4.3 Network Security Features/Techniques Flashcards

(13 cards)

1
Q

Device Hardening

A

The process of securing a system by reducing its surface of vulnerability (e.g., patching, disabling unneeded services).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Disable Unused Ports/Services

A

A hardening technique where non-essential logical ports (e.g., Telnet, HTTP) and physical switch ports are shut down to prevent unauthorized access.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Change Default Passwords

A

The most basic hardening step; prevents attackers from using factory-set credentials found in online manuals.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Network Access Control (NAC)

A

A set of solutions that inspects a device’s ‘health’ (antivirus status, patches) before allowing it onto the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Port Security

A

A switch feature that limits the number of MAC addresses allowed on a single port; can disable the port if an unauthorized device is plugged in.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

802.1X

A

A port-based authentication protocol that requires a user to provide credentials (usually to a RADIUS server) before the switch port opens.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

MAC Filtering

A

A security method that only allows specific, pre-approved MAC addresses to connect to a switch or wireless AP; easily spoofed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Key Management

A

The practice of securely generating, storing, and rotating cryptographic keys (used for VPNs, TLS, and SSH).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Access Control List (ACL)

A

A set of rules on a router or firewall that permits or denies traffic based on IP address, protocol, or port number.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

URL Filtering

A

A security feature that blocks access to specific websites based on their web address (URL) or domain name.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Content Filtering

A

A security feature that inspects the actual data inside a web page (keywords, categories) to block inappropriate or malicious material.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Trusted vs. Untrusted Zones

A

Trusted zones are internal networks you control (LAN); Untrusted zones are external networks you don’t control (Internet).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Screened Subnet (DMZ)

A

A semi-private zone located between the internal network and the internet; holds public-facing servers like Web, Mail, or DNS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly