In internets, different networks are connected by ________.
A) switches
B) routers
C) Both A and B
D) Neither A nor B
Answer:
The ________ collects event data and stores them in log files on the monitoring
devices.
A) manager
B) agent
C) Both A and B
D) Neither A nor B
Answer:
What protection do cryptographic systems provide on a message-by-message basis?
A) Message authentication
B) Message integrity
C) Message confidentiality
D) All of the above
Answer:
Host operating system monitors look at ________.
A) multiple failed logins
B) creating new accounts
C) Both A and B
D) Neither A nor B
Answer:
When Carol sends a message to Bob, Bob will use ________ to decrypt the message.
A) the private key
B) Carol’s private key
C) Bob’s private key
D) Carol’s public key
Answer:
Adding invisible information to a file that can be used to identify its source is called
________.
A) DRM
B) data extrusion management
C) watermarking
D) None of the above.
Answer:
Ensuring network ________ means that authorized users have access to information,
services, and network resources.
A) confidentiality
B) integrity
C) availability
D) authentication
Answer:
When an attacker deliberately attempts to fool the system, this is called ________.
A) deception
B) a false acceptance
C) a false rejection
D) All of the above.
Answer:
Full backups are ________.
A) performed on all files and directories
B) slow
C) typically done weekly
D) All of the above
Answer:
In checking the digital signature, the verifier ________.
A) decrypts the digital signature it received with the supplicant’s public key to get the
message digest
B) hashes the plaintext message with the same algorithm used by the sender to get the
message digest
C) Both A and B
D) Neither A nor B
Answer:
If a router receives a packet with a TTL value of 1, what will it do?
A) Increase the TTL value to 2.
B) Keep the TTL value at 1.
C) Drop the packet.
D) None of the above.
Answer:
Successful attacks are commonly called ________.
A) security incidents
B) countermeasures
C) Both A and B
D) Neither A nor B
Answer:
Which of the following measures offers strong security?
A) Turning off SSID broadcasting
B) MAC access control lists
C) Both A and B
D) Neither A nor B
Answer:
________ is form of online fraud when bogus clicks are performed to charge the
advertiser without creating potential new customers.
A) Click fraud
B) Extortion
C) E-theft
D) False reporting
Answer:
Compliance laws and regulations ________.
A) create requirements to which security must respond
B) can be expensive for IT security
C) Both A and B
D) Neither A nor B
Answer:
A ________ is a fake network segment with multiple clients and servers.
A) trap
B) honeypot
C) IDS
D) virtual network
Answer:
In the military, departments do not have the ability to alter access control rules set by
higher authorities in ________.
A) policy-based access control
B) mandatory access control
C) discretionary access control
D) multilevel access control
Answer:
What is the name for a small program that fixes a particular vulnerability?
A) Work-around
B) Patch
C) Service pack
D) Version upgrade
Answer:
________ drop packets.
A) Firewalls
B) IDSs
C) Both A and B
D) Neither A nor B
Answer:
Standard configurations ________.
A) afford strong control over the system security configuration
B) reduce maintenance costs
C) Both A and B
D) Neither A nor B
Answer:
Mens Rea usually is important is ________ trials.
A) civil
B) criminal
C) Both A and B
D) Neither A nor B
Answer:
A ________ firewall handling all traditional firewall functions (SPI, ACLs, etc.) as well
as additional security functions such as antivirus filtering, spam filtering, application
proxy filtering, and so forth.
A) unified threat management
B) stateful packet inspection
C) static packet inspection
D) None of the above
Answer:
A Windows host sends a TCP segment with source port number 1200 and destination
port number 25. The receiving host is a(n) ________.
A) client
B) TCP server
C) webserver
D) e-mail server
Answer:
Which hacker group was likely involved in the Sony data breaches?
A) LulzSec
B) Wikileaks
C) Chaos Club 7
D) L33t |\|3RD5
Answer:
In an IDS, ________ means that the IDS should report all attacks events and report as
few false alarms as possible.
A) precision
B) event correlation
C) Both A and B
D) Neither A nor B
Answer:
A ________ card stores authentication data.
A) magnetic stripe
B) smart
C) Both A and B
D) Neither A nor B
Answer:
Which of the following layers does IPsec protect?
A) The transport layer
B) The application layer
C) Both of the above
D) Neither of the above
Answer:
An EAP failure message is sent to the ________.
A) authentication server
B) authenticator
C) client
D) Any of the above
Answer:
If an IPS identifies an attack, it can ________.
A) drop the attack packet(s)
B) limit suspicious traffic to a certain percentage of the total bandwidth
C) Both A and B
D) Neither A nor B
Answer:
The most time-consuming part of firewall management is ________.
A) creating ACLs
B) creating policies
C) reading firewall logs
D) None of the above
Answer:
Retaining data can be ________.
A) expensive
B) susceptible to discovery of damaging information
C) A only
D) Both A and B
Answer:
Which of the following is one of the effective key lengths in 3DES?
A) 40 bits
B) 110 bits
C) Both A and B
D) Neither A nor B
Answer:
Long passwords that use several types of keyboard characters are called ________
passwords.
A) complex
B) reusable
C) dictionary
D) one-time
Answer:
The purpose(s) of auditing is(are) to ________.
A) develop opinions on the health of controls
B) find punishable instances of noncompliance
C) Both A and B
D) Neither A nor B
Answer:
Compared to access control based on individual accounts, RBAC is ________.
A) less prone to error
B) more expensive
C) Both A and B
D) Neither A nor B
Answer: