显示标签为“JK0-018”的博文。显示所有博文
显示标签为“JK0-018”的博文。显示所有博文

2014年2月24日星期一

CompTIA JK0-018 CA1-001 SY0-301 JK0-U21認定試験の準備を十分に完了したのか

人間はそれぞれ夢を持っています。適当な方法を採用する限り、夢を現実にすることができます。JPexamのCompTIAのJK0-018 CA1-001 SY0-301 JK0-U21試験トレーニング資料を利用したら、CompTIAのJK0-018 CA1-001 SY0-301 JK0-U21認定試験に合格することができるようになります。どうしてですかと質問したら、JPexamのCompTIAのJK0-018 CA1-001 SY0-301 JK0-U21試験トレーニング資料はIT認証に対する最高のトレーニング資料ですから。その資料は最完全かつ最新で、合格率が非常に高いということで人々に知られています。それを持っていたら、あなたは時間とエネルギーを節約することができます。JPexamを利用したら、あなたは楽に試験に受かることができます。

CompTIAのJK0-018 CA1-001 SY0-301 JK0-U21認定試験はIT職員が欠くことができない認証です。IT職員のキャリアと関連しますから。 CompTIAのJK0-018 CA1-001 SY0-301 JK0-U21試験トレーニング資料は受験生の皆さんが必要とした勉強資料です。JPexamのトレーニング資料は受験生が一番ほしい唯一なトレーニング資料です。JPexamのCompTIAのJK0-018 CA1-001 SY0-301 JK0-U21試験トレーニング資料を手に入れたら、試験に合格することができるようになります。

試験番号:JK0-018問題集
試験科目:CompTIA Security+ E2C (2011 Edition)
最近更新時間:2014-02-24
問題と解答:全794問
100%の返金保証。1年間の無料アップデート。

試験番号:CA1-001問題集
試験科目:CompTIA Advanced Security Practitioner (CASP) Beta Exam
最近更新時間:2014-02-24
問題と解答:全208問
100%の返金保証。1年間の無料アップデート。

試験番号:SY0-301問題集
試験科目:Security+ Certification Exam 2011 version
最近更新時間:2014-02-24
問題と解答:全587問
100%の返金保証。1年間の無料アップデート。

試験番号:JK0-U21問題集
試験科目:CompTIA Strata Fundamentals of PC Technology Exam
最近更新時間:2014-02-24
問題と解答:全241問
100%の返金保証。1年間の無料アップデート。

今競争の激しいIT業界で地位を固めたいですが、CompTIA JK0-018 CA1-001 SY0-301 JK0-U21認証試験に合格しなければなりません。IT業界ではさらに強くなるために強い専門知識が必要です。CompTIA JK0-018 CA1-001 SY0-301 JK0-U21認証試験に合格することが簡単ではなくて、CompTIA JK0-018 CA1-001 SY0-301 JK0-U21証明書は君にとってはIT業界に入るの一つの手づるになるかもしれません。しかし必ずしも大量の時間とエネルギーで復習しなくて、弊社が丹精にできあがった問題集を使って、試験なんて問題ではありません。

チャンスは常に準備ができあがった者に属します。しかし、我々に属する成功の機会が来たとき、それをつかむことができましたか。CompTIAのJK0-018 CA1-001 SY0-301 JK0-U21認定試験を受験するために準備をしているあなたは、JPexamという成功できるチャンスを掴みましたか。JPexamのJK0-018 CA1-001 SY0-301 JK0-U21問題集はあなたが楽に試験に合格する保障です。この問題集は大量な時間を節約させ、効率的に試験に準備させることができます。JPexamの練習資料を利用すれば、あなたはこの資料の特別と素晴らしさをはっきり感じることができます。この問題集は間違いなくあなたの成功への近道で、あなたが十分にJK0-018 CA1-001 SY0-301 JK0-U21試験を準備させます。

君はまずネットで無料なCompTIAのJK0-018 CA1-001 SY0-301 JK0-U21試験問題をダウンロードしてから 弊社の品質を確信してから、購入してください。JPexamは提供した商品は君の成功を全力で助けさしたげます。

購入前にお試し,私たちの試験の質問と回答のいずれかの無料サンプルをダウンロード:http://www.jpexam.com/SY0-301_exam.html

NO.1 Which of the following BEST describes a software vulnerability that is actively being used by Sara and
Jane, attackers, before the vendor releases a protective patch or update?
A. Buffer overflow
B. IV attack
C. Zero day attack
D. LDAP injection
Answer: C

CompTIA認定試験   SY0-301認定試験   SY0-301   SY0-301

NO.2 Which of the following is similar to a smurf attack, but uses UDP instead to ICMP?
A. X-Mas attack
B. Fraggle attack
C. Vishing
D. Man-in-the-middle attack
Answer: B

CompTIA   SY0-301   SY0-301認証試験   SY0-301   SY0-301

NO.3 Which of the following encrypts the body of a packet, rather than just the password, while sending
information?
A. LDAP
B. TACACS+
C. ACLs
D. RADIUS
Answer: B

CompTIA   SY0-301   SY0-301練習問題   SY0-301   SY0-301参考書

NO.4 A computer is put into a restricted VLAN until the computer's virus definitions are up-to-date. Which of
the following BEST describes this system type?
A. NAT
B. NIPS
C. NAC
D. DMZ
Answer: C

CompTIA認証試験   SY0-301   SY0-301参考書   SY0-301問題集   SY0-301

NO.5 A company is performing internal security audits after a recent exploitation on one of their proprietary
applications. Sara, the security auditor, is given the workstation with limited documentation regarding the
application installed for the audit. Which of the following types of testing methods is this?
A. Sandbox
B. White box
C. Black box
D. Gray box
Answer: D

CompTIA   SY0-301   SY0-301   SY0-301参考書   SY0-301

NO.6 Which of the following BEST allows Pete, a security administrator, to determine the type, source, and
flags of the packet traversing a network for troubleshooting purposes?
A. Switches
B. Protocol analyzers
C. Routers
D. Web security gateways
Answer: B

CompTIA   SY0-301過去問   SY0-301認定証   SY0-301   SY0-301

NO.7 The fundamental information security principals include confidentiality, availability and which of the
following?
A. The ability to secure data against unauthorized disclosure to external sources
B. The capacity of a system to resist unauthorized changes to stored information
C. The confidence with which a system can attest to the identity of a user
D. The characteristic of a system to provide uninterrupted service to authorized users
Answer: B

CompTIA   SY0-301認定試験   SY0-301   SY0-301

NO.8 A company has sent all of its private keys to a third party. The third party company has created a
secure list of these keys. Which of the following has just been implemented?
A. Key escrow
B. CRL
C. CA
D. Recovery agent
Answer: A

CompTIA認証試験   SY0-301   SY0-301練習問題   SY0-301   SY0-301認定資格   SY0-301

NO.9 Pete, a security administrator, wants to secure remote telnet services and decides to use the services
over SSH. Which of the following ports should Pete allow on the firewall by default?
A. 21
B. 22
C. 23
D. 25
Answer: B

CompTIA問題集   SY0-301参考書   SY0-301   SY0-301練習問題   SY0-301

NO.10 Which of the following inspects traffic entering or leaving a network to look for anomalies against
expected baselines?
A. IPS
B. Sniffers
C. Stateful firewall
D. Stateless firewall
Answer: A

CompTIA練習問題   SY0-301   SY0-301認定資格   SY0-301   SY0-301過去問

NO.11 Which of the following accurately describes the STRONGEST multifactor authentication?
A. Something you are, something you have
B. Something you have, something you know
C. Something you are near to, something you have
D. Something you have, someone you know
Answer: A

CompTIA認証試験   SY0-301認証試験   SY0-301認定証   SY0-301練習問題

NO.12 Sara, an IT administrator, wants to protect a cluster of servers in a DMZ from zero day attacks. Which
of the following would provide the BEST level of protection?
A. NIPS
B. NIDS
C. ACL
D. Antivirus
Answer: A

CompTIA   SY0-301過去問   SY0-301問題集   SY0-301参考書   SY0-301   SY0-301

NO.13 Sara, a security analyst, discovers which operating systems the client devices on the network are
running by only monitoring a mirror port on the router. Which of the following techniques did Sara use?
A. Active fingerprinting
B. Passive finger printing
C. Protocol analyzing
D. Network enumerating
Answer: B

CompTIA過去問   SY0-301   SY0-301認証試験

NO.14 Which of the following is an example of a false negative?
A. The IDS does not identify a buffer overflow
B. Anti-virus identifies a benign application as malware.
C. Anti-virus protection interferes with the normal operation of an application.
D. A user account is locked out after the user mistypes the password too many times.
Answer: A

CompTIA認定証   SY0-301   SY0-301練習問題   SY0-301練習問題

NO.15 Which of the following is the BEST solution to securely administer remote servers?
A. SCP
B. SSH
C. Telnet
D. SFTP
Answer: B

CompTIA   SY0-301問題集   SY0-301

NO.16 Sara and Jane, users, are reporting an increase in the amount of unwanted email that they are receiving
each day.
Which of the following would be the BEST way to respond to this issue without creating a lot of
administrative overhead.?
A. Deploy an anti-spam device to protect the network.
B. Update the anti-virus definitions and make sure that it is set to scan all received email
C. Set up spam filtering rules in each user's mail client.
D. Change the firewall settings to block SMTP relays so that the spam cannot get in.
Answer: A

CompTIA   SY0-301認証試験   SY0-301練習問題

NO.17 Which of the following authentication protocols forces centralized wireless authentication?
A. WPA2-Personal
B. WPA2-Enterprise
C. WPA2-CCMP
D. WPA2-TKIP
Answer: B

CompTIA   SY0-301認証試験   SY0-301認定試験   SY0-301認定資格   SY0-301   SY0-301

NO.18 Which of the following is a valid server-role in a Kerberos authentication system?
A. Token issuing system
B. Security assertion server
C. Authentication agent
D. Ticket granting server
Answer: D

CompTIA   SY0-301認定証   SY0-301   SY0-301

NO.19 Which of the following risks could IT management be mitigating by removing an all-in-one device?
A. Continuity of operations
B. Input validation
C. Single point of failure
D. Single sign on
Answer: C

CompTIA   SY0-301   SY0-301過去問   SY0-301認定資格

NO.20 Social networking sites are used daily by the marketing team for promotional purposes. However,
confidential company information, including product pictures and potential partnerships, have been
inadvertently exposed to the public by dozens of employees using social networking sites. Which of
following is the BEST response to mitigate this threat with minimal company disruption?
A. Mandate additional security awareness training for all employees.
B. Report each employee to Human Resources for termination for violation of security policies
C. Implement a data loss prevention program to filter email.
D. Block access to social networking sites from the corporate network
Answer: A

CompTIA   SY0-301   SY0-301   SY0-301認定試験

2014年1月4日星期六

CompTIA JK0-018認定試験は一層人気があるようになった

JPexamがもっと早くCompTIAのJK0-018認証試験に合格させるサイトで、CompTIAのJK0-018認証試験についての問題集が市場にどんどん湧いてきます。JPexamを選択したら、成功をとりましょう。

JPexamの商品は100%の合格率を保証いたします。JPexamはITに対応性研究続けて、高品質で低価格な問題集が開発いたしました。JPexamの商品の最大の特徴は20時間だけ育成課程を通して楽々に合格できます。

試験番号:JK0-018問題集
試験科目:CompTIA Security+ E2C (2011 Edition)
最近更新時間:2014-01-04
問題と解答:全794問
100%の返金保証。1年間の無料アップデート。

JPexamのシニア専門家チームはCompTIAのJK0-018試験に対してトレーニング教材を研究できました。JPexamが提供した教材を勉強ツルとしてCompTIAのJK0-018認定試験に合格するのはとても簡単です。JPexamも君の100%合格率を保証いたします。

君はまだCompTIA JK0-018認証試験を通じての大きい難度が悩んでいますか? 君はまだCompTIA JK0-018認証試験に合格するために寝食を忘れて頑張って復習しますか? 早くてCompTIA JK0-018認証試験を通りたいですか?JPexamを選択しましょう!JPexamはきみのIT夢に向かって力になりますよ。

購入前にお試し,私たちの試験の質問と回答のいずれかの無料サンプルをダウンロード:http://www.jpexam.com/JK0-018_exam.html

NO.1 A new enterprise solution is currently being evaluated due to its potential to increase the company's
profit margins. The security administrator has been asked to review its security implications. While
evaluating the product, various vulnerability scans were performed. It was determined that the product is
not a threat but has the potential to introduce additional vulnerabilities. Which of the following assessment
types should the security administrator also take into consideration while evaluating this product?
A. Threat assessment
B. Vulnerability assessment
C. Code assessment
D. Risk assessment
Answer: D

CompTIA認証試験   JK0-018   JK0-018   JK0-018

NO.2 Which of the following methods of access, authentication, and authorization is the MOST secure
by default?
A. Kerberos
B. TACACS
C. RADIUS
D. LDAP
Answer: A

CompTIA   JK0-018過去問   JK0-018問題集   JK0-018問題集   JK0-018認証試験

NO.3 DRPs should contain which of the following?
A. Hierarchical list of non-critical personnel
B. Hierarchical list of critical systems
C. Hierarchical access control lists
D. Identification of single points of failure
Answer: B

CompTIA   JK0-018   JK0-018認定証   JK0-018

NO.4 Which of the following protocols only encrypts password packets from client to server.?
A. XTACACS
B. TACACS
C. RADIUS
D. TACACS+
Answer: C

CompTIA問題集   JK0-018練習問題   JK0-018認定証

NO.5 With which of the following is RAID MOST concerned?
A. Integrity
B. Confidentiality
C. Availability
D. Baselining
Answer: C

CompTIA   JK0-018   JK0-018   JK0-018練習問題   JK0-018   JK0-018

NO.6 Which of the following should a security administrator implement to prevent users from disrupting
network connectivity, if a user connects both ends of a network cable to different switch ports?
A. VLAN separation
B. Access control
C. Loop protection
D. DMZ
Answer: C

CompTIA   JK0-018   JK0-018   JK0-018練習問題

NO.7 A system administrator could have a user level account and an administrator account to prevent:
A. password sharing.
B. escalation of privileges.
C. implicit deny.
D. administrative account lockout.
Answer: B

CompTIA   JK0-018   JK0-018問題集

NO.8 WEP is seen as an unsecure protocol based on its improper use of which of the following?
A. RC6
B. RC4
C. 3DES
D. AES
Answer: B

CompTIA   JK0-018   JK0-018   JK0-018

NO.9 Which of the following is the BEST way to mitigate data loss if a portable device is compromised?
A. Full disk encryption
B. Common access card
C. Strong password complexity
D. Biometric authentication
Answer: A

CompTIA問題集   JK0-018   JK0-018参考書   JK0-018

NO.10 Which of the following asymmetric encryption keys is used to encrypt data to ensure only the intended
recipient can decrypt the ciphertext?
A. Private
B. Escrow
C. Public
D. Preshared
Answer: C

CompTIA   JK0-018認証試験   JK0-018認定証

NO.11 Which of the following should be performed if a smartphone is lost to ensure no data can be retrieved
from it?
A. Device encryption
B. Remote wipe
C. Screen lock
D. GPS tracking
Answer: B

CompTIA   JK0-018問題集   JK0-018   JK0-018

NO.12 In an 802.11n network, which of the following provides the MOST secure method of both encryption
and authorization?
A. WEP with 802.1x
B. WPA Enterprise
C. WPA2-PSK
D. WPA with TKIP
Answer: B

CompTIA   JK0-018問題集   JK0-018認定証   JK0-018

NO.13 Which of the following protocols should be blocked at the network perimeter to prevent host
enumeration by sweep devices?
A. HTTPS
B. SSH
C. IPv4
D. ICMP
Answer: D

CompTIA   JK0-018認証試験   JK0-018   JK0-018

NO.14 Centrally authenticating multiple systems and applications against a federated user database is an
example of:
A. smart card.
B. common access card.
C. single sign-on.
D. access control list.
Answer: C

CompTIA参考書   JK0-018   JK0-018認定資格   JK0-018認定試験

NO.15 Which of the following is specific to a buffer overflow attack?
A. Memory addressing
B. Directory traversal
C. Initial vector
D. Session cookies
Answer: C

CompTIA参考書   JK0-018練習問題   JK0-018練習問題   JK0-018   JK0-018問題集

NO.16 Where are revoked certificates stored?
A. Recovery agent
B. Registration
C. Key escrow
D. CRL
Answer: D

CompTIA認定試験   JK0-018練習問題   JK0-018認定証

NO.17 Which of the following reduces the likelihood of a single point of failure when a server fails?
A. Clustering
B. Virtualization
C. RAID
D. Cold site
Answer: A

CompTIA   JK0-018認証試験   JK0-018

NO.18 Which of the following facilitates computing for heavily utilized systems and networks?
A. Remote access
B. Provider cloud
C. VPN concentrator
D. Telephony
Answer: B

CompTIA認定資格   JK0-018   JK0-018

NO.19 Which of the following elements of PKI are found in a browser's trusted root CA?
A. Private key
B. Symmetric key
C. Recovery key
D. Public key
Answer: D

CompTIA   JK0-018   JK0-018認定試験   JK0-018認定試験   JK0-018認定資格

NO.20 Which of the following requires special handling and explicit policies for data retention and data
distribution?
A. Personally identifiable information
B. Phishing attacks
C. Zero day exploits
D. Personal electronic devices
Answer: A

CompTIA過去問   JK0-018   JK0-018

JPexamは最新の646-206問題集と高品質の70-461問題と回答を提供します。JPexamのLOT-440 VCEテストエンジンと1D0-610試験ガイドはあなたが一回で試験に合格するのを助けることができます。高品質のC_TADM51_70 PDFトレーニング教材は、あなたがより迅速かつ簡単に試験に合格することを100%保証します。試験に合格して認証資格を取るのはそのような簡単なことです。

記事のリンク:http://www.jpexam.com/JK0-018_exam.html

2013年8月5日星期一

The Best CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 Exam Training materials

CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 is one of the important certification exams. IT-Tests's experienced IT experts through their extensive experience and professional IT expertise have come up with IT certification exam study materials to help people pass CompTIA Certification JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam successfully. IT-Tests's providing learning materials can not only help you 100% pass the exam, but also provide you a free one-year update service.


In the recent few years, CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam certification have caused great impact to many people. But the key question for the future is that how to pass the CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam more effectively. The answer of this question is to use IT-Tests.com's CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam training materials, and with it you can pass your exams. So what are you waiting for? Go to buy IT-Tests.com's CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam training materials please, and with it you can get more things what you want.


Someone asked, where is success? Then I tell you, success is in IT-Tests.com. Select IT-Tests.com is to choose success. IT-Tests.com's CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam training materials can help all candidates to pass the IT certification exam. Through the use of a lot of candidates, IT-Tests.com's CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam training materials is get a great response aroud candidates, and to establish a good reputation. This is turn out that select IT-Tests.com's CompTIA JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam training materials is to choose success.


Exam Code: JK0-018

Exam Name: CompTIA (CompTIA Security+ E2C (2011 Edition))

Exam Code: CA1-001

Exam Name: CompTIA (CompTIA Advanced Security Practitioner (CASP) Beta Exam)

Exam Code: SY0-301

Exam Name: CompTIA (Security+ Certification Exam 2011 version)

Exam Code: JK0-017

Exam Name: CompTIA (CompTIA E2C Project+ Certification Exam)

Exam Code: CN0-201

Exam Name: CompTIA (CompTIA CTP+ Certification Exam)

If you want to choose passing CompTIA certification JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam to make yourself have a more stable position in today's competitive IT area and the professional ability become more powerful, you must have a strong expertise. And passing CompTIA certification JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam is not very simple. Perhaps passing CompTIA certification JK0-018 CA1-001 SY0-301 JK0-017 CN0-201 exam is a stepping stone to promote yourself in the IT area, but it doesn't need to spend a lot of time and effort to review the relevant knowledge, you can choose to use our IT-Tests.com product, a training tool prepared for the IT certification exams.


SY0-301 (Security+ Certification Exam 2011 version) Free Demo Download: http://www.it-tests.com/SY0-301.html


NO.1 Which of the following risks could IT management be mitigating by removing an all-in-one device?
A. Continuity of operations
B. Input validation
C. Single point of failure
D. Single sign on
Answer: C

CompTIA exam   SY0-301 pdf   SY0-301 study guide   SY0-301 original questions   SY0-301

NO.2 Which of the following accurately describes the STRONGEST multifactor authentication?
A. Something you are, something you have
B. Something you have, something you know
C. Something you are near to, something you have
D. Something you have, someone you know
Answer: A

CompTIA   SY0-301 study guide   SY0-301 braindump   SY0-301 exam prep   SY0-301 questions

NO.3 Pete, a security administrator, wants to secure remote telnet services and decides to use the services
over SSH. Which of the following ports should Pete allow on the firewall by default?
A. 21
B. 22
C. 23
D. 25
Answer: B

CompTIA study guide   SY0-301   SY0-301 practice test   SY0-301   SY0-301

NO.4 Sara, an IT administrator, wants to protect a cluster of servers in a DMZ from zero day attacks. Which
of the following would provide the BEST level of protection?
A. NIPS
B. NIDS
C. ACL
D. Antivirus
Answer: A

CompTIA exam   SY0-301 answers real questions   SY0-301 dumps   SY0-301

NO.5 Which of the following is a valid server-role in a Kerberos authentication system?
A. Token issuing system
B. Security assertion server
C. Authentication agent
D. Ticket granting server
Answer: D

CompTIA   SY0-301   SY0-301   SY0-301 braindump   SY0-301   SY0-301 answers real questions

NO.6 Which of the following inspects traffic entering or leaving a network to look for anomalies against
expected baselines?
A. IPS
B. Sniffers
C. Stateful firewall
D. Stateless firewall
Answer: A

CompTIA   SY0-301 test questions   SY0-301   SY0-301 demo

NO.7 A computer is put into a restricted VLAN until the computer's virus definitions are up-to-date. Which of
the following BEST describes this system type?
A. NAT
B. NIPS
C. NAC
D. DMZ
Answer: C

CompTIA   SY0-301   SY0-301 test answers   SY0-301

NO.8 Which of the following authentication protocols forces centralized wireless authentication?
A. WPA2-Personal
B. WPA2-Enterprise
C. WPA2-CCMP
D. WPA2-TKIP
Answer: B

CompTIA   SY0-301   SY0-301   SY0-301

NO.9 The fundamental information security principals include confidentiality, availability and which of the
following?
A. The ability to secure data against unauthorized disclosure to external sources
B. The capacity of a system to resist unauthorized changes to stored information
C. The confidence with which a system can attest to the identity of a user
D. The characteristic of a system to provide uninterrupted service to authorized users
Answer: B

CompTIA   SY0-301 questions   SY0-301 demo

NO.10 Sara and Jane, users, are reporting an increase in the amount of unwanted email that they are receiving
each day.
Which of the following would be the BEST way to respond to this issue without creating a lot of
administrative overhead.?
A. Deploy an anti-spam device to protect the network.
B. Update the anti-virus definitions and make sure that it is set to scan all received email
C. Set up spam filtering rules in each user's mail client.
D. Change the firewall settings to block SMTP relays so that the spam cannot get in.
Answer: A

CompTIA demo   SY0-301 original questions   SY0-301 exam simulations

NO.11 Which of the following is the BEST solution to securely administer remote servers?
A. SCP
B. SSH
C. Telnet
D. SFTP
Answer: B

CompTIA   SY0-301 study guide   SY0-301 certification training

NO.12 Which of the following encrypts the body of a packet, rather than just the password, while sending
information?
A. LDAP
B. TACACS+
C. ACLs
D. RADIUS
Answer: B

CompTIA demo   SY0-301   SY0-301   SY0-301

NO.13 Which of the following BEST describes a software vulnerability that is actively being used by Sara and
Jane, attackers, before the vendor releases a protective patch or update?
A. Buffer overflow
B. IV attack
C. Zero day attack
D. LDAP injection
Answer: C

CompTIA   SY0-301 exam prep   SY0-301 test

NO.14 Which of the following is an example of a false negative?
A. The IDS does not identify a buffer overflow
B. Anti-virus identifies a benign application as malware.
C. Anti-virus protection interferes with the normal operation of an application.
D. A user account is locked out after the user mistypes the password too many times.
Answer: A

CompTIA braindump   SY0-301 original questions   SY0-301   SY0-301   SY0-301

NO.15 Social networking sites are used daily by the marketing team for promotional purposes. However,
confidential company information, including product pictures and potential partnerships, have been
inadvertently exposed to the public by dozens of employees using social networking sites. Which of
following is the BEST response to mitigate this threat with minimal company disruption?
A. Mandate additional security awareness training for all employees.
B. Report each employee to Human Resources for termination for violation of security policies
C. Implement a data loss prevention program to filter email.
D. Block access to social networking sites from the corporate network
Answer: A

CompTIA certification training   SY0-301   SY0-301   SY0-301

NO.16 A company has sent all of its private keys to a third party. The third party company has created a
secure list of these keys. Which of the following has just been implemented?
A. Key escrow
B. CRL
C. CA
D. Recovery agent
Answer: A

CompTIA exam prep   SY0-301 test answers   SY0-301 exam prep   SY0-301 exam prep

NO.17 Which of the following is similar to a smurf attack, but uses UDP instead to ICMP?
A. X-Mas attack
B. Fraggle attack
C. Vishing
D. Man-in-the-middle attack
Answer: B

CompTIA pdf   SY0-301   SY0-301 practice test   SY0-301

NO.18 Which of the following BEST allows Pete, a security administrator, to determine the type, source, and
flags of the packet traversing a network for troubleshooting purposes?
A. Switches
B. Protocol analyzers
C. Routers
D. Web security gateways
Answer: B

CompTIA answers real questions   SY0-301   SY0-301

NO.19 Sara, a security analyst, discovers which operating systems the client devices on the network are
running by only monitoring a mirror port on the router. Which of the following techniques did Sara use?
A. Active fingerprinting
B. Passive finger printing
C. Protocol analyzing
D. Network enumerating
Answer: B

CompTIA demo   SY0-301 practice test   SY0-301 demo

NO.20 A company is performing internal security audits after a recent exploitation on one of their proprietary
applications. Sara, the security auditor, is given the workstation with limited documentation regarding the
application installed for the audit. Which of the following types of testing methods is this?
A. Sandbox
B. White box
C. Black box
D. Gray box
Answer: D

CompTIA   SY0-301   SY0-301   SY0-301