Driver update

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

A process of planning testing implementing and auditing of software patches.

A

Patch management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

This tool can help identify security misconfigurations within your network’s workstations.

A

Microsoft baseline security analyser

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Step of patching

To verify it is compatible with your system and plan for how you will test and deploy it

A

Planning

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Step of patching

Always test your patch prior to automating its deployment

A

Testing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Step of patching

Manually or automatically deploy the patch to all your clients to implement it

A

Deploy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

A tool to use to deploy the patch. Large organization centrally manage updates through an update server.

A

Microsoft system center configuration manager

17
Q

Step of patching

Is use to ensure the patch was installed properly and there is unexpected failures that have occured because of our installation.

A

Auditing

18
Q

A set of rules of policies that can be applied to a set of users or computer accounts within operating system.

A

Group Policies

19
Q

Process of measuring changes in the network, hardware software environment.

Helps establish what normal is for your organization you can then identify what abnormal or a deviation looks like.

A

Baselining

20
Q

Level of security of a system is affected by its file system type

A

File system and hard drives

21
Q

The default file system format for windows and is more secure.

A

NTFS New Technology File System

22
Q

Refers to a TCP or UDP number that is configured to accept packets

A

Open ports

23
Q

Protects the entire volume and all files on the drive against unauthorized access.

A

Full Disk Encryption FDE

24
Q

Is an encryption method, which takes place on the file system level, enabling the encryption of data in individual files and directories.

A

File-Level Encryption

25
Q

It is a hard disk drive (hdd) or solid state drive (sdd) with an encryption circuit built into the drive. It transparently encrypts all data written to the media and when unlocked, transparently decrypts all data read from the media.

A

Self Encrypting Drive SED