CYBR 3200 Exam 2 Questions with Complete Solutions Unix - Correct Answer Point-to-Point Protocol (PPP) over Secure Sockets Layer (SSL) and Point-to-Point Protocol (PPP) over Secure Shell (SSH) are two ____-based methods for creating VPNs Access Control List (ACL) - Correct Answer A(n) ____ is a list of authorization rights attached to an object
- in other words, who can access that device or application and what can they do with it.
Least Privilege - Correct Answer Which access control principle restricts users to having access appropriate to the level required for their assigned duties?Concentrators - Correct Answer IPSec ____ use a complex set of security protocols to protect information, including Internet Key Exchange (IKE), which provides for the exchange of security keys between the machines in the VPN.Accountability - Correct Answer Which access control process documents the activities of the authenticated individual and systems?Mandatory Access Control - Correct Answer A ____ is one in which the computer system enforces the controls without the input or intervention of the system or data owner.War dialer - Correct Answer A ____ is an automatic phone-dialing program that dials every phone number in a configured range (e.g., from 555-1000 to 555-2000) and checks to see if a person, answering machine, or modem answers.split tunneling - Correct Answer Which term refers to two connections over a VPN line?Usage limits - Correct Answer Client authentication is similar to user authentication but with the addition of ____.False - Correct Answer PPTP provides stronger protection than L2TP. 1 / 2
hex - Correct Answer The tcpdump tool will output both the header and packet contents into ____ format.application protocol - Correct Answer In ____ verification, the higher-order protocols (HTTP, FTP, Telnet) are examined for unexpected packet behavior or improper use.tcpdump - Correct Answer Because of its ubiquity in UNIX/Linux systems, ____ has become the de facto standard in network sniffing.clipping level - Correct Answer When the measured activity is outside the baseline parameters - exceeding what is called the ____ - the IDPS sends an alert to the administrator.Trap and trace applications - Correct Answer ____ applications use a combination of techniques to detect an intrusion and trace it back to its source.signature-based - Correct Answer Blacklists and whitelists are most commonly used in ____ detection and stateful protocol analysis.-c - Correct Answer Which tcpdump option specifies the number of packets to capture?signatures - Correct Answer A signature-based IDPS examines network traffic in search of patterns that match known ____.honeynet - Correct Answer When a collection of honeypots connects several honeypot systems on a subnet, it may be called a ____.IDPS - Correct Answer One of the best reasons to install a(n) ____ is to provide an organization with overall situational awareness - or a better overall understanding - of the activities that take place on the network.True ???? - Correct Answer Most installed wireless networks use the infrastructure model.
- / 2