GISP Exam Questions
493 real GISP exam questions with expert-verified answers and explanations. Page 8 of 10.
- Question #352
Which of the following statements about symmetric encryption are true? Each correct answer represents a complete solution. Choose three.
- Question #353
Which of the following ports is used by the control connection on the FTP server?
- Question #354
Which of the following processes is used by remote users to make a secure connection to internal resources after establishing an Internet connection?
- Question #355
Which of the following are examples of passive attacks? Each correct answer represents a complete solution. Choose all that apply.
- Question #356
Which of the following protocols transmits user credentials as plaintext?
- Question #357
Which of the following tools was developed by the FBI and is used for keystroke logging in order to capture encryption keys and other information useful for deciphering transmissio...
- Question #358
In which of the following processes, a DNS server may return an incorrect IP address, diverting traffic to another computer?
- Question #359
Which of the following uses public-key encryption to encrypt and digitally sign e-mail messages during communication between e-mail clients?
- Question #360
Which of the following protocols is used with a tunneling protocol to provide security?
- Question #361
Which of the following is a type of scam that entice a user to disclose personal information such as social security number, bank account details, or credit card number?
- Question #362
Which of the following technologies are forms of single sign-on (SSO)? Each correct answer represents a complete solution. Choose three.
- Question #363
An attacker sends a large number of packets to a target computer that causes denial of service. Which of the following type of attacks is this?
- Question #364
Which of the following methods is a behavior-based IDS detection method?
- Question #365
Which of the following areas of a network contains DNS servers and Web servers for Internet users?
- Question #366
Which of the following hashing algorithms produces a variable length hash value?
- Question #367
Which of the following statements about certification authority (CA) are true? Each correct answer represents a complete solution. Choose two.
- Question #368
Which of the following is the default port for Simple Network Management Protocol (SNMP)?
- Question #369
Mark works as a Network Administrator for Infonet Inc. The company has a Windows 2000 Active Directory domain-based network. The domain contains one hundred Windows XP Professional...
- Question #370
Which of the following statements about a hoax are true? Each correct answer represents a complete solution. Choose two.
- Question #371
Which of the following is a term that refers to unsolicited e-mails sent to a large number of e-mail users?
- Question #372
Which of the following intrusion detection systems (IDS) monitors network traffic and compares it against an established baseline?
- Question #373
Which of the following is known as a message digest?
- Question #374
An organization monitors the hard disks of its employees' computers from time to time. Which policy does this pertain to?
- Question #375
Which of the following statements about Secure Sockets Layer (SSL) are true? Each correct answer represents a complete solution. Choose two.
- Question #376
Which of the following protocols work at the session layer of the OSI model? Each correct answer represents a complete solution. Choose two.
- Question #377
Which of the following layers of the OSI model corresponds to the Host-to-Host layer of the TCP/IP model?
- Question #378
* Network diagrams of the we-are-secure infrastructure * Source code of the security tools * IP addressing information of the we-are-secure network Which of the following testing m...
- Question #379
In which of the following DoS attacks does an attacker send an ICMP packet larger than 65,536 bytes to the target system?
- Question #380
Which of the following types of virus is capable of changing its signature to avoid detection?
- Question #381
Mark works as a Network Administrator for We-are-secure Inc. He finds that the We-are-secure server has been infected with a virus. He presents to the company a report that describ...
- Question #382
Which of the following statements about the bridge are true? Each correct answer represents a complete solution. Choose two.
- Question #383
Which of the following is a reason to implement security logging on a DNS server?
- Question #384
Which of the following tools is NOT used for logging network activities in the Linux operating system? Each correct answer represents a complete solution. Choose all that apply.
- Question #385
Which of the following federal laws are related to hacking activities? Each correct answer represents a complete solution. Choose three.
- Question #386
Brutus is a password cracking tool that can be used to crack the following authentications: HTTP (Basic Authentication) HTTP (HTML Form/CGI) POP3 (Post Office Protocol v3) FTP (Fil...
- Question #387
Which of the following user authentications are supported by the SSH-1 protocol but not by the SSH-2 protocol? Each correct answer represents a complete solution. Choose all that a...
- Question #388
SSH is a network protocol that allows data to be exchanged between two networks using a secure channel. Which of the following encryption algorithms can be used by the SSH protocol...
- Question #389
Routers and firewalls use ________ to determine which packets should be forwarded or dropped.
- Question #390
You are a salesperson. You are authorized to access only the information that is essential for your work. Which of the following access control models is used in your organization?
- Question #391
Identify whether the given statement is true or false. "Social engineering is the art of convincing people and making them disclose useful information such as account names and pas...
- Question #392
Which of the following access control models requires centralize database of user accounts?
- Question #393
Which of the following is the new permissions model in Microsoft Exchange Server 2010, which enables you to control, at broad and granular levels, what administrators and end-users...
- Question #394
Which of the following is not a major concern in traditional business transactions as compare to online transactions?
- Question #395
Which of the following should propose appropriate and effective security controls for managing the risks?
- Question #396
Which of the following acts as an intermediary between a user on the internal network and a service on the external network such as the Internet?
- Question #397
Which of the following is not a biometrics technology for authentication?
- Question #398
Which of the following is NOT a countermeasure against a spoofing attack?
- Question #399
Which of the following is used to repair missing or damaged system files that might prevent Windows from starting correctly?
- Question #400
The backup system that stores only those files that have been changed since the last backup is known as _____.
- Question #401
Which of the following is a duplicate of the original site of an organization, with fully working systems as well as near-complete backups of user data?