ITIL SCNP - SCNP Strategic Infrastructure Security Exam
Page: 3 / 47
Total 233 questions
Question #11 (Topic: Topic 1)
Attackers have the ability to use programs that are able to reveal local passwords by
placing some kind of a pointer/cursor over the asterisks in a program's password field. The
reason that such tools can uncover passwords in some Operating Systems is because:
placing some kind of a pointer/cursor over the asterisks in a program's password field. The
reason that such tools can uncover passwords in some Operating Systems is because:
A. the passwords are simply masked with asterisks
B. the etc/passwd file is on a FAT32 partition
C. the passwords are decrypted on screen
D. the password text is stored in ASCII format
E. the etc/passwd file is on a FAT16 partition
Answer: A
Question #12 (Topic: Topic 1)
To maintain the security of your network you routinely run several checks of the network
and computers.
Often you use the built-in tools, such as netstat. If you run the following command: netstat
e which of the following will be the result?
and computers.
Often you use the built-in tools, such as netstat. If you run the following command: netstat
e which of the following will be the result?
A. Displays all connections and listening ports
B. Displays Ethernet statistics
C. Displays addresses and port numbers in numerical form
D. Shows connections for the protocol specified
E. Displays per-protocol statistics
Answer: B
Question #13 (Topic: Topic 1)
You have become the lead security professional for a mid-sized organization. You are
currently studying DNS issues, and configuration options. You come across the concepts of
DNS Spoofing, and investigate more. What is DNS Spoofing?
currently studying DNS issues, and configuration options. You come across the concepts of
DNS Spoofing, and investigate more. What is DNS Spoofing?
A. DNS Spoofing is when the DNS client submits a false DNS request to the DNS server, and the DNS server responds with correct data.
B. DNS Spoofing is the DNS client submits a DNS request to the DNS server using a bogus IP address, and the DNS server responds to the incorrect host.
C. DNS Spoofing is when a DNS Server responds to an unauthorized DNS client, providing that client with name resolution.
D. DNS Spoofing is when a DNS client is forced to make a DNS query to an imposter DNS server, which send the client to an imposter resource.
E. DNS spoofing is when a DNS server provides name resolution to clients that are located in a different IP subnet than the server itself.
Answer: D
Question #14 (Topic: Topic 1)
What is a problem with symmetric key cryptography?
A. It is slower than asymmetric key cryptography
B. Secure distribution of the public key
C. There is a lack of encryption protocols that can use symmetric key cryptography
D. Secure distribution of a secret key
E. Symmetric key cryptography is reserved for the NSA
Answer: D
Question #15 (Topic: Topic 1)
What is the name of the informational page that is relevant to a particular command in
Linux?
Linux?
A. Readme Page
B. Lnx_nfo Page
C. Man Page
D. X_Win Page
E. Cmd_Doc Page
Answer: C