Acronyms
Must Know Items
Security Assessments
Secure Network Designs
Resilience
100

CIA

What is Confidentiality, Integrity and Availability?

100

Something you know, something you have,something you are

What are authentication factors?

100

New vulnerability, unknown to vendor

What is zero day vunlnerability?

100

Provides a bridge btwn a cabled network and wireless clients or stations

What is a Wireless Access Point (WAP)?

100

The system can experience failures and still provide the same or nearly the same level of service

What is fault tolerance?
200

NIST

What is National Institute for Standards and Technology?

200

Brute force and dictionary attacks

What are password attacks?

200

Open ports and services, Unsecure protocols, Weak Encryption, Errors - messages which reveal too much info about system

What are Weak Network Configurations Vulnerabilities?

200

Apply Access Control List (ACL) to filter traffic passing in or out of a network segment

What is a firewall?

200

Percentage of time the system is online, measured over a defined period typically one year

What is high availability?

300

ACL

What is Access Control List?

300

Ticket Granting Ticket and a Ticket Granting Session session key

What is Kerberos authentication?

300
netstat

nslookup

What are Local host and hostname resolution tools?

300

DHCP - Dynamic Host Configuration Protocol, Service to assign to client upon connection

Internet Service Provider (ISP), assigned when get the service

Where do IP Addresses come from ?

300

Provides redundancy for storage devices; many disks can act as backups for each other to increase reliability and fault tolerance

What is RAID (Redudant Array of Independent Disks)?

400

MTTR

What is Mean Time To Recover?

400

Somewhere you are, something you can do, something you exhibit, someone you know

What are authentication attributes?

400

route, traceroute, pathping

What are Tools for understanding routing?

400

PDU: Packet,.HW: Router, Layer 3 Switches, Addressing: IP Addresses (Logical Addresses), Protocols: IP, ICMP, IPSec, IGMP, Control: Packet Filtering Firewall

What is the Network Layer?

400

Protecting systems against power events which could harm systems; Dual Power Supplies

What is Power redundancy?

500

PCI DSS

What is Payment Card Industry Data Security Standards?

Defines how to manage credit/debit card data

500

Authentication Protocols for use with remote access protocols (serial link or VPN)

What are PAP and CHAP?

PAP - Password Authentication Protocol

CHAP - Challenge Handshake Authentication Protocol

500

ipconfig, ifconfig, ip; ping; arp

What are Tools for footprinting the network and detecting rogue systems?

500

Forward packets around an internet based on IP addresses; can apply logical IP subnet addresses to segments within a network

What is a router?

500

Means a server is installed with multiple NICs or NICs with multiple ports allowing each port to a separate network cable

What is NIC teaming?

M
e
n
u