CISSP Official Practice Tests by Mike Chapple, David Seidl

(chelsyfait) #1

Chapter 9 ■ Practice Test 1 221


C. Collection
D. Production


  1. Nessus, OpenVAS, and SAINT are all examples of what type of tool?


A. Port scanners
B. Patch management suites
C. Port mappers
D. Vulnerability scanners


  1. Harry would like to access a document owned by Sally stored on a file server. Applying
    the subject/object model to this scenario, who or what is the object of the resource request?
    A. Harry
    B. Sally
    C. File server
    D. Document

  2. What is the process that occurs when the Session layer removes the header from data sent
    by the Transport layer?
    A. Encapsulation
    B. Packet unwrapping
    C. De-encapsulation
    D. Payloading

  3. Which of the following tools is best suited to testing known exploits against a system?


A. Nikto
B. Ettercap
C. Metasploit
D. THC Hydra


  1. What markup language uses the concepts of a Requesting Authority, a Provisioning Ser-
    vice Point, and a Provisioning Service Target to handle its core functionality?
    A. SAML
    B. SAMPL
    C. SPML
    D. X ACML

Free download pdf