星期一, 9月 27, 2010

Introduction to security policies

1. Security ___________ define which of a company's resources are to be protected, whereas security _________ define how to protect them.

To fill the first blank, select one of the options below. The other option will automatically appear in the second blank.

procedures
policies



Security policies define which of a company's resources are to be protected, whereas security procedures define how to protect them.




2. Which of the following should be the first step in developing a security policy?

Choose an option.

Assigning risk factors
Prioritizing resources
Classifying resources
Defining acceptable and unacceptable activities



3. Which of the following statements best describes a company's information protection policy?

Choose an option.

It defines methods of remotely connecting to the main network
It provides guidelines on how users should process, store, and transmit sensitive information
It provides guidelines for reporting and managing virus infections
It defines the appropriate use of computing resources

星期日, 9月 26, 2010

Identifying Internet security measures

1. Which of the following involves users submitting their usernames and passwords in encrypted form?

Choose an option.

Anonymous access
Basic authentication
Secure authentication
Digital certificates


2. You use your ________ to decrypt messages you receive.

You send your _________ to the people from whom you expect to receive an encrypted message.

To fill the first blank, select one of the options below. The other option will automatically appear in the second blank.

private key
public key


You use your private key to decrypt messages you receive.

You send your public key to the people from whom you expect to receive an encrypted message.


3. A digital certificate contains which of the following?

Choose more than one option.

A certificate serial number
A certificate expiration date
Your private key
The certificate authority's digital signature

星期六, 9月 25, 2010

Threats to data on networked computers

1. A _________ is a simple destructive miniature program that infiltrates its way into computer systems.

Choose an option below to fill in the blank.

VPN
hacker
IP address
virus



2. Which of the following statements regarding hackers are true?

Choose more than one option.

They always gain access to system resources from outside
They use Internet message boards to gain information on system security holes
They impersonate authorized users to gain access to systems
They all aim to defraud the companies whose systems they penetrate



3. What do ethical hackers do?

Choose an option.

Try to break into systems so as to defraud companies
Test a system's security to see where malicious hackers could gain access
Create antivirus software
Impersonate authorized users using a spoof IP address in order to breach system security

星期五, 9月 24, 2010

Threats and security risks on the Web

1. Which web browser setting controls how a web browser receives information that is automatically saved to your hard disk?

Cookies
Security
Proxy
Mail server


2. A macro virus will typically affect the file currently open on your computer.

A boot-sector virus infects a portion of your hard disk.

To fill the first blank, select one of the options below. The other option will automatically appear in the second blank.

macro
boot-sector


3. Which of the following terms describes information about a user that is stored on a client machine by a web browser?

Choose an option.

A cookie
A cache
A MIME
A certificate


4. Why is it important to frequently update the virus definition files on your virus protection software?

Choose an option.

To prevent hacking attempts
To keep abreast of the newest viruses
To prevent viruses from infecting your CD-ROMs
To automatically patch your word-processing software

星期四, 9月 23, 2010

Introduction to network security threats

1. Which of the following definitions refers to data becoming corrupt due to incorrect inputting procedures?

Choose an option.

Malicious threat
Inappropriate activity
Nuisance threat
Accidental loss

2. Which of the following terms describes the event whereby a hacker installs a virus on your computer and then tries to make you inadvertently activate it?

Choose an option.

Denial of Service (DoS)
Trojan horse
Packet sniffing
E-mail spoofing

3. Which of the following should be disabled in order to discern whether a file is a virus?

Choose an option.

Hide file extensions for known file types in Windows
Java, JavaScript, and Active X in browsers
Denial of Service (DoS)
Chat sites

星期三, 9月 22, 2010

Network security components

1. In symmetrical encryption, a private key is used, whereas in asymmetrical encryption, both public and private keys are used.

To fill the first blank, select one of the options below. The other option will automatically appear in the second blank.

asymmetrical
symmetrical


2. Which of the following steps can be implemented to prevent virus attacks?

Choose more than one option.

Prevent unauthorized users accessing the Internet
Use access control
Use software packages to immunize your system
Use virus scanners to search for viruses each time you boot up



3. Which of the following is a collection of components that acts as a barrier between a private network and the outside world?

Choose an option.

Encrypted tunnel
Firewall
Virtual Private Network (VPN)
Virus


4. When you receive a message encrypted by the sender's private key, you decrypt it using the sender's public key.

Choose an option below to fill in the blank.

private
public



5. IDS systems work by calculating baselines for each of the parameters monitored. Your system is said to be operating normally when the parameter values recorded are within the baselines.

Choose an option below to fill in the blank.

outside
within



6. Which of the following are common user authentication systems?

Choose more than one option.

Biometrics
Digital signatures
Passwords
Personal tokens

星期二, 9月 21, 2010

Overview of the Internet

1. Which of the following is a valid IP address?

Choose an option.

204.115
204.115.34
204.115.34.10
204.115.34.10.102


2. Which protocol is used by computers on the Internet to communicate with each other?

Choose an option.

IPX/SPX
NetBEUI
TCP/IP
DECNet



3. The SMTP protocol is used for which of the following?

Sending e-mail messages between mail servers
Transferring outgoing e-mail messages from a client to a server
Exchanging newsgroup messages
Transferring incoming e-mail messages from a mail server to a mail client



4. What is the correct URL syntax for a company called Imagenie?

http://www.imagenie.com
http//www.imagenie.com
imagenie@www.http.com
www/imagenie/com


5. __________ is the protocol used between a web server and a web browser when web pages are downloaded during a web browsing session.

Choose an option below to fill in the blank.

HTML
HTTP
FTP
Telnet


6. Let's say that you need to establish a web site that your employees can use to see human resources information and internal documents.

Which type of site should you create to do this?

Choose an option.

An Internet site
An intranet
An extranet
A virtual private network



7. Which of the following must you have to access an extranet?

Choose more than one option.

The correct URL
A valid username
A password
A digital certificate


8. are networks that are partially accessible to authorized outsiders.

Choose an option below to fill in the blank.

Internets
Extranets
Intranets



9. Which TCP/IP protocol is used for sending and receiving newsgroup messages?

FTP
HTTP
LDAP
NNTP

推薦此文