nerdexam
CompTIA

220-1002 · Question #315

A security administrator is developing workstation hardening standards. As part of the baseline, the administrator recommends implementing controls to mitigate risks associated with dictionary…

The correct answer is A. Account lockout. A dictionary attack works by systematically trying thousands of common words and password combinations in rapid succession. Account lockout directly counters this by disabling the account after a defined number of failed login attempts, rendering the brute-force approach…

Hardware and network troubleshooting

Question

A security administrator is developing workstation hardening standards. As part of the baseline, the administrator recommends implementing controls to mitigate risks associated with dictionary attacks. Which of the following would BEST meet the requirements of the administrator?

Options

  • AAccount lockout
  • BLogin time restrictions
  • CMobile tokenization
  • DFull-disk encryption

How the community answered

(22 responses)
  • A
    82% (18)
  • B
    9% (2)
  • C
    5% (1)
  • D
    5% (1)

Explanation

A dictionary attack works by systematically trying thousands of common words and password combinations in rapid succession. Account lockout directly counters this by disabling the account after a defined number of failed login attempts, rendering the brute-force approach ineffective. Login time restrictions (B) limit when users can log in but don't stop repeated attempts within allowed hours. Mobile tokenization (C) adds a second factor but doesn't prevent the dictionary attack from running. Full-disk encryption (D) protects data at rest but does nothing to prevent or detect automated password guessing attempts at the login screen.

Topics

#account lockout#dictionary attack#workstation hardening#password policy

Community Discussion

No community discussion yet for this question.

Full 220-1002 Practice