CS/IS 196 Final Exam Review Final Exam: Wednesday, December 16
Final Exam Overview Chapters 13 through 25 Multiple Choice Similar to questions at the end of each chapter and in the homework assignments. 50 questions You will have the full class time to complete
Chapter 13 Intrusion Detection Systems and Network Security Honeypots IDS – Host Based – Network Based Antivirus Anti-spam
Chapter 14 Baselines Baselining Good password selection Operating System Hardening Updates: – Hotfix – Patch – Service pack
Chapter 15 Types of Attacks and Malicious Software Spoofing War dialing War driving Trojan Logic Bomb Worm Buffer overflow
Chapter 16 and Instant Messaging Spam encryption – PGP – SMIME
Chapter 17 Web Components http and https Encryption algorithms Ftp and Sftp SSL/TLS Cookies
Chapter 18 Secure Software Development Secure Development Lifecycle – Phases – Minimizing the attack surface Database attacks – SQL injection Spiral method
Chapter 19 Disaster Recovery, Business Continuity, and Organizational Policies Alternate sites – Hot – Warm – Cold RAID – 0 – 1 (disk mirroring) – 5 ( data spreading with parity ) Backups – Full – Differential – Incremental – Delta
Chapter 20 Risk Management Risk Threat Assesment Purpose of risk management SLE, ARO, ALE – Compute ALE given SLE and ARO – ALE = SLE * ARO
Chapter 21 Change Management Least privilege Separation of duties Change management application to software development
Chapter 22 Privilege Management Groups MAC DAC RBAC – Role Based – Rule Based Time of day restrictions Password policies – Enforce History – Maximum Age – Minimum Length
Chapter 23 Computer Forensics Message Digests Free space Slack space Volatility of data – CPU – RAM – Hard drive – Kernel tables
Chapter 24 Legal Issues and Ethics Law – Statutory – Common – Administrative Computer trespass Computer Fraud and Abuse Act CAN-SPAM Act Sarbanes-Oxley Act
Chapter 25 Privacy Freedom of Information Act (FOIA) Cookie cutter Country with poor privacy practices Family Education Records and Privacy Act of 1974
The Final Exam Bring a #2 pencil and an eraser. Mr. Hodges will supply the scantron forms. Closed book, closed note, closed computer.
Questions Any Questions?