2024 1D0-671 Question Bank Free PDF Download Recently Updated Questions [Q35-Q52]

Share

2024 1D0-671 Question Bank: Free PDF Download Recently Updated Questions

1D0-671 Certification Exam Dumps with 126 Practice Test Questions

NEW QUESTION # 35
What is the term for a self-replicating program or algorithm that consumes system resources?

  • A. Worm
  • B. Trojan
  • C. Root kit
  • D. Illicit server

Answer: A


NEW QUESTION # 36
Which of the following accurately describes an aspect of an access control list (ACL)?

  • A. The ACL defines users that have access to a resource on a database server.
  • B. The ACL cannot determine whether a user has access to an object, but can define exactly what the user can do with that object.
  • C. The ACL lists entities that can access a database server, but does not provide access levels.
  • D. The ACL defines the database roles that users have on a database server.

Answer: D


NEW QUESTION # 37
Which security management concept is the ability for a department to accurately determine the costs of using various networking security services?

  • A. Chargeback
  • B. Performance management
  • C. Amortization
  • D. Capacity forecasting

Answer: A


NEW QUESTION # 38
Which of the following is most likely to address a problem with an operating system's ability to withstand an attack that attempts to exploit a buffer overflow?

  • A. Firewall
  • B. Intrusion detection system
  • C. Network scanner
  • D. Software update

Answer: D


NEW QUESTION # 39
Which step in security policy implementation ensures that security policy will change as technology advances?

  • A. Log, test and evaluate.
  • B. Publish the security policy.
  • C. Secure each resource and service.
  • D. Repeat the process and keep current.

Answer: D


NEW QUESTION # 40
Consider the following diagram:
Which of the following best describes the protocol activity shown in the diagram, along with the most likely potential threat that accompanies this protocol?

  • A. The SIP three-way handshake, with the threat of a buffer overflow
  • B. The ICMP Time Exceeded message, with the threat of a denial-of-service attack
  • C. The DNS name query, with the threat of cache poisoning
  • D. The TCP three-way handshake, with the threat of a man-in-the-middle attack

Answer: D


NEW QUESTION # 41
A distributed denial-of-service (DDOS) attack has occurred where both ICMP and TCP packets have crashed the company's Web server.
Which of the following techniques will best help reduce the severity of this attack?

  • A. Installing Apache Server rather than Microsoft IIS
  • B. Filtering traffic at the firewall
  • C. Placing the database and the Web server on separate systems
  • D. Changing your ISP

Answer: B


NEW QUESTION # 42
Which of the following is a typical target of a trojan on a Linux system?

  • A. Kernel modules
  • B. Shared libraries
  • C. System32 DLL files
  • D. Boot sector files

Answer: A


NEW QUESTION # 43
At the beginning of an IPsec session, which activity occurs during the Internet Key Exchange (IKE)?

  • A. Negotiating the version of IP to be used
  • B. Determining the network identification number
  • C. Determining the number of security associations
  • D. Negotiating the authentication method

Answer: D


NEW QUESTION # 44
Which of the following is a common problem with proxy servers?

  • A. Proxy servers may return old cached information.
  • B. Because proxy servers do not mask network resources, hackers may be able to access all exposed systems.
  • C. Proxy servers do not log incoming and outgoing access, so you will not be able to see details of successful and failed connections.
  • D. Proxy servers cannot filter out specific application-layer traffic.

Answer: A


NEW QUESTION # 45
Which of the following will best help you ensure a database server can withstand a recently discovered vulnerability?

  • A. Reconfiguring the firewall
  • B. Adding a buffer overflow rule to the intrusion detection system
  • C. Updating the company vulnerability scanner and conducting a new scan
  • D. Installing a system update

Answer: D


NEW QUESTION # 46
Which of the following organizations provides regular updates concerning security breaches and issues?

  • A. CERT
  • B. ISO
  • C. ICANN
  • D. IETF

Answer: A


NEW QUESTION # 47
What is the primary drawback of using symmetric-key encryption?

  • A. Key transport across a network
  • B. Denial-of-service attacks
  • C. Inability to support convergence traffic
  • D. Speed of encryption

Answer: A


NEW QUESTION # 48
You have determined that an attack is currently underway on your database server. An attacker is currently logged in, modifying data. You want to preserve logs, caching and other data on this affected server.
Which of the following actions will best allow you to stop the attack and still preserve data?

  • A. Back up the system logs
  • B. Pull the server network cable
  • C. Force an instant password reset
  • D. Shut down the server

Answer: B


NEW QUESTION # 49
Which term describes a dedicated system meant only to house firewall software?

  • A. Kernel firewall
  • B. Virtual Private Network (VPN)
  • C. Firewall appliance
  • D. Proxy server

Answer: C


NEW QUESTION # 50
Requests for Web-based resources have become unacceptably slow. You have been assigned to implement a solution that helps solve this problem.
Which of the following would you recommend?

  • A. Enable authentication on the network proxy server
  • B. Enable stateful multi-layer inspection on the packet filter
  • C. Implement a screening router on the network DMZ
  • D. Implement caching on the network proxy server

Answer: D


NEW QUESTION # 51
Which of the following is the simplest, most common firewall design?

  • A. A screening router
  • B. A screened subnet
  • C. A single-homed bastion host
  • D. A dual-homed bastion host

Answer: A


NEW QUESTION # 52
......

New 1D0-671 Exam Dumps with High Passing Rate: https://www.actual4labs.com/CIW/1D0-671-actual-exam-dumps.html

Contact Us

If you have any question please leave me your email address, we will reply and send email to you in 12 hours.

Our Working Time: ( GMT 0:00-15:00 )
From Monday to Saturday

Support: Contact now