answer
Which RAID type provides increased speed and data storage capability, but lacks redundancy
answer
Within the fdisk interactive menu, what character should be entered to view existing partitons
question
R-Tools R-Studio
answer
creates a virtual volume of a RAID image file, and then makes repairs on the virtual volume, which can then be restored to the original RAID
answer
Which RAID type utilizes a parity bit and allows for the failure of one drive without losing data
Don’t waste time
You can get a custom paper by one of our expert writers.
Get your custom essay
Helping students since 2015
answer
What is the name of the Microsoft solution for whole disk encryption
answer
is not a hot-swappable technology
question
intrusion detection system
answer
The _______ copies evidence of intrusions to an investigation workstation automatically for further analysis over the network.
answer
To create a new primary partition within the fdisk interactive utility, which letter should be typed
answer
When using a target drive that is FAT32 formatted, what is the maximum size limitation for split files
question
Advanced Forensic Format
answer
Which open-source acquisition format is capable of producing compressed or uncompressed image files, and uses the .afd extension for segmented image files
answer
can be used with the dcfldd command to compare an image file to the original medium.
answer
Which RAID type utilizes mirrored striping, providing fast access and redundancy
answer
The Linux command _______ can be used to list the current disk devices connected to the computer
answer
Which option below is not a hashing function used for validation checks
answer
The _______ command was developed by Nicholas Harbour of the Defense Computer Forensics Laboratory.
answer
The Linux command _____ can be used to write bit-stream data to files.
answer
The _______ switch can be used with the split command to adjust the size of segmented volumes created by the dd command.
answer
An investigator wants to capture all data on a SATA drive connected to a Linux system. What should the investigator use for the if= portion of the dcfldd command
answer
is the utility used by the ProDiscover program for remote access
answer
Which option below is not a Linux Live CD meant for use as a digital forensics tool
question
Spare acquisition
answer
collects fragments of unallocated data (RAID)
answer
Designed for data recovery
answer
Data is written to disk on a bit level
answer
Uses data stripping and dedicated parity
answer
Data is written in blocks
answer
Redundant parity on each disk