Workstation Security Flashcards
What is the User password for BIOS/UEFI used for?
the user password is only used to boot into the operating system or browse the BIOS settings
What is the Admin password for BIOS/UEFI used for?
the administrator password is required to make changes to the BIOS settings
What is the Windows utility for Drive Encryption?
Bitlocker
What is the macOS utility for Drive Encryption?
File Vault
What is the Linux utility for Drive Encryption in Ubuntu?
Full Disk Encryption (FDE)
What is Trusted Platform Module (TPM)?
a microchip that enhances the security of a computer by securely storing and generating cryptographic keys:
You must have TPM on the motherboard to use Windows 11.
What are best practices for Password management?
-Strong passwords
-Setting length of time for passwords to expire
-Must change any default passwords
-Using password managers
-Centralized management and enforcement of password policy
What are best practices for Antivirus and Anti-Malware?
Scheduled scans
Enable real-time protection
Update definitions regularly
Profiles in the Windows Firewall
Public: Most restrictive settings for workstations connected to untrusted networks
Work/Domain: Moderate restrictions for workstations joined to a domain
Home: Least restrictive (Network Discovery is enabled) for workstations joined to a domain
What is Network Level Authentication (NLA)?
a security feature that requires users to authenticate themselves before accessing a remote desktop or network server. NLA works with Windows Firewall profiles.
What is involved with Password Locked Screensavers?
User login screen is shown after a duration of inactivity
Windows Settings > Screen saver settings > On Resume, display logon screen
What are the 3 User and Group management methods in Windows?
1- Local Users and Groups - workgroup / decentralized
2- Active Directory Users and Computers - domain/centralized
3- Microsoft 365 and Azure cloud-based/centralized
When should role-based access control be used?
Wherever possible
What is account auditing and when should it be done?
A methodical examination and review of system accounts to make sure that user accounts are up to date (outdated accounts removed/disabled, proper permissions are allocated, etc.). Audits should be done periodically.