Server Test Welcome to your Server Test Pick all of the firewall types: Application layer gateway Circuit level gateway (proxy server) Packet filter Stateful multilayer inspection all of the above None Firewall Type Application layer gateway acts as a _____ for internet based clients to internal applications. End point proxy server monitor TCP hand-shaking process port filter None Circuit level gateway firewall monitors: TCP handshake process Internet traffic to an application packets filters multi-layers None Stateful multi-layer inspection monitors Multi-level port forwarding only applications packet filters in your modem None A proxy server can also be called a: Circuit level gateway Packet filter Stateful multi-layer firewall Application layer gateway None When using a proxy server the IP address shows coming from: the proxy server not the legitimate ip file server the modem used where the application is installed None Which Firewall type operates on all the different layers of the OSI model? Stateful multi-layer inspection Application layer gateway Packet filter Circuit level gateway None What parts make up the 5 tuple? sender port, sender ip, receiver port, receiver ip and protocol protocol, sender port, receivers port, application, password user id, password, port number, protocol and IP address IP address, protocol, port, user id, and digital certification None What are the three Network Location Profiles? Domain, Private, Public Work-Group, Private, Public Work-Group, Personal, Public Domain, Work-Group, Private None What does ICMP stand for? Internet Control Message Protocol Internal Connection Message Protocol Internet Connection Managed Protocol IP Control Managed Protocol None What protocol does ping use? ICMP HTTP HTTPS SMTP None Ping in ICMP is part of _____ requests. Echo SMTP HTML Telnet None What is the most common way to setup a firewall in a domain environment? Group Policy Manually setup each firewall import and export settings not done because firewalls require no extra management None A ______ attack occurs when a malicious hacker has been able to install a software robot (bot) on a large number of systems, or zombie computers. DDOS Malware Social Engineering Man in the Middle None Which of the following is NOT one of the 3 network location profiles used by Windows Firewall? Secure Public Private Domain None Datacenter Firewall is a new service in Windows Server 2016 which acts as a component of a ______deployment Software Defined Networking IPSec Microsoft Identity Manager Windows Firewall with Advanced Security None What is IPsec? IPsec is a suite of protocols that allows secure, encrypted communication between two computers. Counts the seconds your IP has been in use. Uses your IP and sections it into two parts to eliminate traceroute usage. Sectors your IP into a configuration of certain protocols. None When do you use IPsec? Authentication and Encrypting host-host traffic Authenticating and encrypting traffic to specific servers Using L2TP/IPsec for VPN connections Site-to-site tunneling Enforcing logical networks all of the above None What are the two ways you can configure IPsec? Group Policy Objects (GPOs) & Firewall Rules IPconfig & DNS settings Server Settings & DHCP DHCP & DNS settings None IPSec is used with which VPN protocol? SSL PPTP L2TP MPPE None DNSSEC is 1 of 3 primary ways you can secure the DNS service. The other 2 are:____ and ____. DNS Cashe Locking and DNS Socket Pool DNS Advanced Security and DNS Security Timing Dns Cache Locking and DNS Advanced Security DNS Security Timing and DNS Socket Pool None The Microsoft Message Analyzer is a replacement for which previous Microsoft tool? Microsoft SMB Analyzer Microsoft Email Monitor Microsoft Network Monitor Microsoft Performance Monitor None What does HSM stand for? Hardware security module Hardrive security monitor Hardware simple monitor Harddrive security management None What does KPS stand for? Key protection services Kernal protection service kerbos protection service Kernal private service None KPS provides the: Transport Keys required to unlock and run shielded VMs Transports data on request for VMs to be installed Installation of security software required for VMs Provides the tools to monitor traffic to VMs None When can a host be considered guarded? HGS attestation service deemed host "healthy" HGS has this as a file Host Hyper-V on which unshielded VMs can run Hyper -V runs on host with VMs and IPSec None Shielded VMs protect a VM's data and state by supporting a virtual TPM (vTPM) device, which allows you to enable _____ on the VM's disk. Guarded Fabric encryption Virtual encryption BitLocker encryption EFS encryption None Shielded VMs are more secure than encryption-supported VMs. True False None Time's up