Exam Details

  • Exam Code
    :JK0-022
  • Exam Name
    :CompTIA Security+ Certification
  • Certification
    :CompTIA Security+
  • Vendor
    :CompTIA
  • Total Questions
    :1149 Q&As
  • Last Updated
    :May 06, 2024

CompTIA CompTIA Security+ JK0-022 Questions & Answers

  • Question 1131:

    A network consists of various remote sites that connect back to two main locations. Pete, the security administrator, needs to block TELNET access into the network. Which of the following, by default, would be the BEST choice to accomplish this goal?

    A. Block port 23 on the L2 switch at each remote site

    B. Block port 23 on the network firewall

    C. Block port 25 on the L2 switch at each remote site

    D. Block port 25 on the network firewall

  • Question 1132:

    Which of the following is the default port for TFTP?

    A. 20

    B. 69

    C. 21

    D. 68

  • Question 1133:

    Which of the following is a difference between TFTP and FTP?

    A. TFTP is slower than FTP.

    B. TFTP is more secure than FTP.

    C. TFTP utilizes TCP and FTP uses UDP.

    D. TFTP utilizes UDP and FTP uses TCP.

  • Question 1134:

    A network administrator is asked to send a large file containing PII to a business associate.

    Which of the following protocols is the BEST choice to use?

    A. SSH

    B. SFTP

    C. SMTP

    D. FTP

  • Question 1135:

    Which of the following ports and protocol types must be opened on a host with a host-based firewall to allow incoming SFTP connections?

    A. 21/UDP

    B. 21/TCP

    C. 22/UDP

    D. 22/TCP

  • Question 1136:

  • Question 1137:

    HOTSPOT

    The security administrator has installed a new firewall which implements an implicit DENY policy by default. Click on the firewall and configure it to allow ONLY the following communication.

    1.

    The Accounting workstation can ONLY access the web server on the public network over the default HTTPS port. The accounting workstation should not access other networks.

    2.

    The HR workstation should be restricted to communicate with the Financial server ONLY, over the default SCP port

    3.

    The Admin workstation should ONLY be able to access the servers on the secure network over the default TFTP port.

    Instructions: The firewall will process the rules in a top-down manner in order as a first match The port number must be typed in and only one port number can be entered per rule Type ANY for all ports. The original firewall configuration can

    be reset at any time by pressing the reset button. Once you have met the simulation requirements, click save and then Done to submit.

    Hot Area:

  • Question 1138:

    Simulation

    A security administrator discovers that an attack has been completed against a node on the corporate network. All available logs were collected and stored.

    You must review all network logs to discover the scope of the attack, check the box of the node(s) that have been compromised and drag and drop the appropriate actions to complete the incident response on the network. The environment is

    a critical production environment; perform the LEAST disruptive actions on the network, while still performing the appropriate incid3nt responses.

    Instructions: The web server, database server, IDS, and User PC are clickable. Check the box of the node(s) that have been compromised and drag and drop the appropriate actions to complete the incident response on the network. Not all

    actions may be used, and order is not important. If at anytime you would like to bring back the initial state of the simulation, please select the Reset button. When you have completed the simulation, please select the Done button to submit.

    Once the simulation is submitted, please select the Next button to continue.

  • Question 1139:

    HOTSPOT

    The security administrator has installed a new firewall which implements an implicit DENY policy by default Click on the firewall and configure it to allow ONLY the following communication.

    1.

    The Accounting workstation can ONLY access the web server on the public network over the default HTTPS port. The accounting workstation should not access other networks.

    2.

    The HR workstation should be restricted to communicate with the Financial server ONLY, over the default SCP port

    3.

    The Admin workstation should ONLY be able to access the servers on the secure network over the default TFTP port.

    Instructions: The firewall will process the rules in a top-down manner in order as a first match The port number must be typed in and only one port number can be entered per rule Type ANY for all ports. The original firewall configuration can

    be reset at any time by pressing the reset button. Once you have met the simulation requirements, click save and then Done to submit.

    Hot Area:

  • Question 1140:

    DRAG DROP A security administrator is given the security and availability profiles for servers that are being deployed. 1) Match each RAID type with the correct configuration and MINIMUM number of drives. 2) Review the server profiles and match them with the appropriate RAID type based on integrity, availability, I/O, storage requirements. Instructions: All drive definitions can be dragged as many times as necessary Not all placeholders may be filled in the RAID configuration boxes If parity is required, please select the appropriate number of parity checkboxes Server profiles may be dragged only once If at any time you would like to bring back the initial state of the simulation, please select the Reset button. When you have completed the simulation, please select the Done button to submit. Once the simulation is submitted, please select the Next button to continue.

    Select and Place:

    Select and Place:

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your JK0-022 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.