LP - Enterprise Infrastructure Security Principles Flashcards

1
Q

PAZ stnds for

A

Public access zone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

PIZ stands for

A

Zone interface points

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

When a firewall or IPS sensor is deployed in a fail-open mode it

A

if a system or component failure on the device the IP traffic should continue to flow to to zones on the outbound interfaces

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Port number for FTP data

A

20

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Port number for FTP command control

A

21

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Port Number for FTPS data

A

989

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Port Number SMTP

A

25

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Port Number SMTPS

A

465

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Port Number HTTP

A

80

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Port Number HTTPS

A

443

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Port Number POP3

A

110

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Port Number POP3S

A

995

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Port Number NNTP

A

119

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Port Number NNTPS

A

563

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Port Number 143

A

IMAP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Port Number IMAPS

17
Q

Port Number Telnet

18
Q

Port Number SSH/SCP/SFTP

19
Q

Port Number DNS

20
Q

Port Number NTP

21
Q

802.1X PNAC stand for

A

Port-based Network Access Control

22
Q

Devices wanting to get on the 802.1X network are called

A

supplicants

23
Q

802.1X will reserve ports for non-supplicant devices like

24
Q

802.1X uses what for authentication

A

RADIUS or the newer DIAMETER

25
Q

EAP (extensible authentication protocol) is a framework as opposed to a specific authentication

26
Q

EAPoL stands for

A

EAP over LAN

27
Q

Stateful cloud-based Firewall do not have

A

explicit deny enties

28
Q

Next generation firewalls operate on OSI layers

29
Q

Next generation firewalls do what level of packet inspection

30
Q

UTM stands for

A

Unified Threat Management

31
Q

WAF stands for

A

Web Application Firewall

32
Q

WAF is also called

A

WSG - web security gateway

33
Q

WAF protects HTTP and HTTPS (TLS) traffic at layers

34
Q

WAF can protect from

A

XXS, request forgeries and SQL injections

35
Q

IPSec is always used over the

36
Q

The lasest version of TLS is