DOMAIN 3.0: Infrastructure Security
3.1 Understand security concerns and concepts of the following types of devices
Firewalls
Routers
Switches
Wireless
Modems
RAS (Remote Access Server)
Telecom / PBX (Private Branch Exchange)
VPN (Virtual Private Network)
IDS (Intrusion Detection System)
Network Monitoring / Diagnostics
Workstations
Servers
Mobile Devices
3.2 Understand the security concerns for the following types of media
Coaxial Cable
UTP / STP (Unshielded Twisted Pair / Shielded Twisted Pair)
Fiber Optic Cable
Removable Media
Tape
CD-R (Recordable Compact Disks)
Hard Drives
Diskettes
Flashcards
Smartcards
3.3 Understand the concepts behind the following kinds of security topologies
Security Zones
DMZ (Demilitarized Zone)
Intranet
Extranet
VLANs (Virtual Local Area Network)
NAT (Network Address Translation)
Tunneling
3.4 Differentiate the following types of intrusion detection, be able to explain the concepts of each type, and understand the implementation and configuration of each kind of intrusion detection system
Network Based
Active Detection
Passive Detection
Host Based
Active Detection
Passive Detection
Honey Pots
Incident Response
3.5 Understand the following concepts of security baselines, be able to explain what a security baseline is, and understand the implementation and configuration of each kind of intrusion detection system
OS / NOS (Operating System / Network Operating System) Hardening
File System
Updates (Hotfixes, Service Packs, Patches)
Network Hardening
Updates (Firmware)
Configuration
Enabling and Disabling Services and Protocols
Access Control Lists
Application Hardening
Updates (Hotfixes, Service Packs, Patches)
Web Servers
E-mail Servers
FTP (File Transfer Protocol) Servers
DNS (Domain Name Service) Servers
NNTP (Network News Transfer Protocol) Servers
File / Print Servers
DHCP (Dynamic Host Configuration Protocol) Servers
Data Repositories
Directory Services
Databases
DOMAIN 1.0: Communication Security
DOMAIN 2.0: Communication Security
DOMAIN 4.0: Basics of Cryptography
DOMAIN 5.0: Operational/Organizational Security
Copyright ©2002-2006 Testbusters.net. All Rights Reserved.
Testbusters.net is not sponsored, endorsed or affiliated by any associated vendor.
Associated venders include, but are not limited to, Microsoft®, Cisco®, CompTIA®, Novell® etc.