[Braindump2go] SY0-401 Exam Prep Free Download (61-70)

COMPTIA NEWS: SY0-401 Exam Questions has been Updated Today! Get Latest SY0-401 VCE and SY0-401 PDF Instantly! Welcome to Download the Newest Braindump2go SY0-401 VCE&SY0-401 PDF Dumps: http://www.braindump2go.com/sy0-401.html (1220 Q&As)

SY0-401 Exam Dumps are recently new updated by CompTIA Official! Braindump2go also updates all the SY0-401 Exam Questions and now all the 1220q are the latest(add many new questions this time)! Braindump2go is famous for our AMAZING 99.6% exam pass rate. Join our success! Then you can pass SY0-401 Exam successfully under our professional help! We guarantee!

Exam Code: SY0-401
Exam Name: CompTIA Security+
Certification Provider: CompTIA
Corresponding Certification: CompTIA Security+

SY0-401 Dump,SY0-401 PDF,SY0-401 VCE,SY0-401 Braindump,SY0-401 Study Guide,SY0-401 Study Guide PDF,SY0-401 Objectives,SY0-401 Practice Test,SY0-401 Practice Exam,SY0-401 Performance Based Questions,SY0-401 Exam Questions,SY0-401 Exam Dumps,SY0-401 Exam PDF,SY0-401 Dumps Free,SY0-401 Dumps PDF

Which of the following technologies can store multi-tenant data with different security requirements?

A.    Data loss prevention
B.    Trusted platform module
C.    Hard drive encryption
D.    Cloud computing

Answer: D
One of the ways cloud computing is able to obtain cost efficiencies is by putting data from various clients on the same machines. This “multitenant” nature means that workloads from different clients can be on the same system, and a flaw in implementation could compromise security.

Multi-tenancy is a concept found in which of the following?

A.    Full disk encryption
B.    Removable media
C.    Cloud computing
D.    Data loss prevention

Answer: C
One of the ways cloud computing is able to obtain cost efficiencies is by putting data from various clients on the same machines. This “multitenant” nature means that workloads from different clients can be on the same system, and a flaw in implementation could compromise security.

Which of the following devices is BEST suited to protect an HTTP-based application that is susceptible to injection attacks?

A.    Protocol filter
B.    Load balancer
C.    NIDS
D.    Layer 7 firewall

Answer: D
An application-level gateway firewall filters traffic based on user access, group membership, the application or service used, or even the type of resources being transmitted.
This type of firewall operates at the Application layer (Layer 7) of the OSI model.

Concurrent use of a firewall, content filtering, antivirus software and an IDS system would be considered components of:

A.    Redundant systems.
B.    Separation of duties.
C.    Layered security.
D.    Application control.

Answer: C
Layered security is the practice of combining multiple mitigating security controls to protect resources and data.

A network engineer is designing a secure tunneled VPN. Which of the following protocols would be the MOST secure?

A.    IPsec
B.    SFTP
C.    BGP
D.    PPTP

Answer: A
Layer 2 Tunneling Protocol (L2TP) came about through a partnership between Cisco and Microsoft with the intention of providing a more secure VPN protocol. L2TP is considered to be a more secure option than PPTP, as the IPSec protocol which holds more secure encryption algorithms, is utilized in conjunction with it. It also requires a pre-shared certificate or key. L2TP’s strongest level of encryption makes use of 168 bit keys, 3 DES encryption algorithm and requires two levels of authentication.
L2TP has a number of advantages in comparison to PPTP in terms of providing data integrity and authentication of origin verification designed to keep hackers from compromising the system. However, the increased overhead required to manage this elevated security means that it performs at a slower pace than PPTP.

Pete, a network administrator, is implementing IPv6 in the DMZ. Which of the following protocols must he allow through the firewall to ensure the web servers can be reached via IPv6 from an IPv6 enabled Internet host?

A.    TCP port 443 and IP protocol 46
B.    TCP port 80 and TCP port 443
C.    TCP port 80 and ICMP
D.    TCP port 443 and SNMP

Answer: B
HTTP and HTTPS, which uses TCP port 80 and TCP port 443 respectively, is necessary for Communicating with Web servers. It should therefore be allowed through the firewall.

Which of the following ports and protocol types must be opened on a host with a host-based firewall to allow incoming SFTP connections?

A.    21/UDP
B.    21/TCP
C.    22/UDP
D.    22/TCP

Answer: D
SSH uses TCP port 22. All protocols encrypted by SSH, including SFTP, SHTTP, SCP, SExec, and slogin, also use TCP port 22.

A network administrator is asked to send a large file containing PII to a business associate.
Which of the following protocols is the BEST choice to use?

A.    SSH
B.    SFTP
C.    SMTP
D.    FTP

Answer: B
SFTP encrypts authentication and data traffic between the client and server by making use of SSH to provide secure FTP communications. As a result, SFTP offers protection for both the authentication traffic and the data transfer taking place between a client and server.

Which of the following is a difference between TFTP and FTP?

A.    TFTP is slower than FTP.
B.    TFTP is more secure than FTP.
C.    TFTP utilizes TCP and FTP uses UDP.
D.    TFTP utilizes UDP and FTP uses TCP.

Answer: D
FTP employs TCP ports 20 and 21 to establish and maintain client-to-server communications, whereas TFTP makes use of UDP port 69.

Which of the following is the default port for TFTP?

A.    20
B.    69
C.    21
D.    68

Answer: B
TFTP makes use of UDP port 69.

All the 1220 Questions and Answers in Braindump2go SY0-401 Exam Dumps are the latest SY0-401 Real Exam Questions not just SY0-401 Practice Tests Questions! Braindump2gp CompTIA SY0-401 Exam Dumps PDF&VCE Guarantees you 100% Pass SY0-401 Exam! Braindump2go Can Provide the Latest SY0-401 Dumps Questions from CompTIA Official Exam Center for You!

FREE DOWNLOAD: NEW UPDATED SY0-401 PDF Dumps & SY0-401 VCE Dumps from Braindump2go: http://www.braindump2go.com/sy0-401.html (1220 Q&A)

Braindump2go Testking Pass4sure Actualtests Others
$99.99 $124.99 $125.99 $189 $29.99/$49.99
Real Questions
Error Correction
Printable PDF
Premium VCE
VCE Simulator
One Time Purchase
Instant Download
Unlimited Install
100% Pass Guarantee
100% Money Back