Computer and Network Security Fundamentals
Comprehensive quiz covering security policies, security models, OS security principles, firewalls, email security, and cryptographic protocols used in network security
Questions
Which of the following characteristics represents that a network removes most of the clues, such as appearance, voice or context by which user recognises acquaintances?
- Efficient
- Reliable
- Scalable
- Anonymit
- Distance
In which of the following security policies, every data item under any level of categorisation will have varying levels of sensitivity such as public, proprietary or internal?
- Commercial security policy
- Security policy
- ProtectedData
- Military security policy
- Multilevel security
Which of the following security techniques is used when a workstation could be vulnerable to malicious code, leakage of personal data stored on the workstation, and vulnerability scans to identify potential weakness?
- Stateful inspection firewall
- Transport layer security
- Personal firewall
- Message integrity check
- Sender authenticity
Which of the following models of security is used as mathematical representation of sensitivity levels, applies to many computing situations?
- Multilevel security model
- Lattice model of access security
- ProtectedMemory
- Military security policy
- Network model
In which of the following principles applied in the design element of OS, the damage from an inadvertent or malicious attack is minimised?
- Separation of privilege
- Ease of use
- Least privilege
- Protection of memory
- Sender authentication
Which of the following protocols describes a specific mechanism for exchanging keys through the definition of various key exchange modes?
- HTTP
- FTP
- OAKLEY
- SMTP
- UDP
Which of the following security features of a trusted operating system, occurs in military security policy where an individual data owner does not decide who has a top secret clearance?
- Discretionary access control
- Authentication of users
- Protection of memory
- Mandatory access control
- Object reuse protection
In which of the following security policies, access is allowed if the object requested belongs to a conflict class that has never before been accessed?
- Chinese wall security policy
- Security policy
- Military security policy
- ProtectedMemory
- Multilevel security
Which of the following models of security is used as the base to design systems that process data with multiple levels of sensitivities?
- Network model
- Bell la padula confidentiality model
- Multilevel security model
- Security policy
- Military security policy
In which of the following security features of operating system, peripheral devices and users must be protected from unauthorised access by the operating system?
- Authentication of users
- Protection of memory
- I/O devices access control
- Output reconciliation control
- Input validation control
In which of the following characteristics of the network, if the dimension of distance is hidden then users can not tell whether a remote host is in the room next door or in a different country?
- Automation
- Opaqueness
- Distance
- Efficient
- Reliable
In which of the following principles applied in the design element of operating system, a conservative designer identifies the items that should be accessible rather than those that should not accessible?
- Separation of privilege
- Ease of use
- Economy of mechanism
- Permission based
- Object reuse protection
In which of the following security features of operating system, one way for a malicious user to gain inappropriate access is to spoof users, making them think that they are communicating with a legitimate security enforcement system?
- Intrusion detection
- Object reuse protection
- Discretionary access control
- Authentication of users
- Trusted path
In which of the following principles applied in the design element of operating system, every access attempt must be checked properly?
- Economy of mechanism
- Separation of privilege
- Complete mediation
- Ease of use
- ProtectedData
Which of the following security techniques can perform the very important service of ensuring the validity of inside addresses?
- Stateful inspection firewall
- Packet filtering gateway
- ProtectedMemory
- Message integrity check
- Transport layer security
Which of the following security techniques is used when a company with multiple offices wants to encrypt the data portion of all email to addresses as its other offices?
- Application proxy
- Stateful inspection firewall
- The certificate scheme
- ProtectedData
- Transport layer security
Which of the following protocol is used when the client may, at any time ask for a change in the existing cryptographic parameters like the handshake key exchange?
- Hyper text transfer protocol
- File transfer protocol
- Change CipherSpec protocol
- Simple mail transfer protocol
- User datagram protocol
Which of the following security standards is used to generate a session key at random, and uses the session key to encrypt the message?
- The certificate scheme
- Pretty good privacy
- Stateful inspection firewall
- Non repudiation
- Transport layer security
Which of the following is a protocol for initial authentication and transfer of encryption keys?
- SSL handshake protocol
- File transfer protocol
- Simple mail transfer protocol
- User datagram protocol
- Simple network management protocol
Which of the following security features of trusted OS provides a change to the central access control database affecting all subsequent accesses?
- Intercrosses communication
- Discretionary access control
- Object reuse protection
- Authentication of user
- Accountability and audit
Which of the following security standards is used to secure email attachment, handle all types of attachments, such as sound, presentation, graphics, etc?
- Secure multipurpose internet mail extension
- Stateful inspection firewall
- The certificate scheme
- Message confidentiality
- Transport layer security
Which of the following protocols describes a different key exchange mechanism than OAKLEY, such as public key encryption and fast rekeying?
- UDP
- FTP
- SMTP
- SKEME
- SNMP
Which of the following security mechanisms is a dynamic and automated scheme, which enables secure transaction between a vendor and a customer over the internet?
- Transport layer security
- Secure electronic transaction
- Message integrity check
- Non repudiation
- Stateful inspection firewall
Which of the following modes of operation is used when a security association is made between two IPSec gateways?
- Transport mode
- Dedicated mode
- Shared mode
- Exclusive mode
- Tunnel mode
To prevent introduction of viruses in files, a company will first pass all incoming files through a virus scanner. This activity is achieved by which of the following security techniques?
- Stateful inspection firewall
- Message integrity check
- ProtectedData
- Transport layer security
- Guard