GSNA Exam Questions
367 real GSNA exam questions with expert-verified answers and explanations. Page 7 of 8.
- Question #301Network & Perimeter Auditing
You work as a Network Administrator for XYZ CORP. The company has a Linux-based network. The company needs to provide secure network access. You have configured a firewall to preve...
firewallpacket filteringtransport layerapplication layer headers - Question #302Linux/Unix System Auditing
John works as a Network Administrator for Perfect Solutions Inc. The company has a Linux- based network. John is working as a root user on the Linux operating system. You want to r...
bash scriptingconditional execution&& operatorLinux commands - Question #303Linux/Unix System Auditing
John works as a Network Administrator for Perfect Solutions Inc. The company has a Linux- based network. John is working as a root user on the Linux operating system. He is configu...
bash historyshell configurationLinux securityApache hardening - Question #305Linux/Unix System Auditing
You work as the Network Administrator for XYZ CORP. The company has a Unix-based network. You want to set some terminal characteristics and environment variables. Which of the foll...
Unix config filesenvironment variablesterminal configurationsysconfig - Question #306Audit Fundamentals & Planning
You work as a Network Auditor for XYZ CORP. The company has a Windows-based network. While auditing the company's network, you are facing problems in searching the faults and other...
detection riskaudit risknetwork auditingrisk types - Question #307Network & Perimeter Auditing
Which of the following statements are true about locating rogue access points using WLAN discovery software such as NetStumbler, Kismet, or MacStumbler if you are using a Laptop in...
rogue access pointsWLAN discoveryNetStumblerwireless auditing - Question #308Network & Perimeter Auditing
A Web developer with your company wants to have wireless access for contractors that come in to work on various projects. The process of getting this approved takes time. So rather...
rogue WAPwireless securityunauthorized accessnetwork risk - Question #309Audit Fundamentals & Planning
Which of the following techniques are used after a security breach and are intended to limit the extent of any damage caused by the incident?
corrective controlssecurity breachincident responsecontrol types - Question #310Network & Perimeter Auditing
Which of the following wireless security features provides the best wireless security mechanism?
WPA802.1Xwireless securityauthentication - Question #311Network & Perimeter Auditing
You work as a Network Administrator for TechPerfect Inc. The company has a secure wireless network. Since the company's wireless network is so dynamic, it requires regular auditing...
NetStumblerwireless auditingSSID detectionGPS integration - Question #312Network & Perimeter Auditing
You work as a Network Administrator for Blue Well Inc. The company has a TCP/IP-based routed network. Two segments have been configured on the network as shown below: One day, the...
network segmentationswitch failuresubnetTCP/IP - Question #313Database & Application Auditing
John visits an online shop that stores the IDs and prices of the items to buy in a cookie. After selecting the items that he wants to buy, the attacker changes the price of the ite...
cookie poisoningweb application attacksession manipulatione-commerce security - Question #314Windows System Auditing
You work as a Network Administrator for XYZ CORP. The company has a Windows Server 2008 network environment. The network is configured as a Windows Active Directory-based single fo...
HyenaActive Directorygroup managementWindows Server 2008 - Question #317Windows System Auditing
You are the Network Administrator for a software development company. Your company creates various utilities and tools. You have noticed that some of the files your company creates...
antivirus logsfile deletionmalwarelog analysis - Question #318Network & Perimeter Auditing
Which of the following statements about a screened host is true?
screened hostfirewallnetwork securitytraffic filtering - Question #320Database & Application Auditing
Which of the following statements about a session are true? (Choose two)
HttpSessionsession managementJava websession methods - Question #321Database & Application Auditing
Which of the following statements is true about a relational database?
relational databasedatabase structuretablesdata organization - Question #322Network & Perimeter Auditing
You work as a Network Administrator for BetaTech Inc. You have been assigned the task of designing the firewall policy for the company. Which of the following statements is unaccep...
firewall policyacceptable usepolicy designsecurity policy - Question #323Network & Perimeter Auditing
John works as a contract Ethical Hacker. He has recently got a project to do security checking for in the information gathering step. Which of the following commands will he use to...
nmapinformation gatheringethical hackingOS detection - Question #324Network & Perimeter Auditing
You check performance logs and note that there has been a recent dramatic increase in the amount of broadcast traffic. What is this most likely to be an indicator of?
broadcast trafficDoS attacknetwork monitoringperformance logs - Question #325Linux/Unix System Auditing
You run the wc -c file1.txt command. If this command displays any error message, you want to store the error message in the error.txt file. Which of the following commands will you...
stderr redirectionLinux shellwc commandfile redirection - Question #326Linux/Unix System Auditing
John works as a Network Administrator for Perfect Solutions Inc. The company has a Linux- based network. John is working as a root user on the Linux operating system. He wants to f...
syslogkernel loggingremote loggingsyslog.conf - Question #327Network & Perimeter Auditing
are-secure.com. John wants to get the information of all network connections and listening ports in the numerical form. Which of the following commands will he use?
netstatlistening portsnetwork connectionscommand-line tools - Question #328Network & Perimeter Auditing
John works as a professional Ethical Hacker. He has been assigned the project of testing the are-secure network. Which of the following IEEE-based traffic can be sniffed with Kisme...
Kismetwireless sniffing802.11 standardspacket capture - Question #331Linux/Unix System Auditing
You work as the Network Administrator for XYZ CORP. The company has a Unix-based network. You want to see the username, real name, home directory, encrypted password, and other inf...
/etc/passwdUnix user accountsconfiguration filesuser information - Question #332Network & Perimeter Auditing
Which of the following statements are true about KisMAC?
KisMACwireless discoveryWEP/WPA crackingpcap format - Question #333Audit Fundamentals & Planning
You are the Network Administrator for a company. You have decided to conduct a user access and rights review. Which of the following would be checked during such a review? (Choose...
user access reviewaccess control listsuser rolesgroup membership - Question #334Network & Perimeter Auditing
You work as a Network Administrator for Tech Perfect Inc. The company has a TCP/IP-based network. You have configured a firewall on the network. A filter has been applied to block...
SMTPPOP3email portsfirewall rules - Question #335Network & Perimeter Auditing
In which of the following attack techniques does an attacker try to intercept the successful handshake and then use a dictionary attack to retrieve the shared key?
PSK crackingWPA handshakedictionary attackwireless authentication - Question #336Windows System Auditing
You work as a Software Developer for Mansoft Inc. You create an application and use it to create users as members of the local Users group. Which of the following code snippets imp...
PrincipalPermissionWindows identity.NET role-based securityWindowsPrincipal - Question #337Linux/Unix System Auditing
You want to change the number of characters displaying on the screen while reading a txt file. However, you do not want to change the format of the txt file. Which of the following...
more commandtext file viewingLinux utilitiesterminal output - Question #338Network & Perimeter Auditing
Zorp is a proxy firewall suite developed by Balabit IT Security. Which of the following statements are true about Zorp?
Zorpproxy firewallCommon Criteriaprotocol analysis - Question #339Network & Perimeter Auditing
Which of the following user authentications are supported by the SSH-1 protocol but not by the SSH-2 protocol?
SSH-1SSH-2authentication methodsRhosts authentication - Question #340Network & Perimeter Auditing
You work as a Network Administrator for XYZ CORP. The company has a Windows Active Directory-based single domain single forest network. The functional level of the forest is Window...
smart card authenticationEAP-TLSwireless securityActive Directory - Question #341Linux/Unix System Auditing
You work as the Network Administrator for XYZ CORP. The company has a Unix-based network. You want to print the super block and block the group information for the filesystem prese...
dumpe2fssuperblockfilesystem informationblock group - Question #342Audit Fundamentals & Planning
You have recently joined as a Network Auditor in XYZ CORP. The company has a Windows- based network. You have been assigned the task to determine whether or not the company's goal...
pre-audit planningdata center reviewIT policiesaudit preparation - Question #343Database & Application Auditing
Patricia joins XYZ CORP., as a Web Developer. While reviewing the company's Web site, she finds that many words including keywords are misspelled. How will this affect the Web site...
SEOkeyword relevancyweb application auditingsearch engine optimization - Question #344Audit Fundamentals & Planning
You work as a Network Administrator for ABC Inc. The company uses a secure wireless network. John complains to you that his computer is not working properly. What type of security...
independent auditaudit typesoperational auditsecurity audit classification - Question #345Network & Perimeter Auditing
John works as a professional Ethical Hacker. He has been assigned the project of testing the wireless sniffer to sniff the We-are-secure network. Which of the following tools will...
Kismetwireless sniffernetwork toolspacket capture - Question #346Network & Perimeter Auditing
You work as a Network Administrator of a TCP/IP network. You are having DNS resolution problem. Which of the following utilities will you use to diagnose the problem?
NSLOOKUPDNS resolutionDNS troubleshootingnetwork diagnostics - Question #347Database & Application Auditing
Peter works as a Web Developer for XYZ CORP. He is developing a Web site for the company. In one of the Web pages, Peter wants to ensure that certain information is consistent and...
HTML framesweb page layoutweb developmentUI design - Question #348Network & Perimeter Auditing
In a network, a data packet is received by a router for transmitting it to another network. In order to make decisions on where the data packet should be forwarded, the router chec...
routing tablepacket forwardingrouternetwork routing - Question #349Network & Perimeter Auditing
You work as a Network Administrator for XYZ CORP. The company has a small TCP/IP-based network environment. The network contains a Cisco Catalyst 6000 family switch. A few sales pe...
port securityswitch hardeningMAC filteringnetwork access control - Question #350Network & Perimeter Auditing
Which of the following security policies will you implement to keep safe your data when you connect your Laptop to the office network over IEEE 802.11 WLANs? (Choose two)
WLAN securityIPSec VPNpersonal firewallIEEE 802.11 - Question #351Database & Application Auditing
You work as a Database Administrator for XYZ CORP. The company has a multi-platform network. The company requires a database that can receive data from various types of operating s...
multidimensional databaseOLAPdata warehouserelational database - Question #352Database & Application Auditing
You want to record auditing information in the SYS.AUD$ table, and also want to record SQL bind variables as well as the SQL text in the audit trail. Which of the following stateme...
Oracle audit trailAUDIT_TRAIL parameterDB EXTENDEDSQL bind variables - Question #353Linux/Unix System Auditing
You work as the Network Administrator for XYZ CORP. The company has a Unix-based network. You want to track the system for user logins. To accomplish the task, you need to analyze...
Unix log filesuser login tracking/var/log/securelog analysis - Question #354Database & Application Auditing
You work as a Software Developer for UcTech Inc. You are building a Web site that will contain study materials on the Java language. The company wants that members can access all t...
authorizationaccess controlauthentication vs authorizationweb application security - Question #355Linux/Unix System Auditing
Which of the following commands can you use to search a string 'pwd' in all text files without opening them? (Choose two)
grepsedstring searchLinux commands - Question #356Network & Perimeter Auditing
Pingdom is a website monitoring service. Which of the following services are provided by Pingdom?
website monitoringPingdomuptime monitoringavailability tracking