Chapter 2Technologies and Tools

COMPTIA SECURITY+ EXAM OBJECTIVES COVERED IN THIS CHAPTER INCLUDE THE FOLLOWING:

  • images 2.1 Install and configure network components, both hardware- and software-based, to support organizational security.
    • Firewall
      • ACL
      • Application-based vs. network-based
      • Stateful vs. stateless
      • Implicit deny
    • VPN concentrator
      • Remote access vs. site-to-site
      • IPSec
        • Tunnel mode
        • Transport mode
        • AH
        • ESP
      • Split tunnel vs. full tunnel
      • TLS
      • Always-on VPN
    • NIPS/NIDS
      • Signature-based
      • Heuristic/behavioral
      • Anomaly
      • Inline vs. passive
      • In-band vs. out-of-band
      • Rules
      • Analytics
        • False positive
        • False negative
    • Router
      • ACLs
      • Antispoofing
    • Switch
      • Port security ...

Get CompTIA Security+ Review Guide, 4th Edition now with O’Reilly online learning.

O’Reilly members experience live online training, plus books, videos, and digital content from 200+ publishers.