If you choose to sign up to participate in SUN certification 310-301 exams, you should choose a good learning material or training course to prepare for the examination right now. Because SUN certification 310-301 exam is difficult to pass. If you want to pass the exam, you must have a good preparation for the exam.
DumpLeader can not only save you valuable time, but also make you feel at ease to participate in the exam and pass it successfully. DumpLeader has good reliability and a high reputation in the IT professionals. You can free download the part of SUN 310-301 exam questions and answers DumpLeader provide as an attempt to determine the reliability of our products. I believe you will be very satisfied of our products. I have confidence in our DumpLeader products that soon DumpLeader's exam questions and answers about SUN 310-301 will be your choice and you will pass SUN certification 310-301 exam successfully. It is wise to choose our DumpLeader and DumpLeader will prove to be the most satisfied product you want.
SUN 310-301 is a certification exam to test IT professional knowledge. DumpLeader is a website which can help you quickly pass the SUN certification 310-301 exams. Before the exam, you use pertinence training and test exercises and answers that we provide, and in a short time you'll have a lot of harvest.
Exam Code: 310-301
Exam Name: SUN (Sun Certified Security Administrator)
One year free update, No help, Full refund!
Total Q&A: 240 Questions and Answers
Last Update: 2013-11-15
DumpLeader IT expert team take advantage of their experience and knowledge to continue to enhance the quality of exam training materials to meet the needs of the candidates and guarantee the candidates to pass the SUN certification 310-301 exam which is they first time to participate in. Through purchasing DumpLeader products, you can always get faster updates and more accurate information about the examination. And DumpLeader provide a wide coverage of the content of the exam and convenience for many of the candidates participating in the IT certification exams except the accuracy rate of 100%. It can give you 100% confidence and make you feel at ease to take the exam.
If you buy the DumpLeader's products, we will not only spare no effort to help you pass the certification exam, but also provide a free update and upgrade service. If the official change the outline of the certification exam, we will notify customers immediately. If we have any updated version of test software, it will be immediately pushed to customers. DumpLeader can promise to help you succeed to pass your first SUN certification 310-301 exam.
310-301 Free Demo Download: http://www.dumpleader.com/310-301_exam.html
NO.1 How do you distinguish between denial of service attacks and programming errors?
A.You cannot make this distinction.
B.You examine the audit events for the process.
C.You verify that the process user ID is that of a valid user.
D.You check the binary against the Solaris Fingerprint Database.
Correct:A
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.2 Which setting in the /etc/system file limits the maximum number of user processes to 100 to
prevent a user from executing a fork bomb on a system?
A.set maxuprc = 100
B.set maxusers = 100
C.set user_procs = 100
D.set max_nprocs = 100
Correct:A
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.3 Which is a public key encryption algorithm?
A.AH
B.AES
C.RSA
D.PGP
E.IDEA
Correct:C
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.4 User fred runs a program that consumes all of the system's memory while continuously
spawning a new program. You decide to terminate all of fred's programs to put a stop to this. What
command should you use?
A.kill -u fred
B.pkill -U fred
C.passwd -l fred
D.kill `ps -U fred -o pid`
Correct:B
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.5 What cryptographic assurance is provided by public key cryptography that is NOT provided by
secret key cryptography?
A.integrity
B.confidentiality
C.authentication
D.non-repudiation
Correct:D
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.6 /var/adm/messages contains this output: Jan 28 21:23:18 mailhost in.telnetd[20911]: [ID 808958
daemon.warning] refused connect from ns.foo.com (access denied) Why was this line generated?
A.A user connecting from ns.foo.com failed to authenticate.
B.The user daemon is not allowed to log in from ns.foo.com.
C.A portscan was run against mailhost from ns.foo.com.
D.The TCP Wrapper configuration does not allow telnet connections from ns.foo.com.
Correct:D
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.7 Which two regular user PATH assignments expose the user to a Trojan horse attack? (Choose
two.)
A.PATH=/usr/bin:/bin
B.PATH=/usr/bin:/sbin:/usr/sbin
C.PATH=/usr/bin:/sbin:/usr/sbin:
D.PATH=.:/usr/bin:/sbin:/usr/sbin
Correct:C D
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.8 Which command generates client key pairs and adds them to the $HOME/.ssh directory?
A.ssh-add
B.ssh-agent
C.ssh-keygen
D.ssh-keyadd
Correct:C
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.9 Click the Exhibit button. Which connection demonstrates that telnet has been denied using TCP
Wrappers?
A.Connection 1
B.Connection 2
C.Connection 3
D.Connection 4
Correct:A
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.10 Which two types of host keys are supported by Solaris Secure Shell? (Choose two.)
A.AES
B.RSA
C.DSA
D.DES
E.3DES
Correct:B C
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.11 Which syslog facility level specification can be used to record unsuccessful attempts to su(1M)?
A.su.warning
B.cron.debug
C.kernel.alert
D.auth.warning
Correct:D
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.12 Which threat can be mitigated by setting the Open Boot PROM security mode to full?
A.system panics
B.booting into single user mode
C.remotely accessing the console
D.logging in as root at the console
Correct:B
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.13 What command loads a DSA identity into a Solaris Secure Shell authentication agent?
A.ssh-add
B.ssh-agent
C.ssh-keyadd
D.ssh-keyload
E.ssh-load-identity
Correct:A
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.14 Which command can customize the size for system log file rotation?
A.dmesg
B.logger
C.logadm
D.syslog
E.syslogd
Correct:C
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.15 Which cryptographic assurances are provided by SSL?
A.confidentiality, integrity, availability
B.authorization, confidentiality, message integrity
C.confidentiality, client authentication, server authentication
D.authentication, confidentiality, access control, non-repudiation
Correct:C
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.16 Which statement about denial of service attack is FALSE?
A.Denial of service is always preventable.
B.Multiple machines may be used as the source of the attack.
C.Service is denied on the victim host when a key resource is consumed.
D.A denial of service attack is an explicit attempt by an attacker to prevent legitimate users of a service
from using that service.
Correct:A
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.17 Which is uncharacteristic of a Trojan horse program used to escalate privileges?
A.It is installed in /usr/bin.
B.It is owned by a normal user.
C.It has the same name as a common program.
D.It contains additional functionality which the user does not expect.
Correct:A
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.18 The system administrator finds a Trojaned login command using md5 and the Solaris
Fingerprint Database. What is true about the system administrator's incident response tasks?
A.The server must be rebuilt.
B.BSM will identify the attacker.
C.All other replaced system files can be identified using md5 and the Solaris Fingerprint Database.
D.All other replaced system files can be identified using md5 and the Solaris Fingerprint Database and
replaced with trusted versions.
Correct:A
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.19 Which evasion technique can NOT be detected by system integrity checks?
A.installing a rootkit
B.adding user accounts
C.abusing an existing user account
D.installing a loadable kernel module
Correct:C
SUN exam prep 310-301 pdf 310-301 test questions 310-301
NO.20 Which two services support TCP Wrappers by default in the Solaris 9 OE? (Choose two.)
A.inetd
B.rpcbind
C.sendmail
D.automountd
E.Solaris Secure Shell
Correct:A E
SUN exam prep 310-301 pdf 310-301 test questions 310-301
DumpLeader offer the latest 3I0-012 exam material and high-quality PMI-100 pdf questions & answers. Our 00M-624 VCE testing engine and 200-120 study guide can help you pass the real exam. High-quality HP2-N43 dumps training materials can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.
Article Link: http://www.dumpleader.com/310-301_exam.html
没有评论:
发表评论