CNAB ACTUAL FINALS QUESTIONS AND
ANSWERS SURE A+
✔✔Kerebros client side .dll - ✔✔kerebros.dll
✔✔Kerebros server side .dll - ✔✔kdcsvc.dll
✔✔kerebros key distribution center (KDC) - ✔✔domain controllers act as KDCs, LSA
uses kdcsvc.dll
✔✔kerebros- realm - ✔✔the collection of computers/accounts secured by the KDC
✔✔authentication service - ✔✔issues the Ticket Granting Ticket (TGT) which serves as
proof of authentication
✔✔Ticket-Granting Ticket (TGT) - ✔✔user's proof that they provided the correct
credentials during initial logon
✔✔ticket granting service (TGS) - ✔✔responsible for issuing Service Tickets which
allow the user access to resources on the network
✔✔service ticket - ✔✔verified by a resource provider to allow user access to specific
resources
✔✔session key - ✔✔initial session key is the password hash of the user attempting to
logon
✔✔1st authentication service exchange step - ✔✔client sends a clear text request to
authenticate message to the AS
✔✔2nd authentication service exchange step - ✔✔AS checks for user in AD, AS sends
back encrypted SK and TGT
,✔✔1st step of TGS exchange - ✔✔client sends encrypted TGT, the identity of
requested service and authentication
✔✔HKEY_USERS (HKU) - ✔✔contains a SID sub-key for all loaded user profiles.
✔✔HKEY_LOCAL_MACHINE (HKLM) - ✔✔contains specific information about the
hardware, software, and preferences for all users who log into the system.
✔✔HKEY_CLASSES_ROOT (HKCR) - ✔✔is used to associate file types with programs
that are used to open them.
✔✔HKEY_CURRENT_USER (HKCU) - ✔✔contains user profile environment settings of
the interactively logged on user.
✔✔HKEY_CURRENT_CONFIG (HKCC) - ✔✔used to establish the current hardware
configuration profile
✔✔FTP (Data) - ✔✔TCP 20
✔✔FTP (Control) - ✔✔TCP 21
✔✔SSH - ✔✔TCP 22
✔✔Telnet - ✔✔TCP 23
✔✔SMTP - ✔✔TCP 25
✔✔DNS (Queries) - ✔✔UDP 53
✔✔DNS (Zone Transfers) - ✔✔TCP 53
✔✔DHCP - ✔✔UDP 67/68
used by host to obtain an IP address from a DHCP server
✔✔DORA - ✔✔Discovery, Offereing, Request, Acknowledge = DHCP sessions four
step process
✔✔TFTP - ✔✔UDP 69
✔✔HTTP - ✔✔TCP 80
✔✔IMAP4 - ✔✔TCP 143
enables search
, ✔✔SNMP - ✔✔UDP 161/162
✔✔LDAP - ✔✔TCP 389
✔✔HTTPS - ✔✔TCP 443
✔✔RLOGIN - ✔✔TCP 513
✔✔NETBIOS (name service) - ✔✔UDP 137
✔✔NETBIOS (datagram service) - ✔✔UDP 138
✔✔NETBIOS (session service) - ✔✔UDP 139
✔✔RPC - ✔✔TCP 135
✔✔SMB - ✔✔TCP 445
✔✔RDP - ✔✔TCP & UDP 3389
✔✔WinRM - ✔✔TCP 5985/5986
✔✔runlevel 0 - ✔✔Halt mode All processes terminated
✔✔runlevel 1 - ✔✔Single-user mode Used to perform administrative tasks to this
system.
✔✔runlevel 2 - ✔✔Multi-user mode Allows users to access the system
✔✔runlevel 3 - ✔✔Full multi-use mode Same as multi-user, but includes network
services.
✔✔runlevel 4 - ✔✔User-defined mode Not specified by system. Universally defined and
customizable.
✔✔runlevel 5 - ✔✔X11 Default; multi-user, network services and X-windows display
manager (X11).
✔✔runlevel 6 - ✔✔Reboot mode All processes terminated; system is gracefully
rebooted.
✔✔ASCII null - ✔✔0
ANSWERS SURE A+
✔✔Kerebros client side .dll - ✔✔kerebros.dll
✔✔Kerebros server side .dll - ✔✔kdcsvc.dll
✔✔kerebros key distribution center (KDC) - ✔✔domain controllers act as KDCs, LSA
uses kdcsvc.dll
✔✔kerebros- realm - ✔✔the collection of computers/accounts secured by the KDC
✔✔authentication service - ✔✔issues the Ticket Granting Ticket (TGT) which serves as
proof of authentication
✔✔Ticket-Granting Ticket (TGT) - ✔✔user's proof that they provided the correct
credentials during initial logon
✔✔ticket granting service (TGS) - ✔✔responsible for issuing Service Tickets which
allow the user access to resources on the network
✔✔service ticket - ✔✔verified by a resource provider to allow user access to specific
resources
✔✔session key - ✔✔initial session key is the password hash of the user attempting to
logon
✔✔1st authentication service exchange step - ✔✔client sends a clear text request to
authenticate message to the AS
✔✔2nd authentication service exchange step - ✔✔AS checks for user in AD, AS sends
back encrypted SK and TGT
,✔✔1st step of TGS exchange - ✔✔client sends encrypted TGT, the identity of
requested service and authentication
✔✔HKEY_USERS (HKU) - ✔✔contains a SID sub-key for all loaded user profiles.
✔✔HKEY_LOCAL_MACHINE (HKLM) - ✔✔contains specific information about the
hardware, software, and preferences for all users who log into the system.
✔✔HKEY_CLASSES_ROOT (HKCR) - ✔✔is used to associate file types with programs
that are used to open them.
✔✔HKEY_CURRENT_USER (HKCU) - ✔✔contains user profile environment settings of
the interactively logged on user.
✔✔HKEY_CURRENT_CONFIG (HKCC) - ✔✔used to establish the current hardware
configuration profile
✔✔FTP (Data) - ✔✔TCP 20
✔✔FTP (Control) - ✔✔TCP 21
✔✔SSH - ✔✔TCP 22
✔✔Telnet - ✔✔TCP 23
✔✔SMTP - ✔✔TCP 25
✔✔DNS (Queries) - ✔✔UDP 53
✔✔DNS (Zone Transfers) - ✔✔TCP 53
✔✔DHCP - ✔✔UDP 67/68
used by host to obtain an IP address from a DHCP server
✔✔DORA - ✔✔Discovery, Offereing, Request, Acknowledge = DHCP sessions four
step process
✔✔TFTP - ✔✔UDP 69
✔✔HTTP - ✔✔TCP 80
✔✔IMAP4 - ✔✔TCP 143
enables search
, ✔✔SNMP - ✔✔UDP 161/162
✔✔LDAP - ✔✔TCP 389
✔✔HTTPS - ✔✔TCP 443
✔✔RLOGIN - ✔✔TCP 513
✔✔NETBIOS (name service) - ✔✔UDP 137
✔✔NETBIOS (datagram service) - ✔✔UDP 138
✔✔NETBIOS (session service) - ✔✔UDP 139
✔✔RPC - ✔✔TCP 135
✔✔SMB - ✔✔TCP 445
✔✔RDP - ✔✔TCP & UDP 3389
✔✔WinRM - ✔✔TCP 5985/5986
✔✔runlevel 0 - ✔✔Halt mode All processes terminated
✔✔runlevel 1 - ✔✔Single-user mode Used to perform administrative tasks to this
system.
✔✔runlevel 2 - ✔✔Multi-user mode Allows users to access the system
✔✔runlevel 3 - ✔✔Full multi-use mode Same as multi-user, but includes network
services.
✔✔runlevel 4 - ✔✔User-defined mode Not specified by system. Universally defined and
customizable.
✔✔runlevel 5 - ✔✔X11 Default; multi-user, network services and X-windows display
manager (X11).
✔✔runlevel 6 - ✔✔Reboot mode All processes terminated; system is gracefully
rebooted.
✔✔ASCII null - ✔✔0