CompTIA Security+ (SY0-601): Hardening
This section covers the process of hardening operating systems by securing configurations and removing unnecessary components. It also explains types of system updates, including patches, hotfixes, security and critical updates, and service packs, as well as the concept of a Trusted Operating System (TOS) designed to meet strict security standards.
Hardening
Act of configuring an operating system securely by updating it, creating rules and policies to govern it, and removing unnecessary applications and services
Key Terms
Hardening
Act of configuring an operating system securely by updating it, creating rules and policies to govern it, and removing u...
TOS
Trusted Operating System:
An operating system that meets the requirements set forth by government and has multilevel ...
Patch/Hotfix
A single problem-fixing piece of software for an operating system or application
Security Update
Software code that is issued for a product-specific security-related vulnerability
Critical Update
Software code for a specific problem addressing a critical, non-security bug in the software
Service Pack
A tested, cumulative grouping of patches, hotfixes, security updates, critical updates, and possibly some feature or design changes
Related Flashcard Decks
Study Tips
- Press F to enter focus mode for distraction-free studying
- Review cards regularly to improve retention
- Try to recall the answer before flipping the card
- Share this deck with friends to study together
| Term | Definition |
|---|---|
Hardening | Act of configuring an operating system securely by updating it, creating rules and policies to govern it, and removing unnecessary applications and services |
TOS | Trusted Operating System: Windows 7 (and newer) |
Patch/Hotfix | A single problem-fixing piece of software for an operating system or application |
Security Update | Software code that is issued for a product-specific security-related vulnerability |
Critical Update | Software code for a specific problem addressing a critical, non-security bug in the software |
Service Pack | A tested, cumulative grouping of patches, hotfixes, security updates, critical updates, and possibly some feature or design changes |
Patch Management: | Process of planning, testing, implementing, and auditing of software patches Large organizations centrally manage updates through an update server Disable the wuauserv service to prevent Windows Update from running automatically It is important to audit the client’s status after patch deployment |
Group Policy | A set of rules or policies that can be applied to a set of users or computer accounts within the operating system Access the Group Policy Editor by opening the Run prompt and enter gpedit |
Baselining | Process of measuring changes in the network, hardware, and software environment A baseline establishes what is normal so you can find deviations |
File Systems | Windows: NTFS, FAT32 |