Several new components have been added to a mission-critical server, and corporate policy states all new components must meet server hardening requirements. Which of the following should be applied?
A. Definition updates
B. Driver updates
C. OS security updates
D. Application updates
Show Answer
Correct Answer: B
Explanation: Because new components have been added to the server, their drivers should be updated to ensure compatibility and address any driver-related security issues. OS security updates are important for hardening generally, but driver updates are the option directly tied to the new components.
Question 122
Which of the following attacks is the most difficult to mitigate with technology?
A. Ransomware
B. Backdoor
C. SQL injection
D. Phishing
Show Answer
Correct Answer: D
Explanation: Phishing is primarily a social-engineering attack that exploits human judgment and behavior. Technical controls such as spam filters and link scanning can reduce risk, but cannot reliably prevent every convincing phishing attempt; user awareness and verification practices are also needed.
Question 123
A systems administrator notices a newly added server cannot see any of the LUNs on the SAN. The SAN switch and the local HBA do not display any link lights. Which of the following is most likely the issue?
A. A single-mode fiber cable is used in place of multimode.
B. The switchport is on the wrong virtual SAN.
C. The HBA driver needs to be installed on the server.
D. The zoning on the fiber switch is wrong.
Show Answer
Correct Answer: A
Explanation: No link lights on either the SAN switch or HBA point to a physical-layer connection problem. An incompatible fiber cable is the most likely option; incorrect zoning or virtual SAN settings would not normally prevent the physical link from coming up.
Question 124
A technician is attempting to resolve an issue with a file server that is unable to download a file. Given the following output:
Which of the following would best allow this file to be read?
A. chown
B. sestatus
C. setenforce
D. getenforce
E. chmod
Show Answer
Correct Answer: C
Explanation: `setenforce` changes SELinux between enforcing and permissive mode. Temporarily switching to permissive mode can allow the file to be read if an SELinux policy is blocking access; the usual Unix permissions may already permit reading.
Question 125
An application needs 10GB of RAID 1 for log files, 20GB of RAID 5 for data files, and 20GB of RAID 5 for the operating system. All disks will be 10GB in capacity. Which of the following is the minimum number of disks needed for this application?
A. 6
B. 7
C. 8
D. 9
Show Answer
Correct Answer: C
Explanation: Assuming each requested RAID configuration is a separate array: RAID 1 needs 2 disks to provide 10GB usable, and each 20GB RAID 5 array needs 3 disks because one disk’s capacity is used for parity. Total: 2 + 3 + 3 = 8 disks.
Question 126
A server administrator just installed a new physical server and needs to harden the applications on the server. Which of the following best describes a method of application hardening?
A. Install the latest patches.
B. Disable unneeded hardware.
C. Set the boot order.
D. Enable a BIOS password.
Show Answer
Correct Answer: A
Explanation: Installing the latest patches fixes known vulnerabilities in applications. Disabling hardware, changing boot order, and setting a BIOS password are hardware or firmware security measures, not application hardening.
Sources:
https://www.cisecurity.org/advisory/critical-patches-issued-for-microsoft-products-march-10-2026_2026-021
Question 127
A server administrator is configuring a new server in a data center in another country. Which of the following technologies should the administrator use to complete this task?
A. IP KVM
B. Crash cart
C. Remote console
D. Serial connection
Show Answer
Correct Answer: A
Explanation: An IP KVM provides remote keyboard, video, and mouse access to the server, allowing the administrator to configure it even before the operating system is installed. A crash cart requires physical access, and a serial connection is less suitable for full server setup.
Question 128
A server administrator has been asked to implement a password policy that will help mitigate the chance of a successful brute-force attack. Which of the following password policies should the administrator implement first?
A. Lockout
B. Length
C. Complexity
D. Minimum age
Show Answer
Correct Answer: A
Explanation: An account lockout policy limits repeated failed login attempts, directly slowing or stopping an online brute-force attack. Password length and complexity make guesses harder, but lockout is the first control to implement for limiting attempts.
Question 129
An administrator needs to reconfigure a teamed network connection on a server in a remote data center. Which of the following will offer the most resilient connection while performing this change?
A. Use of an OOB solution
B. Use of a crash cart
C. Use of a VNC console
D. Use of an RDP console
Show Answer
Correct Answer: A
Explanation: An out-of-band (OOB) management connection uses a separate management path from the teamed network being reconfigured, so it is the most resilient way to maintain remote access during the change. VNC and RDP typically rely on the network being changed, while a crash cart requires someone physically at the server.
Question 130
Which of the following BEST describes the metric that is used to measure server downtime?
A. MTTR
B. BIA
C. RPO
D. SLA
Show Answer
Correct Answer: A
Explanation: MTTR (Mean Time to Repair/Recovery) measures the average time required to restore a server after an outage, so it is the metric used to measure downtime.
$19
Get all 361 questions with detailed answers and explanations
Instant download HTML + PDF delivered the moment payment clears.
Secure Stripe checkout we never see or store your card details.
7-day refund if files are defective see our refund policy.