ACAS - 5.3 COURSE QUESTIONS AND
CORRECT ANSWERS
WhatA2isA2ACAS?A2-A2Ans--ACASA2isA2aA2network-
basedA2securityA2complianceA2andA2assessmentA2capability
designedA2toA2provideA2awarenessA2ofA2theA2securityA2postureA2andA2networkA2healthA2of
DoDA2networks.
WhichA2ofA2theA2followingA2bestA2describesA2theA2SecurityCenter?A2-A2Ans--
TheA2centralA2consoleA2thatA2providesA2continuousA2asset-basedA2securityA2and
complianceA2monitoring
AA2vulnerabilityA2isA2aA2weaknessA2orA2anA2attackA2thatA2canA2compromiseA2yourA2system
.A2-A2Ans--FalseA2(aA2vulnerabilityA2doesA2notA2includeA2anA2attack)
TheA2NessusA2scannerA2monitorsA2dataA2atA2rest,A2whileA2theA2PVSA2monitorsA2dataA2inA2
motion.A2-A2Ans--True
PVSA2detectsA2vulnerabilitiesA2basedA2onA2networkA2trafficA2insteadA2ofA2activelyA2scanni
ngA2hosts.A2-A2Ans--True
WhichA2ACASA2componentA2performsA2activeA2vulnerabilityA2andA2complianceA2scanning
?A2-A2Ans--Nessus
CMRSA2isA2aA2toolA2toA2provideA2DoDA2component-A2andA2enterprise-
levelA2situationalA2awarenessA2byA2quantitativelyA2displayingA2anA2organization'sA2securit
yA2posture.A2-A2Ans--True
SelectA2theA2TaskA2OrderA2forA2theA2ImplementationA2ofA2AssuredA2ComplianceA2Assess
mentA2SolutionA2(ACAS)A2forA2theA2Enterprise:A2-A2Ans--13-670
WhichA2pageA2loadsA2byA2defaultA2whenA2youA2logA2inA2toA2SecurityCenter?
A2SelectA2theA2bestA2answer.A2-A2Ans--Dashboard
WhichA2ofA2theA2followingA2pagesA2showA2theA2dateA2andA2timeA2ofA2theA2mostA2recentA2pl
uginA2updates?A2-A2Ans--Plugins,A2Feeds
WhichA2pageA2allowsA2youA2toA2setA2yourA2localA2timeA2zone?A2-A2Ans--Profile
WhatA2isA2anA2organization?A2-A2Ans--
AA2groupA2ofA2individualsA2whoA2areA2responsibleA2forA2aA2setA2ofA2commonA2assets
WhatA2isA2aA2scanA2zone?A2-A2Ans--
AA2definedA2staticA2rangeA2ofA2IPA2addressesA2withA2anA2associatedA2NessusA2scanner(s)
, WhatA2isA2theA2maximumA2sizeA2ofA2aA2SecurityCenterA25A2Repository?A2-A2Ans--32A2GB
TheA2IPA2address(es)A2youA2areA2scanningA2mustA2beA2containedA2inA2bothA2theA2definitio
nA2ofA2theA2scanA2zoneA2andA2theA2definitionA2ofA2theA2repository.A2-A2Ans--True
WhatA2SecurityCenterA2roleA2isA2responsibleA2forA2settingA2upA2scanA2zones?A2-A2Ans--
Administrator
HowA2canA2youA2getA2yourA2SecurityCenterA2pluginA2updates?A2-A2Ans--
Automatically,A2fromA2DISA'sA2pluginA2server,A2ManuallyA2fromA2theA2DoDA2PatchA2Repos
itory
TheA2SecurityCenterA2PluginsA2menuA2displaysA2aA2listA2ofA2scriptA2filesA2usedA2byA2Ness
usA2andA2PVSA2scannersA2toA2collectA2andA2interpretA2vulnerability,A2compliance,A2andA2c
onfigurationA2data.A2-A2Ans--True
WhichA2ofA2theA2followingA2areA2optionsA2youA2canA2considerA2forA2scanningA2stand-
aloneA2networks?A2-A2Ans--
InstallA2bothA2NessusA2andA2SecurityCenterA2onA2aA2LinuxA2LaptopA2usingA2Kickstart,A2Ins
tallA2bothA2NessusA2andA2SecurityCenterA2inA2virtualA2machinesA2onA2aA2WindowsA27A2lap
top,A2DetachA2aA2NessusA2scannerA2fromA2itsA2SecurityCenterA2forA2scanningA2purposesA
2andA2thenA2reattachA2toA2SecurityCenterA2toA2uploadA2scanA2results
ComponentsA2ofA2anA2ActiveA2VulnerabilityA2ScanA2consistA2of:A2aA2policy,A2credentials,A2
scanA2zone,A2schedule,A2_________,A2andA2__________.A2-A2Ans--
Repository,A2TargetA2list
_________A2areA2administrative-
levelA2usernamesA2andA2passwordsA2(orA2SSHA2keypairs)A2usedA2inA2authenticatedA2scan
s?A2-A2Ans--Credentials
YouA2canA2associateA2multipleA2credentialsA2withA2aA2singleA2scan.A2-A2Ans--True
NetworksA2usingA2DynamicA2HostA2ConfigurationA2ProtocolA2(DHCP)A2requireA2thatA2thisA
2ActiveA2ScanA2settingA2beA2enabledA2toA2properlyA2trackA2hosts.A2-A2Ans--
TrackA2hostsA2whichA2haveA2beenA2issuedA2IPA2addresses
WhichA2typeA2ofA2scanA2obtainsA2informationA2byA2authenticatingA2toA2theA2hostA2toA2acce
ssA2resourcesA2notA2availableA2overA2theA2network.A2-A2Ans--Credentialed
YouA2mayA2onlyA2selectA2oneA2importA2repositoryA2perA2scan.A2-A2Ans--True
OnceA2aA2scanA2isA2running,A2youA2cannotA2pauseA2orA2stopA2theA2scanA2untilA2itA2hasA2co
mpletedA2running.A2-A2Ans--False
CORRECT ANSWERS
WhatA2isA2ACAS?A2-A2Ans--ACASA2isA2aA2network-
basedA2securityA2complianceA2andA2assessmentA2capability
designedA2toA2provideA2awarenessA2ofA2theA2securityA2postureA2andA2networkA2healthA2of
DoDA2networks.
WhichA2ofA2theA2followingA2bestA2describesA2theA2SecurityCenter?A2-A2Ans--
TheA2centralA2consoleA2thatA2providesA2continuousA2asset-basedA2securityA2and
complianceA2monitoring
AA2vulnerabilityA2isA2aA2weaknessA2orA2anA2attackA2thatA2canA2compromiseA2yourA2system
.A2-A2Ans--FalseA2(aA2vulnerabilityA2doesA2notA2includeA2anA2attack)
TheA2NessusA2scannerA2monitorsA2dataA2atA2rest,A2whileA2theA2PVSA2monitorsA2dataA2inA2
motion.A2-A2Ans--True
PVSA2detectsA2vulnerabilitiesA2basedA2onA2networkA2trafficA2insteadA2ofA2activelyA2scanni
ngA2hosts.A2-A2Ans--True
WhichA2ACASA2componentA2performsA2activeA2vulnerabilityA2andA2complianceA2scanning
?A2-A2Ans--Nessus
CMRSA2isA2aA2toolA2toA2provideA2DoDA2component-A2andA2enterprise-
levelA2situationalA2awarenessA2byA2quantitativelyA2displayingA2anA2organization'sA2securit
yA2posture.A2-A2Ans--True
SelectA2theA2TaskA2OrderA2forA2theA2ImplementationA2ofA2AssuredA2ComplianceA2Assess
mentA2SolutionA2(ACAS)A2forA2theA2Enterprise:A2-A2Ans--13-670
WhichA2pageA2loadsA2byA2defaultA2whenA2youA2logA2inA2toA2SecurityCenter?
A2SelectA2theA2bestA2answer.A2-A2Ans--Dashboard
WhichA2ofA2theA2followingA2pagesA2showA2theA2dateA2andA2timeA2ofA2theA2mostA2recentA2pl
uginA2updates?A2-A2Ans--Plugins,A2Feeds
WhichA2pageA2allowsA2youA2toA2setA2yourA2localA2timeA2zone?A2-A2Ans--Profile
WhatA2isA2anA2organization?A2-A2Ans--
AA2groupA2ofA2individualsA2whoA2areA2responsibleA2forA2aA2setA2ofA2commonA2assets
WhatA2isA2aA2scanA2zone?A2-A2Ans--
AA2definedA2staticA2rangeA2ofA2IPA2addressesA2withA2anA2associatedA2NessusA2scanner(s)
, WhatA2isA2theA2maximumA2sizeA2ofA2aA2SecurityCenterA25A2Repository?A2-A2Ans--32A2GB
TheA2IPA2address(es)A2youA2areA2scanningA2mustA2beA2containedA2inA2bothA2theA2definitio
nA2ofA2theA2scanA2zoneA2andA2theA2definitionA2ofA2theA2repository.A2-A2Ans--True
WhatA2SecurityCenterA2roleA2isA2responsibleA2forA2settingA2upA2scanA2zones?A2-A2Ans--
Administrator
HowA2canA2youA2getA2yourA2SecurityCenterA2pluginA2updates?A2-A2Ans--
Automatically,A2fromA2DISA'sA2pluginA2server,A2ManuallyA2fromA2theA2DoDA2PatchA2Repos
itory
TheA2SecurityCenterA2PluginsA2menuA2displaysA2aA2listA2ofA2scriptA2filesA2usedA2byA2Ness
usA2andA2PVSA2scannersA2toA2collectA2andA2interpretA2vulnerability,A2compliance,A2andA2c
onfigurationA2data.A2-A2Ans--True
WhichA2ofA2theA2followingA2areA2optionsA2youA2canA2considerA2forA2scanningA2stand-
aloneA2networks?A2-A2Ans--
InstallA2bothA2NessusA2andA2SecurityCenterA2onA2aA2LinuxA2LaptopA2usingA2Kickstart,A2Ins
tallA2bothA2NessusA2andA2SecurityCenterA2inA2virtualA2machinesA2onA2aA2WindowsA27A2lap
top,A2DetachA2aA2NessusA2scannerA2fromA2itsA2SecurityCenterA2forA2scanningA2purposesA
2andA2thenA2reattachA2toA2SecurityCenterA2toA2uploadA2scanA2results
ComponentsA2ofA2anA2ActiveA2VulnerabilityA2ScanA2consistA2of:A2aA2policy,A2credentials,A2
scanA2zone,A2schedule,A2_________,A2andA2__________.A2-A2Ans--
Repository,A2TargetA2list
_________A2areA2administrative-
levelA2usernamesA2andA2passwordsA2(orA2SSHA2keypairs)A2usedA2inA2authenticatedA2scan
s?A2-A2Ans--Credentials
YouA2canA2associateA2multipleA2credentialsA2withA2aA2singleA2scan.A2-A2Ans--True
NetworksA2usingA2DynamicA2HostA2ConfigurationA2ProtocolA2(DHCP)A2requireA2thatA2thisA
2ActiveA2ScanA2settingA2beA2enabledA2toA2properlyA2trackA2hosts.A2-A2Ans--
TrackA2hostsA2whichA2haveA2beenA2issuedA2IPA2addresses
WhichA2typeA2ofA2scanA2obtainsA2informationA2byA2authenticatingA2toA2theA2hostA2toA2acce
ssA2resourcesA2notA2availableA2overA2theA2network.A2-A2Ans--Credentialed
YouA2mayA2onlyA2selectA2oneA2importA2repositoryA2perA2scan.A2-A2Ans--True
OnceA2aA2scanA2isA2running,A2youA2cannotA2pauseA2orA2stopA2theA2scanA2untilA2itA2hasA2co
mpletedA2running.A2-A2Ans--False