A group of interactive telecommunication technologies that allow people in two or more locations to interact with two-way video and audio transmissions.
Card 283
Question
WAF
Answer
Web application firewall.
A firewall specifically designed to protect a web application, such as a web server.
A WAF inspects the contents of traffic to a web server, can detect malicious content
such as code used in a cross-scripting attack, and block it.
Card 284
Question
WAP
Answer
Wireless access point.
Sometimes called an access point (AP).
Provides wireless clients connectivity to a wired network.
Most WAPs use an omnidirectional antenna.
You can connect two WLANs together using high-gain directional Yagi antennas.
Increasing the power level of a WAP
increases the wireless coverage of the WAP.
Decreasing the power levels decreases the coverage.
Card 285
Question
WEP
Answer
Wired Equivalent Privacy.
Original wireless security protocol.
Had significant security flaws and was replaced with WPA, and ultimately WPA2.
WEP used RC4 incorrectly making it susceptible to IV attacks, especially when the attacker used packet injection techniques.
Card 286
Question
WIDS
Answer
Wireless intrusion detection system.
An IDS used for wireless networks.
Card 287
Question
WIPS
Answer
Wireless intrusion prevention system.
An IPS used for wireless networks.
Card 288
Question
WLAN
Answer
Wireless local area network.
Network connected wirelessly.
Card 289
Question
WPA
Answer
Wi-Fi Protected Access.
Replaced WEP as a wireless security protocol without replacing hardware.
Originally used TKIP with RC4 and later implementations support AES.
Superseded by WPA2.
In WPA cracking attacks, attackers capture the four-way authentication handshake and then use a brute force attack to discover the passphrase.
Card 290
Question
WPA2
Answer
Wi-Fi Protected Access II.
Security protocol used to protect wireless transmissions.
It supports CCMP for encryption, which is based on AES and is stronger than TKIP, which was originally released with WPA.
It uses an 802.1x server for authentication in WPA2 Enterprise mode and a preshared key for WPA2 Personal mode, also called WPA2-PSK.
Card 291
Question
WPS
Answer
Wi-Fi Protected Setup.
Allowed users to easily configure a wireless network, often by using only a PIN.
WPS brute force attacks can discover the PIN.
Card 292
Question
WTLS
Answer
Wireless Transport Layer Security.
Used to encrypt traffic for smaller wireless devices.
Card 293
Question
XML
Answer
Extensible Markup Language.
Used by many databases for inputting or exporting data.
XML uses formatting rules to describe the data.
Card 294
Question
XSRF
Answer
Cross-site request forgery.
Attackers use XSRF attacks to trick users into performing actions on web sites, such as making purchases, without their knowledge.
In some cases, it allows an attacker to steal cookies and harvest passwords.
Card 295
Question
XSS
Answer
Cross-site scripting.
Attackers use XSS to capture user information such as cookies.
Input validation techniques on the server-side help prevent XSS attacks by blocking HTML and JavaScript tags.
Many sites prevent the use of < and > characters to block cross-site scripting.
An improvement over TACACS developed by Cisco Systems and proprietary to Cisco systems.
TACACS+ is used more commonly.
Card 297
Question
SDN
Answer
Software Defined Networking
Using software to create an agile and flexible network solution, such as a virtualized server and storage infrastructure.
Card 298
Question
FAR
Answer
False Acceptance Rate
The likelihood that an unauthorized user will be authenticated into a system.
This is a term typically used with Biometrics.
Card 299
Question
FRR
Answer
False Rejection Rate
The likelihood that an authorized user will be rejected while trying to authenticate into a system.
This is a term typically used with Biometrics.
Card 300
Question
CER
Answer
Crossover Error Rate
The rate at which the FAR (false acceptance rate) and the FRR (false rejection rate) are equal. Biometric authentication methods typically should have their sensitivities adjusted to equalize the FAR and the FRR.
How to use this set
Read the preview and check whether the content and answers suit your learning goal. You can add the public set to your sets to study it. Your account shows the available actions.