EC-COUNCIL EC-Council Certified Security Analyst (ECSA) V10 - 412-79v10 模擬練習

Which of the following scan option is able to identify the SSL services?

正解: A
Which of the following policies helps secure data and protects the privacy of organizational information?

正解: C
Traffic on which port is unusual for both the TCP and UDP ports?

正解: C
Software firewalls work at which layer of the OSI model?

正解: C
How many possible sequence number combinations are there in TCP/IP protocol?

正解: A
Which one of the following is a useful formatting token that takes an int * as an argument, and writes the number of bytes already written, to that location?

正解: B
George is a senior security analyst working for a state agency in Florida. His state's congress just passed a bill mandating every state agency to undergo a security audit annually. After learning what will be required, George needs to implement an IDS as soon as possible before the first audit occurs.
The state bill requires that an IDS with a "time-based induction machine" be used. What IDS feature must George implement to meet this requirement?

正解: A
Which of the following defines the details of services to be provided for the client's organization and the list of services required for performing the test in the organization?

正解: A
After attending a CEH security seminar, you make a list of changes you would like to perform on your network to increase its security. One of the first things you change is to switch the Restrict Anonymous setting from 0 to 1 on your servers. This, as you were told, would prevent anonymous users from establishing a null session on the server.
Using User info tool mentioned at the seminar, you succeed in establishing a null session with one of the servers. Why is that?

正解: D
You just passed your ECSA exam and are about to start your first consulting job running security audits for a financial institution in Los Angeles. The IT manager of the company you will be working for tries to see if you remember your ECSA class. He asks about the methodology you will be using to test the company's network.
How would you answer?

正解: A
Firewall and DMZ architectures are characterized according to its design. Which one of the following architectures is used when routers have better high-bandwidth data stream handling capacity?

正解: B
Identify the type of firewall represented in the diagram below:

正解: B
Which of the following protocols cannot be used to filter VoIP traffic?

正解: C
External penetration testing is a traditional approach to penetration testing and is more focused on the servers, infrastructure and the underlying software comprising the target. It involves a comprehensive analysis of publicly available information about the target, such as Web servers, Mail servers, Firewalls, and Routers.

Which of the following types of penetration testing is performed with no prior knowledge of the site?

正解: D