Free CEH-001 Exam Braindumps (page: 84)

Page 83 of 220

Smart cards use which protocol to transfer the certificate in a secure manner?

  1. Extensible Authentication Protocol (EAP)
  2. Point to Point Protocol (PPP)
  3. Point to Point Tunneling Protocol (PPTP)
  4. Layer 2 Tunneling Protocol (L2TP)

Answer(s): A



A company firewall engineer has configured a new DMZ to allow public systems to be located away from the internal network. The engineer has three security zones set:

Untrust (Internet) ­ (Remote network = 217.77.88.0/24)
DMZ (DMZ) ­ (11.12.13.0/24)
Trust (Intranet) ­ (192.168.0.0/24)

The engineer wants to configure remote desktop access from a fixed IP on the remote network to a remote desktop server in the DMZ. Which rule would best fit this requirement?

  1. Permit 217.77.88.0/24 11.12.13.0/24 RDP 3389
  2. Permit 217.77.88.12 11.12.13.50 RDP 3389
  3. Permit 217.77.88.12 11.12.13.0/24 RDP 3389
  4. Permit 217.77.88.0/24 11.12.13.50 RDP 3389

Answer(s): B



When comparing the testing methodologies of Open Web Application Security Project (OWASP) and Open Source Security Testing Methodology Manual (OSSTMM) the main difference is

  1. OWASP is for web applications and OSSTMM does not include web applications.
  2. OSSTMM is gray box testing and OWASP is black box testing.
  3. OWASP addresses controls and OSSTMM does not.
  4. OSSTMM addresses controls and OWASP does not.

Answer(s): D



Which of the following is a protocol that is prone to a man-in-the-middle (MITM) attack and maps a 32-bit address to a 48-bit address?

  1. ICPM
  2. ARP
  3. RARP
  4. ICMP

Answer(s): B

Explanation:

Address Resolution Protocol (ARP) a stateless protocol was designed to map Internet Protocol addresses (IP) to their associated Media Access Control (MAC) addresses.
This being said, by mapping a 32 bit IP address to an associated 48 bit MAC address via attached Ethernet devices, a communication between local nodes can be made.
Source: (http://www.exploit-db.com/papers/13190/)






Post your Comments and Discuss GAQM CEH-001 exam with other Community members:

CEH-001 Exam Discussions & Posts