What program could you use to conduct a technical vulnerability scan of a Linux host? -
answer A. Nessus
When connecting to an untrusted wireless access points how can you increase your
security and safety of using that access point? - answer A. Use a VPN to encrypt your
traffic
What service would you use to schedule a script to run at a certain pre-determined
time? - answer A. cron
What does the command find / -xdev -nouser do? - answer A. Finds files that belong to
user accounts that are no longer on the system
Which documents or resources can you review for guidance on hardening a Linux
system: - answerALL OF THESE
A. NSA hardening guide
B. DISA STIG
C. National Vulnerability Database
D. All of these
In a hardened Linux environment the firewalls default policy should be - answerB. Deny
All (or Drop)
What base directory would you put a script in if you wanted it to automatically start when
the operating system starts? - answer
If you use GRUB to manage different boot options on your Linux host and want to
increase security especially for physical access you should - answerA. Configure GRUB
to prompt for a password to boot a partition
127.0.0.1 is an example of what type of address? - answerA. IPv4
, What program allows you to interactively execute programs or commands as the root
user? - answerA. sudo
An attacker who places an entry such as 74.213.42.219 www.cmu.edu in the /etc/hosts
file could redirect users to a malicious server. - answerA. True
What is Unified Extensible Firmware Interface designed to do? - answerA. Prevent
malicious actors from modifying the boot loader or booting the computer with a different
operating system
Single user mode in Linux is a security risk if a malicious actor has physical access to
the host. - answerA. True
Bro, Snort, Suricata are examples of what kind of Linux security feature? - answerA.
Network Intrusion Detection Systems
Misconfigurations are a more likely security threat than viruses on Linux. - answerA.
True
What type of attack is enabled by lack of input validation in applications? - answerA.
SQL injection
What program should be used to change a user password? - answerA. passwd
Package repositories are collections of software and source files used by package
management systems to install, update, and remove software on a Linux system. -
answerA. True
In addition to the internal authentication via /etc/passwd and /etc/shadow files, what
services can be used to authenticate users to a Linux host? - answer
GID UID and EUID stand for: - answer
You can use SSH to tunnel and encrypt traffic between a client and a server. - answerA.
True
2003:da3:1637:ffff:ffff:ffff:ffff:ffff is an example of what type of address? - answerB. IPv6
What Linux security feature can be used to log, drop, reject, or alter packets? -
answerA. IPTables
Scripting is a good way to automate manual or time intensive tasks such as backups or
running programs on a scheduled basis or monitoring and checking system settings. -
answerA. True
What tool could you use to monitor current file system activity? - answerA. LSOF
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller Dreamer252. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $14.49. You're not tied to anything after your purchase.