1. Which of the following elements of PKI are found in a browser’s trusted root CA?
A. Private key
B. Symmetric key
C. Recovery key
D. Public key
Answer: D
2. Which of the following protocols only encrypts password packets from client to server?
A. XTACACS
B. TACACS
C. RADIUS
D. TACACS+
Answer: C
3. Where are revoked certificates stored?
A. Recovery agent
B. Registration
C. Key escrow
D. CRL
Answer: D
4. DRPs should contain which of the following?
A. Hierarchical list of non-critical personnel
B. Hierarchical list of critical systems
C. Hierarchical access control lists
D. Identification of single points of failure
Answer: B
5. A system administrator could have a user level account and an administrator account to prevent:
A. password sharing.
B. escalation of privileges.
C. implicit deny.
D. administrative account lockout.
Answer: B
6. Which of the following is the BEST way to mitigate data loss if a portable device is compromised?
A. Full disk encryption
B. Common access card
C. Strong password complexity
D. Biometric authentication
Answer: A
7. Which of the following protocols should be blocked at the network perimeter to prevent host enumeration by sweep devices?
A. HTTPS
B. SSH
C. IPv4
D. ICMP
Answer: D
8. Which of the following is specific to a buffer overflow attack?
A. Memory addressing
B. Directory traversal
C. Initial vector
D. Session cookies
Answer: A
Test4actual provides free SY0-301 demo for you to download, please go to test4actual to get more details.