Pass4sure SY0-401 Schooling preserves its actually technique improvement as you become in excess of only the cell phone experience, quite while in the universal industry youll possess opportunity to apply it many ways. CompTIA SY0-401 responses via Pass4sure save your valuable common classrooms exercising specifications. You do not have to be able to search with regard to CompTIA Accreditation SY0-401 Braindumps also. Rescue their life from timetabled exercising timings together with sway in to the new trend for Pass4sure SY0-401 together with SY0-401 Process Checkups for your own speed.

2021 Jan SY0-401 test questions

Q501. Which of the following malware types may require user interaction, does not hide itself, and is commonly identified by marketing pop-ups based on browsing habits? 

A. Botnet 

B. Rootkit 

C. Adware 

D. Virus 

Answer:

Explanation: 

Adware is free software that is supported by advertisements. Common adware programs are toolbars, games and utilities. They are free to use, but require you to watch advertisements as long as the programs are open. Adware typically requires an active Internet connection to run. 


Q502. Which of the following is the MOST secure protocol to transfer files? 

A. FTP 

B. FTPS 

C. SSH 

D. TELNET 

Answer:

Explanation: 

FTPS refers to FTP Secure, or FTP SSL. It is a secure variation of File Transfer Protocol (FTP). 


Q503. A system administrator attempts to ping a hostname and the response is 2001:4860:0:2001::68. 

Which of the following replies has the administrator received? 

A. The loopback address 

B. The local MAC address 

C. IPv4 address 

D. IPv6 address 

Answer:

Explanation: 

IPv6 addresses are 128-bits in length. An IPv6 address is represented as eight groups of four hexadecimal digits, each group representing 16 bits (two octets). The groups are separated by colons (:). The hexadecimal digits are case-insensitive, but IETF recommendations suggest the use of lower case letters. The full representation of eight 4-digit groups may be simplified by several techniques, eliminating parts of the representation. 


Q504. After a new firewall has been installed, devices cannot obtain a new IP address. Which of the following ports should Matt, the security administrator, open on the firewall? 

A. 25 

B. 68 

C. 80 

D. 443 

Answer:

Explanation: 

The Dynamic Host Configuration Protocol (DHCP) is a standardized network protocol used on Internet Protocol (IP) networks for distributing IP addresses for interfaces and services. DHCP makes use of port 68. 


Q505. During a security assessment, an administrator wishes to see which services are running on a remote server. Which of the following should the administrator use? 

A. Port scanner 

B. Network sniffer 

C. Protocol analyzer 

D. Process list 

Answer:

Explanation: 

Different services use different ports. When a service is enabled on a computer, a network port is opened for that service. For example, enabling the HTTP service on a web server will open port 80 on the server. By determining which ports are open on a remote server, we can determine which services are running on that server. A port scanner is a software application designed to probe a server or host for open ports. This is often used by administrators to verify security policies of their networks and by attackers to identify running services on a host with the view to compromise it. A port scan or portscan can be defined as a process that sends client requests to a range of server port addresses on a host, with the goal of finding an active port. While not a nefarious process in and of itself, it is one used by hackers to probe target machine services with the aim of exploiting a known vulnerability of that service. However the majority of uses of a port scan are not attacks and are simple probes to determine services available on a remote machine. 


Up to the minute SY0-401 real exam:

Q506. Ann is the data owner of financial records for a company. She has requested that she have the ability to assign read and write privileges to her folders. The network administrator is tasked with setting up the initial access control system and handing Ann's administrative capabilities. Which of the following systems should be deployed? 

A. Role-based 

B. Mandatory 

C. Discretionary 

D. Rule-based 

Answer:

Explanation: 


Q507. A security administrator has concerns regarding employees saving data on company provided mobile devices. Which of the following would BEST address the administrator’s concerns? 

A. Install a mobile application that tracks read and write functions on the device. 

B. Create a company policy prohibiting the use of mobile devices for personal use. 

C. Enable GPS functionality to track the location of the mobile devices. 

D. Configure the devices so that removable media use is disabled. 

Answer:

Explanation: 

Mobile devices can be plugged into computers where they appear as an additional disk in the same way as a USB drive. This is known as removable media. This would enable users to copy company data onto the mobile devices. By disabling removable media use, the users will not be able to copy data onto the mobile devices. 


Q508. Sara, a company’s security officer, often receives reports of unauthorized personnel having access codes to the cipher locks of secure areas in the building. Sara should immediately implement which of the following? 

A. Acceptable Use Policy 

B. Physical security controls 

C. Technical controls 

D. Security awareness training 

Answer:

Explanation: 

Security awareness and training include explaining policies, procedures, and current threats to both users and management. A security awareness and training program can do much to assist in your efforts to improve and maintain security. A good security awareness training program for the entire organization should cover the following areas: Importance of security; Responsibilities of people in the organization; Policies and procedures; Usage policies; Account and password-selection criteria as well as Social engineering prevention. 


Q509. RADIUS provides which of the following? 

A. Authentication, Authorization, Availability 

B. Authentication, Authorization, Auditing 

C. Authentication, Accounting, Auditing 

D. Authentication, Authorization, Accounting 

Answer:

Explanation: 

The Remote Authentication Dial In User Service (RADIUS) networking protocol offers centralized Authentication, Authorization, and Accounting (AAA) management for users who make use of a network service. It is for this reason that A, B, and C: are incorrect. 

References: http://en.wikipedia.org/wiki/RADIUS 


Q510. Which of the following can be implemented if a security administrator wants only certain devices connecting to the wireless network? 

A. Disable SSID broadcast 

B. Install a RADIUS server 

C. Enable MAC filtering 

D. Lowering power levels on the AP 

Answer:

Explanation: 

MAC filtering is commonly used in wireless networks. In computer networking, MAC Filtering (or GUI filtering, or layer 2 address filtering) refers to a security access control method whereby the 48-bit address assigned to each network card is used to determine access to the network. MAC addresses are uniquely assigned to each card, so using MAC filtering on a network permits and denies network access to specific devices through the use of blacklists and whitelists. While the restriction of network access through the use of lists is straightforward, an individual person is not identified by a MAC address, rather a device only, so an authorized person will need to have a whitelist entry for each device that he or she would use to access the network.