LP - Enterprise Security Capabilities Flashcards

1
Q

Web filters can filter traffic from OSI

A

layers 3 to 7

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Some Capabilities of web filtering:

A
  1. Safe Search
  2. DNS filtering
  3. URL filtering
  4. Content cateorization
  5. File Filtering
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Web filtering can do reputation

A

filtering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

GP stands for

A

Group Policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Group Policy (GP) allows administrators to

A

centrally manage settings on the Windows OS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Is Group Policy (GP) is used in Active Directory?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

GPO stands for

A

Group Policy Objects

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

SELinux stands for

A

Security Enhanced Linux

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

SELinux in its default enforcement mode will

A

deny and log any unauthorized attempts (least privilege)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

MLS stands for

A

Multilevel security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

SELinux can be confiured to protect a system via

A

MLS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

MLS is very complicated and typically only used by

A

government

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

TACACS+ port number

A

49

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Kerberos port number

A

88

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

IMAP port number

A

143, 593

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

SNMP port number

A

161/162

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

FTPS port number

A

989 and 990

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

IMAPS port number

19
Q

POP3S pot number

20
Q

RADIUS port number

A

1812 and 1813

21
Q

DIAMETER port number

22
Q

SRTP port number

23
Q

In DNS filtering all DNS queries are delivered to a

A

DNS resolver

24
Q

DNSSEC provides authentication but no

A

confidentiality

25
Q

DNSSEC adds the following:

A
  • RRSIG
  • DNSKEY
  • DS
  • NSEC and NSEC3
  • CDNSKEY and CDS
26
Q

RRSIG contains a

A

cryptographic signature

27
Q

DNSKEY contains a public

A

signing key

28
Q

DS containds the hash of a

A

DNSKEY record

29
Q

NEC and NSEC3 is for explicit

A

denial-of existence of a DNS record

30
Q

CDNSKEY and CDS is for a child zone requesting update

A

to DS records in the parent zone

31
Q

OpenDNS is a cloud-delivered

A

enterprise security service

32
Q

SPF stands for

A

Sender Policy Framework

33
Q

In SPF the domain owner publishes where the email coming from in the

34
Q

DKIM stands for

A

DomainKeys Identified Mail

35
Q

How does DKIM work?

A

It uses digital signatures to verify the email.

36
Q

DMARC stands for

A

Domain-based Message Authentication Reporting and Conformance

37
Q

What is DMARC?

A

It is an email authentication, policy and reporting protocol.

38
Q

ICES stands for

A

Integrated Cloud Email Security

39
Q

FIM stands for

A

File Integrity Monitoring (FIM)

40
Q

EDR stands for

A

Endpoint detection and response

41
Q

DAM stands for

A

Databaase Activity monitoring

42
Q

IoCs stand for

A

Indicators of compromise

43
Q

XDR stands for

A

extended detection and response

44
Q

UBA stands for

A

user behaviour analytics