Oracle 1Z Oracle Solaris 10 Security Administrator Certified Expert. Download Full Version :

Similar documents
Actual4Test. Actual4test - actual test exam dumps-pass for IT exams

Exam Questions 1Z0-881

ITdumpsFree. Get free valid exam dumps and pass your exam test with confidence

Exam : : Sun Certified Security Administrator for the Solaris 10 OS. Title. Version : DEMO

SUN. Sun Certified System Administrator for the Solaris 10 Operating System Upgrade

Oracle 1Z Oracle Solaris 11 System Administration.

RBAC in Solaris 10. Darren J Moffat Staff Engineer, Networking & Security Sun Microsystems, Inc. 7 th October 2004

Oracle 1Z Oracle Solaris 10 Network Administrator(R) Certified Expert.

1Z Oracle Solaris 11 System Administration Exam Summary Syllabus Questions

CompTIA SY CompTIA Security+

Sun Certified System Administrator for the Solaris 10 OS Bootcamp

<Insert Picture Here> Getting Started with Solaris

Getting Started with OpenSolaris An Introduction for Technical Evaluators

Privilege Separation

UNIX/Linux Auditing. Baccam Consulting, LLC Training Events

Automating Centralized File Integrity Checks in the Solaris 10 Operating System

Oracle EXAM - 1Z Oracle Solaris Certified Associate Exam. Buy Full Product.

Pre-Assessment Answers-1

Subtitle: Join Sun Solaris Systems to Active Directory with Likewise

ISACA CISA. ISACA CISA ( Certified Information Systems Auditor ) Download Full Version :

Apple 9L Security Best Practices for Mac OS X v

Information System Audit Engr. Abdul-Rahman Mahmood MS, PMP, MCP, QMR(ISO9001:2000)

Traditional Access Permissions

Exam Questions VCP510-DT

jk0-022 Exam Questions Demo CompTIA Exam Questions jk0-022

Firewalls, Tunnels, and Network Intrusion Detection

Operating system security models

FreeBSD Advanced Security Features

Operating system hardening

UNIT 10 Ubuntu Security

050-v71x-CSESECURID RSA. RSA SecurID Certified Systems Engineer 7.1x

Oracle 1Z Oracle 9i: New Features for Administrators. Download Full Version :

Securing Linux Systems Before Deployment

JN Juniper JNCIS-SEC. JN0-331 Dumps JN0-331 Braindumps JN0-331 Real Questions JN0-331 Practice Test JN0-331 dumps free

CompTIA JK CompTIA Academic/E2C Security+ Certification. Download Full Version :

Cisco Prime Optical 9.5 Basic External Authentication

Operating System Security. 0Handouts: Quizzes ProsoftTraining All Rights Reserved. Version 3.07

Hardware. Ahmet Burak Can Hacettepe University. Operating system. Applications programs. Users

VPN and IPsec. Network Administration Using Linux. Virtual Private Network and IPSec 04/2009

Operating System Security

Configuring TACACS+ About TACACS+

TEL2821/IS2150: INTRODUCTION TO SECURITY Lab: Operating Systems and Access Control

Exam Questions SY0-501

Cisco Transport Manager Release 9.2 Basic External Authentication

PrepAwayExam. High-efficient Exam Materials are the best high pass-rate Exam Dumps

SY0-501 Exam Questions Demo CompTIA. Exam Questions SY CompTIA Security+ Version:Demo

Copyright Maxprograms

Oracle AD Controller

Solaris CIFS Service CIFS. Jarod Nash Revenue Product Engineering, Sun Microsystems, Inc. Seamless, ubiquitous, cross-protocol file sharing

Create User Profiles and Assign Privileges

Oracle 1Z Upgrade to Oracle Solaris 11 System(R) Administrator.

Microsoft TS: Microsoft SharePoint Server 2010, Configuring. Download Full Version :

Answers to Even- Numbered Exercises

Checkpoint Exam Check Point NG with Application Intelligence - Management I Version: 3.2 [ Total Questions: 241 ]

Oracle. Oracle Solaris 11 System Administration. 1z Version: Demo. [ Total Questions: 10] Web:

Exam Questions

Outline. UNIX security ideas Users and groups File protection Setting temporary privileges. Examples. Permission bits Program language components

Oracle Hierarchical Storage Manager and StorageTek QFS Software

Rate Based Satellite Control Protocol

Solaris 10 Security. Deep Dive. Glenn Brunette Distinguished Engineer Sun Microsystems, Inc.

Juniper JN Security, Specialist (JNCIS-SEC)

Microsoft Implementing a SQL Data Warehouse.

Int ernet w orking. Internet Security. Literature: Forouzan: TCP/IP Protocol Suite : Ch 28

PASS4TEST. IT Certification Guaranteed, The Easy Way! We offer free update service for one year

Platform Settings for Classic Devices

Integration Guide. Oracle Bare Metal BOVPN

Fundamentals of Network Security v1.1 Scope and Sequence

1Z Oracle. Oracle Solaris 10 System Administrator Certified Professional, Part II

CSE 390a Lecture 4. Persistent shell settings; users/groups; permissions

Centrify for ArcSight Integration Guide

VMware Identity Manager Administration

Applying Covering the Tracks from SANS Course SEC 504, Hacker Techniques, Exploits, and Incident Handling, to Mac OS X.

Examcollection.

Oracle 1Z Oracle Virtual Desktop Infrastructure 3 Essentials.

HP Instant Support Enterprise Edition (ISEE) Security overview

CST8207: GNU/Linux Operating Systems I Lab Seven Linux User and Group Management. Linux User and Group Management

1Z Oracle. Java Enterprise Edition 5 Enterprise Architect Certified Master

<Insert Picture Here> Oracle Solaris 11 Security

Case Study: Access Control. Steven M. Bellovin October 4,

Oracle 1Z Oracle Identity Governance Suite 11g PS3 Implementation Essentials.

To find all files on your file system that have the SUID or SGID bit set, execute:

Microsoft Recertification for MCSE: Server Infrastructure. Download Full Version :

Compliance Manager ZENworks Mobile Management 2.7.x August 2013

Operating system security

Why secure the OS? Operating System Security. Privilege levels in 80X86 processors. The basis of protection: Seperation. Privilege levels - A problem

User & Group Administration

Files (review) and Regular Expressions. Todd Kelley CST8207 Todd Kelley 1

Operating Systems Linux 1-2 Measurements Background material

Lab Authentication, Authorization, and Accounting

Virtual Private Networks (VPN)

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD SEGURIDAD EN REDES. NIVEL II. VERSION 2.0

RH-202. RedHat. Redhat Certified Technician on Redhat Enterprise Linux 4 (Labs)

Solaris TM 10 Security Overview

Authorizations, Profiles, Roles and the pfedit Command Author: Tim Wort

Microsoft MB Microsoft Dynamics CRM 2016 Installation. Download Full version :

Configuration of an IPSec VPN Server on RV130 and RV130W

Cyber Essentials Questionnaire Guidance

Exercise 4: Access Control and Filesystem Security

Case Studies in Access Control

Oracle Solaris 11 System Administration Student Guide - Volume I

Transcription:

Oracle 1Z0-881 Oracle Solaris 10 Security Administrator Certified Expert Download Full Version : https://killexams.com/pass4sure/exam-detail/1z0-881

QUESTION: 280 A security administrator is required to validate the integrity of a set of operating system files on a number of Solaris systems. The administrator decides to use the Solaris Fingerprint Database to validate configuration and data files as well as binaries and libraries. What command, available by default in Solaris 10, will help the security administrator collect the necessary information that will be used with the Solaris Fingerprint Database? A. md5sum B. digest C. encrypt D. elfsign E. cryptoadm Answer: B QUESTION: 281 Solaris 10 provides password history checking out of the box. Which name services currently support this feature? A. NIS B. NIS+ C. Kerberos D. local files Answer: D QUESTION: 282 To harden a newly installed Solaris OS, an administrator is required to make sure that syslogd is configured to NOT accept messages from the network. Which supported method can be used to configure syslogd like this? A. Run svcadm disable -t svc:/network/system-log. B. Edit /etc/default/syslogd to set LOG_FROM_REMOTE=NO. C. Edit /etc/rc2.d/s74syslog to start syslogd with the -t option. D. Edit /lib/svc/method/system-log to set LOG_FROM_REMOTE=NO. Answer: B 115

QUESTION: 283 Which two commands are part of Sun Update Connection? (Choose two.) A. /usr/bin/pkgadm B. /usr/bin/keytool C. /usr/sbin/smpatch D. /usr/sbin/patchadd E. /usr/bin/updatemanager Answer: C,E QUESTION: 284 You have been asked to grant the user ennovy, a member of the staff group, read and write access to the file /app/notes which has the following properties: ls -l /app/notes -rw-rw---- 1 root app 0 Jun 6 15:11 /app/notes Which options will NOT grant the user the ability to read and write the file? A. usermod -G app ennovy B. setfacl -m user:ennovy:rw- /app/notes C. setfacl -m group:staff:rw- /app/notes D. usermod -K defaultpriv=basic,file_dac_read,file_dac_write ennovy Answer: D QUESTION: 285 To allow a legacy system to connect to one of your hosts, you are required to enable remote login (rlogin) connections. However, you wish to disable the ability for users to use.rhosts files to allow password-less logins. You have enabled rlogin connections by running the following command: # svcadm enable network/login:rlogin Which file do you need to modify to disable the use of.rhosts files? A. /etc/pam.conf B. /etc/default/login C. /etc/default/rlogin D. /etc/inet/inetd.conf Answer: A 116

QUESTION: 286 Click the Exhibit button. A system administrator needs to minimize a freshly installed Solaris system. After verifying that the correct metacluster is installed, the administrator tries to further minimize the number of installed set-uid binaries. After inspection, the administrator finds a number of printing related binaries, reviewing the relevant contents of the /var/sadm/install/contents file. What is the correct command to remove these set-uid binaries in a supported way? A. pkgrm SUNWpcu B. rm /usr/bin/cancel /usr/bin/lp /usr/bin/lpset /usr/bin/lpstat /usr/bin/lpmove C. chmod u-s /usr/bin/cancel /usr/bin/lp /usr/bin/lpset /usr/bin/lpstat /usr/bin/lpmove D. chmod u-x /usr/bin/cancel /usr/bin/lp /usr/bin/lpset /usr/bin/lpstat /usr/bin/lpmove Answer: A QUESTION: 287 DRAG DROP Click the Task button. 117

Drag and drop question. Drag the items to the proper locations. Answer: 118

QUESTION: 288 While attempting to restart the cron service on a Solaris 10 system from the secadm account, a security administrator receives the following error message: secadm$ svcadm -v restart cron svcadm: svc:/system/cron:default: Couldn't create "restarter_actions" property group (permission denied). Which two actions will permit the secadm account to restart the cron service? (Choose two.) A. Assign the Cron Management rights profile to secadm. B. Assign the sys_admin privilege to the secadm account. C. Add the sys_suser_compat privilege to the secadm account. D. Add the secadm account to the /etc/cron/cron.allow file. E. Assign the solaris.smf.manage.cron authorization to secadm. Answer: A,E QUESTION: 289 A company has produced several inhouse applications that have to deal with authentication using passwords. The Solaris systems have been reconfigured to use the password history checking option. What is the impact of this change for their applications? A. All applications automatically benefit from the new password history checking. B. Only privilege aware applications will benefit from the password history checking. C. Every application has to be changed to call the new functions for password history checking. D. Applications which use the PAM framework will automatically use password history checking. Answer: D QUESTION: 290 Which item in the list would be specifically required for a VPN compared to a mode without encryption? A. Authentication Header (AH) B. Internet Key Exchange (IKE) C. Encapsulating Security Payload (ESP) D. Streams Control Transmission Protocol (SCTP) Answer: C 119

QUESTION: 291 You have been asked to let your manager's children run their homework assignments on one of the servers you administer. You have been promised that it will not impact the overall performance of the server, but you aren't sure, so you want to track how many resources they use. After you have created a new user called kids and assigned a new project called homework to the user, what do you need to do to gather the resource usage information? A. Enable Solaris Auditing for the kids user. B. Use the acctadm command to enable extended accounting for tasks. C. Use the poolcfg command to assign the homework project to a resource pool. D. Use the rctladm command to enable the syslog action for the homework project. Answer: B QUESTION: 292 A security administrator has created these "Restricted Commands" rights profiles in the /etc/security/exec_attr file that will be assigned to a number of application developers: $ grep "^Restricted Commands" /etc/security/exec_attr Restricted Commands:solaris:cmd:::/my/bin/progA:uid=yadm;gid=yadm Restricted Commands: solaris:cmd:::/my/bin/progb:uid=vadm;gid=vadm Restricted Commands:solaris:cmd:::/my/bin/progC:uid=oamd; gid=aadm Restricted Commands:solaris:cmd:::/my/bin/progD:uid=nadm;gid=badm Restricted Commands: solaris:cmd:::/my/bin/progd:uid=nadm;gid=cadm Restricted Commands:solaris:cmd:::/my/bin/progD:uid=eadm; gid=eadm Restricted Commands:solaris:cmd:::/my/bin/progD: As what UID and GID will the command /my/bin/progd run when the command is executed as followed by an application developer who has been assigned the "Restricted Commands" rights profile? A. UID nadm and GID badm B. UID nadm and GID cadm C. UID eadm and GID eadm D. UID and GID of the application developer Answer: A QUESTION: 293 You are configuring a new system to be used as an intranet web server. After you have installed the minimal amount of packages and patched the system, you added the appropriate web server packages (SUNWapch2r and SUNWapch2u). By default, the web server daemon will be started using UID webservd and the basic privilege set. To comply with the 120

company's policy of least privilege, you need to minimize the privileges that the web server will have. What will you modify to specify the privileges that the web service will run with? A. the PRIV_DEFAULT setting in /etc/security/policy.conf B. the defaultpriv setting of webserverd in /etc/user_attr C. the privileges property of the web service in the SMF repository D. the privs property of the web service in /etc/security/exec_attr Answer: C 121

For More exams visit https://killexams.com Kill your exam at First Attempt...Guaranteed!