ACAS Study Questions
Study online at https://quizlet.com/_bqvqsa
1. The central console that provides continuous asset-based security and
compliance monitoring is ____________.: Tenable.sc
2. The tool that probes hosts and does active vulnerability and compliance
scanning is ______________________: Nessus Active Vulnerability Scanner
3. The tool that can manage scan data, run scans and pull in data from various
Nessus Agent is the ________________.: Nessus Manager
4. The Passive Scanner that detects vulnerabilities by sniffing network traf-
fic is the __________________________________________.: Nessus Network
Monitor
5. What is ACAS?: ACAS is a network-based security compliance and assessment
capability designed to provide awareness of the security posture and network health
of
DoD networks
6. What is the task order for the implementation of enterprise use of ACAS?: -
20-0020
7. T/F
A vulnerability is a weakness of attack that can compromise your system: -
FALSE
A vulnerability is not an attack, it is a weakness
8. T/F
The Nessus scanner monitors data at rest, while the NNM monitors data in
motion: TRUE
9. A lightweight program installed on the host that gives you visibility into
other IT assets that connect intermittently to the internet: A Nessus Agent
10. Which page loads by default when you log into Tenable.sc?: Dashboard
11. Which of the following pages displays the update schedule for updating
the active and passive plugins on security manager's interface?: Feeds
12. Which page allows you to set your local time zone?: Profile
13. What can you do on the plugins page of Tenable.sc?: Search for specific
plugins, view plugin details and source and upload custom plugins
14. A group of users responsible for a specific number of assets is an
_______________.: Organization
15. A defined static range of IP addresses with an associated Nessus scanner
is called a _____________________.: Scan Zone
16. A set of proprietary data files that stores scan results and resides on the
Tenable.sc is known as a _____________________.: Repository
17. A script file used to collect and interpret vulnerability, compliance and
configuration is a ____________.: Plugin
, ACAS Study Questions
Study online at https://quizlet.com/_bqvqsa
18. What is the maximum size of a Tenable.sc repository?: 32 GB
19. T/F
The IP address you are scanning must be contained in both the definition of
the scan zone and the definition of the repository: True
20. What Tenable.sc role is responsible for setting up scan zones?: Administra-
tor
21. Per the ACAS contract, how can you get your Tenable.sc plugin updates?-
: Automatically from DISA's plugin server or manually form the DoD patch repository
22. According to the ACAS contract, what are the three allowable options for
scanning stand alone networks?: 1) Install both Nessus and Tenable on a Lunix
system using the ACAS kickstart
2) Configure a windows OS with VM software, installing both Tenable and Nessus
on the virtual machines
3) Detach the Nessus system from Tenable and place it in the isolated enclave for
scanning. Once Scanning is complete, reattach Nessus to the tenable and manually
upload scan results
23. Components of an actve vulnerability scan consist of: a scan policy,
schedule, credentials, scan zone, import repo and ________________.: Targets
24. ____________ are administrative-level usernames and passwords (or SSH
keypairs) used in authenticated scans?: Credentials
25. Networks using dynamic host configuration protocol (SHCP) require that
this active scan setting be enabled to properly track hosts.: Track hosts which
have been issued new IP addresses
26. Which type of scan is able to run local checks?: Credentialed
27. T/F
You may only select one import repository per scan: TRUE
28. T/F
Once an active scan is running, you can't pause or stop it: FALSE
-Scans can be paused easily through the Tenable.sc user interface
29. Which port scan range value tells the scanner to scan only common
ports?: Default
30. ___________ directs the scanner to target a specific range of ports.: Port
scan range
31. ____________ limits the maximum number of targets that a single nessus
scanner will scan at the same time.: Max simultaneous checks per scan
32. ____________ ensures that harmful vulnerabilities are not exercised by the
scanner.: Enabling safe checks
Study online at https://quizlet.com/_bqvqsa
1. The central console that provides continuous asset-based security and
compliance monitoring is ____________.: Tenable.sc
2. The tool that probes hosts and does active vulnerability and compliance
scanning is ______________________: Nessus Active Vulnerability Scanner
3. The tool that can manage scan data, run scans and pull in data from various
Nessus Agent is the ________________.: Nessus Manager
4. The Passive Scanner that detects vulnerabilities by sniffing network traf-
fic is the __________________________________________.: Nessus Network
Monitor
5. What is ACAS?: ACAS is a network-based security compliance and assessment
capability designed to provide awareness of the security posture and network health
of
DoD networks
6. What is the task order for the implementation of enterprise use of ACAS?: -
20-0020
7. T/F
A vulnerability is a weakness of attack that can compromise your system: -
FALSE
A vulnerability is not an attack, it is a weakness
8. T/F
The Nessus scanner monitors data at rest, while the NNM monitors data in
motion: TRUE
9. A lightweight program installed on the host that gives you visibility into
other IT assets that connect intermittently to the internet: A Nessus Agent
10. Which page loads by default when you log into Tenable.sc?: Dashboard
11. Which of the following pages displays the update schedule for updating
the active and passive plugins on security manager's interface?: Feeds
12. Which page allows you to set your local time zone?: Profile
13. What can you do on the plugins page of Tenable.sc?: Search for specific
plugins, view plugin details and source and upload custom plugins
14. A group of users responsible for a specific number of assets is an
_______________.: Organization
15. A defined static range of IP addresses with an associated Nessus scanner
is called a _____________________.: Scan Zone
16. A set of proprietary data files that stores scan results and resides on the
Tenable.sc is known as a _____________________.: Repository
17. A script file used to collect and interpret vulnerability, compliance and
configuration is a ____________.: Plugin
, ACAS Study Questions
Study online at https://quizlet.com/_bqvqsa
18. What is the maximum size of a Tenable.sc repository?: 32 GB
19. T/F
The IP address you are scanning must be contained in both the definition of
the scan zone and the definition of the repository: True
20. What Tenable.sc role is responsible for setting up scan zones?: Administra-
tor
21. Per the ACAS contract, how can you get your Tenable.sc plugin updates?-
: Automatically from DISA's plugin server or manually form the DoD patch repository
22. According to the ACAS contract, what are the three allowable options for
scanning stand alone networks?: 1) Install both Nessus and Tenable on a Lunix
system using the ACAS kickstart
2) Configure a windows OS with VM software, installing both Tenable and Nessus
on the virtual machines
3) Detach the Nessus system from Tenable and place it in the isolated enclave for
scanning. Once Scanning is complete, reattach Nessus to the tenable and manually
upload scan results
23. Components of an actve vulnerability scan consist of: a scan policy,
schedule, credentials, scan zone, import repo and ________________.: Targets
24. ____________ are administrative-level usernames and passwords (or SSH
keypairs) used in authenticated scans?: Credentials
25. Networks using dynamic host configuration protocol (SHCP) require that
this active scan setting be enabled to properly track hosts.: Track hosts which
have been issued new IP addresses
26. Which type of scan is able to run local checks?: Credentialed
27. T/F
You may only select one import repository per scan: TRUE
28. T/F
Once an active scan is running, you can't pause or stop it: FALSE
-Scans can be paused easily through the Tenable.sc user interface
29. Which port scan range value tells the scanner to scan only common
ports?: Default
30. ___________ directs the scanner to target a specific range of ports.: Port
scan range
31. ____________ limits the maximum number of targets that a single nessus
scanner will scan at the same time.: Max simultaneous checks per scan
32. ____________ ensures that harmful vulnerabilities are not exercised by the
scanner.: Enabling safe checks