Practice Practice Practice (personal deck for what I need to study more) Flashcards
TCNO compliance range period
hours to weeks
PMO developed and distributed, DIRECTS AND DOCUMENTS permanent modifications
Time Compliance Technical Order (TCTO)
deny, degrade, disrupt (adversary processes, code, C2, communications, C2), used to create effects on AFIN terrain
Cyberspace Interdiction Package (CIP)
provides in-depth review ensuring compliance w/ DOD policies, reviews effectiveness of current security policies/recommends/directs changes
White Team (Inspection Forces)
emulates the enemy’s TTPs, focuses on assessing posture and processes from outside-in
Red Team
What firewalls are getting installed at the 16 AF gateways the next couple years?
Palo Alto
SIPR has some BlueCoat proxies. True or False?
False
broad set of VOICE, VIDEO, AND DATA- SHARING CAPABILITIES that promise to enable unprecedented joint collaboration
Unified Capabilities
when writing good rules, should you target a specific exploit or vulnerability?
vulnerability
used in addition to pinging, shows errors on specific interfaces
SNMP Walk Tool
used to communicate with other systems
proxy services
used to communicate with the ProxySG
console services
making changes on the client to point its web browsers to the proxy server (proxy)
explicit
used to frontend a web server, all internet traffic will flow through the proxy and then to the web server (proxy)
reverse
gives admins -ability to develop policy locally/globally,
Blue Coat Director
specifically PERMITS certain sites while blocking everything else (proxy)
Whitelisting
The last line of a whitelist is
DENY ANY
blocks specific sites while permitting everything else
blacklisting
Snort sniffs traffic in one direction only. True or False?
False. It sniffs both traffic in both directions (in and out of network)
switches to interface configuration mode
interface fa0/1
applies ACL 1 inbound on an interface
ip access-group 1 in
a set of objects within active directory
Trees
when objects and containers are combined, what are formed
branches
The message goes to the hub transport to locate what?
destination server