GIAC Information Security Professional - GISP Exam Practice Test
Question 1
Which of the following statements about Digest authentication are true?
Each correct answer represents a complete solution. Choose two.
Each correct answer represents a complete solution. Choose two.
Correct Answer: A,C
Question 2
You work as a Network Administrator for NetTech Inc. The company's network has a Windows 2000 domain-based network. An employee of the company is dismissed for attempting to access secret data on the network. What measure will you take next to make the network secure?
Correct Answer: C
Question 3
An authentication method uses smart cards as well as usernames and passwords for authentication. Which of the following authentication methods is being referred to?
Correct Answer: C
Question 4
Brutus is a password cracking tool that can be used to crack the following authentications:
*HTTP (Basic Authentication)
*HTTP (HTML Form/CGI)
*POP3 (Post Office Protocol v3)
*FTP (File Transfer Protocol)
*SMB (Server Message Block)
*Telnet
Which of the following attacks can be performed by Brutus for password cracking?
Each correct answer represents a complete solution. Choose all that apply.
*HTTP (Basic Authentication)
*HTTP (HTML Form/CGI)
*POP3 (Post Office Protocol v3)
*FTP (File Transfer Protocol)
*SMB (Server Message Block)
*Telnet
Which of the following attacks can be performed by Brutus for password cracking?
Each correct answer represents a complete solution. Choose all that apply.
Correct Answer: B,D,E
Question 5
Which of the following authentication protocols provides support for a wide range of authentication methods, such as smart cards and certificates?
Correct Answer: A
Question 6
Which of the following is an entry in an object's discretionary access control list (DACL) that grants permissions to a user or group?
Correct Answer: B
Question 7
What are packet sniffers?
Correct Answer: D
Question 8
Which of the following protocols implements VPN using IPSec?
Correct Answer: B
Question 9
Which of the following tools or services is used to find the entire IP address range used by an organization?
Correct Answer: D
Question 10
Mark has been hired by a company to work as a Network Assistant. He is assigned the task to configure a dial-up connection. He is configuring a laptop. Which of the following protocols should he disable to ensure that the password is encrypted during remote access?
Correct Answer: C
Question 11
Which of the following key sizes is used by International Data Encryption Algorithm (IDEA)?
Correct Answer: D
Question 12
How long are cookies in effect if no expiration date is set?
Correct Answer: D
Question 13
Which of the following records is the first entry in a DNS database file?
Correct Answer: D
Question 14
Which of the following statements about Microsoft hotfix are true?
Each correct answer represents a complete solution. Choose two.
Each correct answer represents a complete solution. Choose two.
Correct Answer: C,D
Question 15
Which of the following types of attacks is mounted with the objective of causing a negative impact on the performance of a computer or network?
Correct Answer: A

