PrepAway - Latest Free Exam Questions & Answers

The main risks that physical security components combat…

The main risks that physical security components combat are all of the following EXCEPT:

PrepAway - Latest Free Exam Questions & Answers

A.
SYN flood

B.
Physical damage

C.
Theft

D.
Tailgating

Explanation:
A SYN flood is a type of software attack on system. The defense against a SYN flood is also software-based,
not a physical component.
If an attacker sends a target system SYN packets with a spoofed address, then the victim system replies to the
spoofed address with SYN/ACK packets. Each time the victim system receives one of these SYN packets it
sets aside resources to manage the new connection. If the attacker floods the victim system with SYN packets,
eventually the victim system allocates all of its available TCP connection resources and can no longer process
new requests. This is a type of DoS that is referred to as a SYN flood. To thwart this type of attack you can use
SYN proxies, which limit the number of open and abandoned network connections. The SYN proxy is a piece of
software that resides between the sender and receiver and only sends on TCP traffic to the receiving system if
the TCP handshake process completes successfully.
Incorrect Answers:
B: Physical damage is carried out by a person or people. Physical security components can reduce the risk of
physical damage. Therefore, this answer is incorrect.
C: Theft is carried out by a person or people. Physical security components can reduce the risk of theft.
Therefore, this answer is incorrect.
D: Tailgating is carried out by a person or people. Physical security components can reduce the risk of
tailgating. Therefore, this answer is incorrect.

Harris, Shon, All In One CISSP Exam Guide, 6th Edition, McGraw-Hill, 2013, p. 539


Leave a Reply