Hardening Flashcards

1
Q

Hardening Basics

A

With the credentials always change default credentials, do patch management, always protect administrative accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Hardening Firmware

A

UEFI vs. MBR: UEFI is a more protected system and has more setting to keep it protected. Always do firmware updates and patches. Only trust platform modules meaning only trust certificate that are known which is also secure boot. Protection of out of band management when you remote into the server to update your server.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Hardening Ports and services

A

Ports are logical end-point connection and can be used by attacker. Services provide networking resources and provide a increased attack surface also can be exploited by attackers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Hardening a firewall

A

In the context of hardening a host firewall you should always activate implicit deny. Only allow services that are trusted and being used at the time. Use HIDS and HIPS in the firewall. Stateful monitoring or a stateful firewall moniting network communications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Hardening Anti-virus

A

Real time protection and automated scanning, do platform and signature updates. Keep logs of all activity, and configure default actions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

hardening file and disk encryption

A

File encryption methods are EFS, APFS, GPG. Disk encryption methods Bitlocker (widnows), file vault(Maco os), Luks (linux)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Hardening the registry

A

It is a windows only application with hierarchical setting/s/configuration database. Least privilege all users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly