ART
Questions 4
1. Most remote configuration and administration uses the _______ protocol?
1. SSH stands for?
1. The File Transfer Protocol (FTP) uses which transport protocol, TCP or UDP?
1. From a security standpoint, it is more desirable to use the numeric IP address of a static IP host, such as an e-mail server, than to allow the address to be looked up the Domain Name Service. True or False?
1. Because the e-mail server will not be required to run a browser, which protocol is not allowed by the firewall rules?
1. Because the e-mail server uses a fixed, static, predetermined IP address, which protocol is not used, and, therefore, not specifically allowed to pass through the firewall?
1. Hyper Text Transfer Protocol (HTTP) and Secure HTTP (HTTPS) are the same protocol from a standpoint of passing or blocking them with a firewall. True or False?
1. Which protocol is used for a variety of functions in the e-mail server, such as resolving the numeric address ofemail.user@emailserver.net, and which servers are blacklisted for being sources of Unsolicited Commercial Email (UCE)?
Questions 5
1. What does an effective penetration test consist of?
2. Which is not part of the Attacker Kill Chain?
a. Reconnaissance
b. Exploitation
c. Weaponization
d. System Hardening
3. Time and dollar budgets permitting, it is beneficial to run more than one vulnerability scan because different vulnerability scanners may get different results. True or False?
4. It is important to rerun a vulnerability scan after patching programs or closing vulnerabilities because in closing some you may have opened others. True or False?
5. Domain Name Service runs on port ___.
6. Network 1, including the host connection for the firewall, is a part of the _________ Class C or CIDR /24 subnetwork.
Questions 6
1. What firewall does Global Enterprises use?
2. What version of firewall did Global Enterprises install?
3. What is the current version number of the firewall software used by Global Enterprises?
4. What email server does Global Enterprises use?
5. What are Global Enterprises Domain Name Servers?
6. Which Global Enterprises employee used to work for the Los Angeles Police Department?
7. Where did LouAnne Garfinkle work before coming to Global Enterprises?
8. Job applicants often feel as if the job description were written especially for them, in LouAnne’s case that was true. Briefly describe what elements of the job ad from Part 2 of the lab might appeal specifically to LouAnne Garfinkle.
9. What is the difference between social engineering and reverse social engineering?
a. Social engineering is used in the real world. Reverse social engineering is used in the cyber world.
b. Social engineering is used on most people. Reverse social engineering is used on people with specialized law enforcement training.
c. In social engineering the con artist goes to the target, in reverse social engineering the con artist gets the target to come to them.
d. In social engineering email is taken from the subject, in reverse social engineering the subject is sent email or SPAM.
e. Only script kiddies do social engineering, Reverse social engineering is done by professional cyber criminals.
10. What is the top objective of an anti-social engineering campaign within an organization?
a. Penalties
b. Awareness
c. Spying on co-workers
d. Spying on bosses
e. Spying on subordinates
f. All of c-e above
Questions 7
1. What firewall does Global Enterprises use?
2. What version of firewall did Global Enterprises install?
3. What is the current version number of the firewall software used by Global Enterprises?
4. What email server does Global Enterprises use?
5. What are Global Enterprises Domain Name Servers?
6. Which Global Enterprises employee used to work for the Los Angeles Police Department?
7. Where did LouAnne Garfinkle work before coming to Global Enterprises?
8. Job applicants often feel as if the job description were written especially for them, in LouAnne’s case that was true. Briefly describe what elements of the job ad from Part 2 of the lab might appeal specifically to LouAnne Garfinkle.
9. What is the difference between social engineering and reverse social engineering?
a. Social engineering is used in the real world. Reverse social engineering is used in the cyber world.
b. Social engineering is used on most people. Reverse social engineering is used on people with specialized law enforcement training.
c. In social engineering the con artist goes to the target, in reverse social engineering the con artist gets the target to come to them.
d. In social engineering email is taken from the subject, in reverse social engineering the subject is sent email or SPAM.
e. Only script kiddies do social engineering, Reverse social engineering is done by professional cyber criminals.
10. What is the top objective of an anti-social engineering campaign within an organization?
a. Penalties
b. Awareness
c. Spying on co-workers
d. Spying on bosses
e. Spying on subordinates
f. All of c-e above
Questions 8
1. The traditional IPsec protocol stack that is installed with Openswan is ________. The new alternative is ________.
2. Which command displays the status of the IPsec installation?
3. Tunnels may either be established using manual mode or automatic mode. Which mode preferred?
4. The convention when drawing configuration diagrams of the VPN connection is to place the VPN server on the left or right (circle one), and the vWorkstation on the left or right (circle one). In this way, the left side of the diagram is usually reserved for the ________ machine, and the right side is usually the ________ machine.
5. Which of the following commands can be used to place a section break between sections when creating the ipsec.conf file?
a. A # character
b. A blank line
c. section=%break
d. SECTION-%break
e. None of the above
6. The klipsdebug and/or plutodebug should only be __________.
a. loaded in Openswan versions greater than 2.5.
b. enabled if specifically requested.
c. generated on systems with aggregate bandwidth greater than 100 Mbps.
d. used by Government Intelligence Agencies.
7. What is the name of the ipsec configuration file? In which directory is it stored?
8. Which of the following are valid options for the tunnel= command?
a. ESP, AH, null
b. Diffie-Hellman, OAKLEY, IKE
c. IKE and TINA
d. Tunnel, transport and passthrough
e. Tunnel, transport, *null*