Hardening Flashcards

1
Q

Hardening

A

Process of enhancing the security of a system application or network; Default passwords, unneeded port/protocols, and extra open ports

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Least Functionality

A

Process of configuring a workstation or server with only essential applications and services for the user

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Secure Baseline Image

A

A standardized workstation setup including OS, essential applications and strict policies in corporate network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Allow Listing

A

Security measure that permits only approved applications to run on the OS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Block Listing

A

Preventing listed applications from running allowing all others to execute

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Trusted Operation Systems

A

Designed to provide a secure computing environment by enforcing stringent security policies that usually rely on mandatory access controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Evaluation Assurance Level (EAL)

A

A framework used to assess and certify the security features of IT products

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

EAL1

A

Is the lowest

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

EAL7

A

Is the most secure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

EAL4

A

Means this OS was carefully designed, tested, and reviewed offering good security assurance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Hotfix

A

Software patch that solves security issue and should be applied immediately after tested in a lab environment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Updates

A

Software modifications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Patches

A

Specific software updates

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Service Pack

A

Includes all the hotfixes and updates since the release of the OS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Patch Management

A

The planning, testing, implementing, and auditing software patches

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Process of Patch Management

A

Planning, testing, implementing, auditing

17
Q

Group Policies

A

Set of rules or policies that can be applied to a set of users or computer accounts of an OS

18
Q

Security Template

A

A group of policies that can be loaded through one procedure

19
Q

Baselining

A

Process of measuring changes in the network, hardware, or software environment

20
Q

Context-Based Permissions

A

Permission schemes that are defined by various properties for a given file or process; All are evaluated

21
Q

Contexts For SELinux

A

User, Role, Type

22
Q

SE Linux Modes

A

Disabled, Enforcing, Permissive

23
Q

SELinux Disabled

A

SELinux is turned off. MAC is off; Only using DAC

24
Q

SELinux Enforcing

A

All features are enabled

25
SELinux Permissive
SELinux is enabled but the AC is not being enforced
26
Data Encryption Level Types
Full-Disk, Partition, File, Volume, Database, and Record
27
Secure baselines
The minimum standard security configuration for the system architecture