IS3440 CHAP 11 MANAGEING SECURITY ALERTS AND UPDATES Flashcards
___ is a company that creates anti-malware systems for Linux and other operating systems.
AVG
___ in the context of the kernel, this is an incorporated feature from a later kernel.
Backport
___ is a clone of UNIX, similar to Linux, released under different licenses.
(BSD) Berkeley Standard Distribution
___ is a Web-based bug-tracking and management tool commonly used on open source projects from Red Hat to the GNOME desktop environment.
Bugzilla
___ is a cross-platform antivirus software toolkit developed for and used on Linux, BSD, and derivatives of UNIX.
(Clam AV) Clam AntiVirus
___ is an open source project for network-based installations of Linux distributions.
Cobbler project
___ is a list of operating-system security issues maintained by the MITRE corporation and sponsored by the National Cyber Security Division of the US Department of Homeland Security.
(CVE) Common Vulnerabilities and Exposures list
___ is an open source project to create packages over and above those available for Red Hat Enterprise Linux; may include functional back ports from later versions of Fedora Linux.
(EPEL) Extra Packages for Enterprise Linux
___ is the Linux operating system developed by the Fedora Project and sponsored by Red Hat.
Fedora Linux
___ is a company that creates anti-malware systems for Linux and other operating systems.
Kaspersky
___ is a network-based installation system first created for Red Hat distributions.
Kickstart
___ is a release of the Ubuntu distribution that includes the KDE desktop environment as the default GUI.
Kubuntu
___ is a system management tool available from Canonical for managing and updating clients associated with the Ubuntu distribution.
Landscape
___ developed by Canonical, this is a platform for bug tracking, open source software development, and more.
Launchpad
___ is the system of package updates on the Linux operating system.
Linux patch management
___ is a reference to the Ubuntu repositories of supported open source software.
Main repository
___ is a Linux distribution based in France and Brazil.
Mandriva
___ is a reference to the Ubuntu repositories of unsupported software released under restricted license.
Multiverse repository
___ is a portal and server to search for revoked digital certificates.
(OCSP) Online Certificate Status Protocol
___ is a popular FTP server with a basic configuration file similar to the Apache Web server; supports multiple virtual FTP servers.
(ProFTPd) Pro File Transfer Protocol daemon
___ is a leader of the open source movement. Author of The Cathedral and the Bazaar. Also a cofounder of the open source initiative.
Raymond, Eric
___ is a Linux distribution built from the source code released by another distribution. For example, because CentOS uses Red Hat source code, CentOS Linux is a ___ of Red Hat Enterprise Linux.
Rebuild
___ this is a Linux distribution developed in China.
Red Flag Linux
___ is the company behind the leading Linux distribution in the marketplace.
Red Hat
___ is a group of systems management services to manage packages, administer scripts, and more. These services may be applied to subscribed clients and servers on a network.
(RHN) Red Hat Network
___ is a proxy server dedicated to caching downloaded packages from the Red Hat Network.
Red Hat Network Proxy Server
___ is a version of the Red Hat Network designed for local use on an enterprise network; includes an embedded Oracle database.
Red Hat Satellite Server
___ are announcements of security issues from the Red Hat Security Team.
(RHSAs) Red Hat security advisories
___ is a reference to the Ubuntu repositories of software released under restricted licenses.
Restricted repository
___ is a specialized type of malware that enables a black-hat hacker to take root administrative access of a Linux system.
Root kit
___ is a variant of UNIX originally developed by the former Sun Microsystems.
Solaris
___ is an open source systems management server based on the source code of the Red Hat Network Satellite Server.
Spacewalk
___ is a program for filtering unwanted email.
SpamAssassin
___ is a Linux distribution originally developed in Germany, now owned by Novell.
SUSE
___ is a Linux distribution originally developed in Japan
Turbolinux
___ are alerts based on security issues that affect different releases of the Ubuntu distribution.
(USNs) Ubuntu security notices
___ is a reference tot he Ubuntu repositories of unsupported software released under open source licenses.
Universe repository
___ is a system for sharing views of graphical desktop environments over a network.
(VNC) Virtual network computing
___ is a popular FTP server that is no longer supported and is reported to have security flaws.
(WU-FTPD) Washington University File Transfer Protocol daemon
___ is a self-replicating malware program; different from a Trojan horse, which is not self-replicating.
Worm
___ is an alternative desktop environment to GNOME and KDE; it is the default desktop environment on the Xubuntu variant of Ubuntu Linux.
Xfce desktop environment
___ is a release of the Ubuntu distribution that includes the Xfce desktop environment as the default GUI.
Xubuntu
___ is a systems management server released by Novell. ___Linux Management can be used to administer patches and more on both SUSE Linux Enterprise Server and Red Hat Enterprise Linux systems.
ZENworks
- For at least how long does Red Hat provide security updates for its Enterprise Linux distributions?
- Two years
- Five years
- Seven years
- Ten years
Seven years
- For Ubuntu’s LTS releases, Canonical will provide security updates for its server distribution releases for at least five years.
TRUE OR FALSE
TRUE
- Why would you read a security alert and not just download and install a security update to a key system such as the Linux kernel? (Select two)
- The update may affect interactions between the operating system and local hardware
- The update does not affect any systems that you use personally
- The update may not be bootable.
- The update relates to Xen, which is a special kernel not used on the local system.
The update may affect interactions between the operating system and local hardware
The update may not be bootable.
The update relates to Xen, which is a special kernel not used on the local system.
- Which command is commonly used to install and update packages from the command line on Red Hat systems.
yum
- Even though Apache 2.4 is currently not production software, which of the following is a new feature of that version of Apache that may enhance security?
- Password protection for Web sites
- Access to secure certificates
- The ability to host multiple secure Web sites
- Access to OCSP servers.
Access to OCSP servers.
- Which of the following FTP servers is NOT maintained but may still be readily available on the repositories for a distribution?
- WU-FTPD
- Pure-FTPd
- vsFTP
- ProFTPd
WU-FTPD
- Which of the following types of malware is NOT found on Linux?
- Rootkits
- Microsoft viruses
- Trojan horses
- None of the above
None
- Which of the following includes a system for tracking bugs in software?
- ZENworks
- Red Hat Network
- Landscape
- Launchpad
Launchpad
- Before creating a bug report, which of the following actions should you take?
- Copy all log files to the report
- Research any FAQs
- Reinstall the software
- Reboot the system
Research any FAQs
- What is the full path to the YUM configuration file on a Red Hat Enterprise Linux 5 systems?
/etc/yum.conf
- which of the following files contain the addresses of remote repositories?
- /etc/apt/sources.list
- /etc/apt/apt.conf
- /etc/apt.conf
- /etc/apt/apt.conf.d/10periodic
/etc/apt/sources.list
- The multiverse repository includes packed that are NOT supported and do NOT include open source software?
TRUE or FALSE
TRUE
- Which of the following files in the /etc/apt/apt.conf.d/ directory determine whether unattended upgrades are run?
- apt.conf
- 10periodic
- 50unattend-upgrades
- 99update-notifier
10periodic
- Which of the following configuration files is associated with unattended upgrades on Red Hat Enterprise Linux systems?
- /etc/yum.conf
- /etc/yum/yum-daily.yum
- /etc/yum/yum-updatesd.conf
- /etc/yum.repos.d/yum-updatesd.conf
/etc/yum/yum-updatesd.conf
- Which of the following system management services is open source?
- Red Hat Network
- Landscape
- Spacewalk
- All the above
Red Hat Network
Landscape
Spacewalk
All the above