考试号:SY0-201
认证名称:CompTIA Security+(2008 Edition) Exam
版本号:V8.02
考题数量:469道
更新日期:2010-5-15
1. Which of the following BEST describes using a third party to store the public and private keys?
A. Public key infrastructure
B. Recovery agent
C. Key escrow
D. Registration authority
Answer: C
2. All of the following can be found in the document retention policy EXCEPT:
A. type of storage media.
B. password complexity rules.
C. physical access controls.
D. retention periods.
Answer: B
3. An instance where a biometric system identifies users that are authorized and allows them access is called which of the following?
A. False negative
B. True negative
C. False positive
D. True positive
Answer: D
4. Which of the following can be used to encrypt FTP or telnet credentials over the wire?
A. SSH
B. HTTPS
C. SHTTP
D. S/MIME
Answer: A
5. Classification of information is critical to information security because it:
A. defines what information should have the highest protection.
B. demonstrates that the company is using discretionary access control (DAC).
C. allows a company to share top secret information.
D. is a requirement for service level agreements (SLA).
Answer: A
6. A company takes orders exclusively over the Internet. Customers submit orders via a web-based application running on the external web server which is located on Network A. Warehouse employees use an internal application, on its own server, to pick and ship orders, located on Network B. Any changes made after the order is placed are handled by a customer service representative using the same internal application. All information is stored in a database, which is also located on Network B.
The company uses these four sets of user rights:
- NONE
- ADD (read existing data, write new data)
- CHANGE (read, write and change existing data)
- READ (read existing data)
The company has 2 different network zones:
- Network A, the DMZ, a public accessible network
- Network B, the internal LAN, accessible from company systems only
The company wants to restrict warehouse employee access. Which of the following permissions is the MOST appropriate for the warehouse employees?
A. READ on Network B, NONE on Network A
B. ADD on Network A, NONE on Network B
C. CHANGE on Network A, ADD on Network B
D. READ on Network A and B
Answer: A
下载更多的题库,可登陆killtest题库网!