Security Flashcards

1
Q

What is NAC?

A

Network Admission Control

Agent that checks criteria in order to connect to network (persistent (on 24/7) / non-persistent)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is smurfing?

A

DDoS where ICMP packets are sent with a spoofed address of the victim

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is Bluejacking vs Bluesnarfing?

A

Bluejacking - Sending data to device

Bluesnarfing - Stealing information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is DHCP Snooping?

A

Untrusted ports for DHCP are blocked if DORA packets are sent from a rogue device

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is ARP inspection?

A

Makes sure no one is lying about L2 to L3 mapping

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How would you stop MAC address spoofing on a switch?

A

Port security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

With an ACL (Access Control List) is rule order important?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What piece of agent software is used in 802.1x between a computer and switch?

A

Supplicant

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is EAP?

A

Extensible Authentication Protocol

801.1x

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is PAP?

A

Password Authentication Protocol

Insecure clear text

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is an industry standard for authenticating on serial connections?

A

CHAP

MSCHAP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is Kerberos?

A

Authenticates in Active Directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is stateful firewall inspection?

A

Remembers session of outbound packets on a socket and only permits inbound traffic to that socket

Socket - IP address + Port Number

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is an Application/Content aware firewall?

A

Can analyse and block specific content within a site

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is a virtual wire vs routed firewall?

A

Virtual wire is L2 and does not use IP address as a hop in network path

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a quarantine VLAN also known as?

A

Remediation network

17
Q

What is edge vs access control?

A

Access control determines which network resources can be accessed

18
Q

What is the procedure for computer forensics?

A
First responder
Secure the area (escalate when necessary)
Document the scene
eDiscovery
Evidence/data collection
Chain of custody
Data transport
Forensics report
Legal hold
19
Q

What is banner grabbing/OUI?

A

Getting information about a computer system

20
Q

What is EAP-PEAP?

A

Authentication that works with RADIUS servers

21
Q

What is EAP-TLS?

A

Supports client side digital certificates for authentication with APs