/
Core IT Infrastructure and Security Concepts
Save to my account
Sign up
Core IT Infrastructure and Security Concepts
Core IT Infrastructure and Security Concepts
Study
1
Question
What are the specific functions of Authentication, Authorization, and Accounting within the AAA security framework?
Page 1
Answer
Authentication verifies the identity of a user. Authorization determines the specific permissions and access levels granted. Accounting tracks and records user activity for auditing purposes.
2
Question
How does an Access Control List (ACL) function to secure network traffic and file systems?
Page 1
Answer
An ACL acts as a rule list on devices or file systems that explicitly allows or denies specific traffic or user actions based on defined criteria.
3
Question
What is the primary role of the Advanced Encryption Standard (AES) in modern data protection?
Page 1
Answer
AES is a widely used symmetric-key encryption standard that protects data both at rest and in transit, serving as the basis for WPA2 and WPA3 security.
4
Question
Under what specific conditions does a Windows system assign itself an APIPA address?
Page 1
Answer
Windows self-assigns an APIPA address within the range of \(169.254.x.x\) when a DHCP server is unavailable to provide dynamic addressing.
5
Question
What distinguishes the ARM CPU architecture from traditional desktop processors regarding power and instruction sets?
Page 1
Answer
ARM (Advanced RISC Machine) uses a Reduced Instruction Set Computer architecture optimized for low power consumption, making it ideal for mobile devices and tablets.
6
Question
What are the core components defined by the Advanced Technology Extended (ATX) motherboard standard?
Page 1
Answer
The ATX standard defines the physical size, mounting hole locations, and power supply connector requirements for motherboards and PC cases.
7
Question
How does a Business Email Compromise (BEC) attack differ from standard opportunistic phishing?
Page 1
Answer
BEC is a targeted social-engineering scam where attackers impersonate high-level executives to trick employees into performing unauthorized financial transfers or data disclosures.
8
Question
What are the primary functional differences between legacy BIOS and modern UEFI firmware?
Page 1
Answer
UEFI supersedes BIOS by supporting larger disk sizes, providing faster boot times, including a graphical setup interface, and offering advanced security features like Secure Boot.
9
Question
What specific role does the CMOS battery play when a computer system is powered off?
Page 1
Answer
The CMOS battery provides power to the battery-backed chip that stores BIOS/UEFI settings and maintains the system's real-time clock when the main power is disconnected.
10
Question
How do CNAME records function within the Domain Name System (DNS)?
Page 2
Answer
A CNAME (Canonical Name) record creates an alias that maps one hostname to another canonical (real) domain name.
11
Question
What is the operational mechanism that allows DDR memory to achieve higher performance than older SDRAM?
Page 2
Answer
Double Data Rate (DDR) memory transfers data on both the rising and falling edges of the clock cycle, effectively doubling the bandwidth of the system memory.
12
Question
What specific network parameters are automatically assigned to clients by the Dynamic Host Configuration Protocol (DHCP)?
Page 2
Answer
DHCP automatically assigns IP addresses, subnet masks, default gateways, and DNS server addresses to devices on a network.
13
Question
How do DKIM and DMARC work together to improve email security for a domain?
Page 2
Answer
DKIM uses cryptographic signatures to verify email integrity, while DMARC provides instructions to receivers on how to handle messages that fail DKIM or SPF checks.
14
Question
What is the fundamental mechanism of a Distributed Denial of Service (DDoS) attack?
Page 2
Answer
A DDoS attack utilizes multiple compromised systems to flood a target server or network with excessive traffic, causing it to become slow or completely unavailable.
15
Question
Why is Error-correcting Code (ECC) memory predominantly used in server environments rather than standard desktop PCs?
Page 2
Answer
ECC memory adds extra bits that allow the system to detect and correct single-bit errors in real-time, preventing crashes and data corruption in high-reliability systems.
16
Question
What distinguishes the Encrypting File System (EFS) from full-disk encryption methods?
Page 2
Answer
EFS is a Windows feature that encrypts individual files and folders on NTFS volumes, allowing specific items to be secured for authorized users rather than the entire drive.
17
Question
What are the primary differences in limitations between the FAT32 and exFAT file systems?
Page 3
Answer
FAT32 is limited to 4 GB per file and 2 TB volumes, whereas exFAT is optimized for modern flash drives and supports significantly larger file and volume sizes.
18
Question
How does the Grandfather-Father-Son (GFS) rotation scheme organize data backups?
Page 3
Answer
GFS uses three distinct backup sets: daily incremental backups (Son), weekly full backups (Father), and monthly full backups (Grandfather) to ensure historical data recovery.
19
Question
What specific hardware and firmware requirements must be met to use a GUID Partition Table (GPT)?
Page 3
Answer
GPT is a modern partitioning standard required by UEFI-based systems that supports drives larger than 2 TB and allows for many more partitions than the legacy MBR format.
20
Question
What is the primary function of a Hardware Security Module (HSM) in an enterprise security environment?
Page 3
Answer
An HSM is a tamper-resistant hardware device that securely generates, stores, and manages cryptographic keys for critical security operations.
21
Question
How does the HTTPS protocol provide security compared to standard HTTP traffic?
Page 3
Answer
HTTPS uses Transport Layer Security (TLS) or SSL to encrypt and authenticate web traffic, protecting data from being intercepted or altered while in transit over the internet.
22
Question
What are the core characteristics of the Infrastructure as a Service (IaaS) cloud computing model?
Page 3
Answer
IaaS provides virtualized computing resources like VMs, storage, and networking over the internet, allowing users to avoid managing the underlying physical hardware.
23
Question
How does the Internet Message Access Protocol (IMAP) differ from POP3 in terms of email management?
Page 3
Answer
IMAP stores email on the server and synchronizes messages across all devices, whereas POP3 typically downloads messages to a single client and removes them from the server.
24
Question
What metric is used to measure the performance of storage devices in terms of handling read and write operations?
Page 3
Answer
Input/Output Operations Per Second (IOPS) is the performance metric indicating the number of discrete read and write commands a storage device can process every second.
25
Question
How does In-plane Switching (IPS) technology improve the quality of LCD displays compared to TN panels?
Page 4
Answer
IPS panels offer significantly better color accuracy and wider viewing angles, ensuring the image remains clear even when viewed from the side.
26
Question
What is the function of a Keyboard-Video-Mouse (KVM) switch in a computer environment?
Page 4
Answer
A KVM switch is a hardware device that allows a user to control multiple computers using a single keyboard, monitor, and mouse.
27
Question
What is the difference between a Local Area Network (LAN) and a Metropolitan Area Network (MAN)?
Page 4
Answer
A LAN covers a small area like a single home or office, while a MAN spans a larger geographic area such as an entire city or campus.
28
Question
What is the primary purpose of the Lightweight Directory Access Protocol (LDAP) in enterprise networks?
Page 4
Answer
LDAP is used to query and manage information within directory services, such as users, groups, and permissions in systems like Active Directory.
29
Question
How does a Media Access Control (MAC) address function in Layer 2 network communication?
Page 4
Answer
A MAC address is a unique, permanent hardware identifier assigned to a network interface, used to deliver data frames between devices on the same local network.
30
Question
What are the core limitations of the legacy Master Boot Record (MBR) partitioning scheme?
Page 4
Answer
MBR is limited to a maximum disk size of 2 TB and can only support up to four primary partitions per drive.