刷题
导入试题
【单选题】
Which command do you enter to enable authentication for OSPF on an interface?___
A. router(config-if)#ip ospf message-digest-key 1 md5 CIS COPASS
B. router(config-if)#ip ospf authentication message-digest
C. router(config-if)#ip ospf authentication-key CISCOPASS
D. router(config-if)#area 0 authentication message-digest
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
B
解析
暂无解析
相关试题
【单选题】
What feature defines a campus area network?___
A. It has a single geographic location
B. It lacks external connectivity.
C. It has a limited number of segments.
D. It has limited or restricted Internet access
【单选题】
Which type of attack most commonly involves a direct attack on a network?___
A. :phishing
B. Trojan horse
C. denial of service
D. social engineering
【单选题】
What information does the key length provide in an encryption algorithm?___
A. the cipher block size
B. the hash bloc k size
C. the number of permutations
D. the packet size
【单选题】
How do you verify TaCACS+ connectivity to a device?___
A. You successfully log in to the device by using the local credentials
B. You connect via console port and receive the login prompt.
C. You connect to the device using SSH and receive the login prompt.
D. You successfully log in to the device by using ACS credentials
【单选题】
Which term best describes the concept of preventing the modification of data in transit and in storage?___
A. availability
B. confidentially
C. fidelity
D. integrity
【单选题】
Which loS command is used to define the authentication key for ntp?___
A. switch(config )#ntp authentication-key 1 mds Clcs
B. switch(config )#ntp authenticate
C. switch(config)#ntp trusted-key 1
D. switch(config)#ntp source 192.168.0.1
【单选题】
What is true about the cisco lOS Resilient Configuration feature ?___
A. The feature can be disabled through a remote session
B. There is additional space required to secure the primary cisco lOS image file.
C. The feature automatically detects image or configuration version mismatch.
D. Remote storage is used for securing files
【单选题】
When is the default deny all policy an exception in zone-based firewalls?___
A. when traffic terminates on the router via the self zone
B. when traffic traverses two interfaces in different zones
C. when traffic traverses two interfaces in the same zone
D. when traffic sources from the router via the self zone
【单选题】
.If an access port is assigned as an isolated port in a PVLAN, which network ports can it communicate with?___
A. promiscuous ports in the same PLVAN
B. isolated ports in the same PVLAN
C. all ports in the same PAVLAN at ILAR
D. all ports in the adjacent PVLAN
【单选题】
Which IPSEC mode is used to encypt traffic directly between a client and a server VPN endpoint?___
A. quick mode
B. transport mode
C. aggressive mode
D. tunnel mode
【单选题】
Which command do you enter to verify that a vpn connection is established between two endpoints and that the connection is passing traffic? ___
A. Firewall#sh crypto session
B. Firewall#debug crypto isakmp
C. Firewall#tsh crypto ipsec sa
D. Firewall#sh crypto isakmp sa
【单选题】
which type of Pvlan port allows communication from all port types?___
A. isolated
B. in -line
C. community
D. promiscuous
【单选题】
Which command do you enter to configure your firewall to conceal internal addresses?___
A. no ip directed-broadcast
B. no ip logging facility
C. no proxy-arp
D. no ip inspect audit-trial
E. no ip inspect
F. route
【单选题】
Which feature defines a campus area network? ___
A. It has a limited number of segments.
B. It has limited or restricted Internet access
C. It lacks ex1ternal connectivity.
D. It has a single geographic location
【单选题】
What technology can you use to provide data confidentiality data integrity and data origin authentication on your network?___
A. IPSec
B. Certificate Authority
C. IKE
D. Data
E. ncryption Standards
【单选题】
which standard is a hybrid protocol that uses oakley and skerne ke y exchanges is an ISAKMP framework?___
A. SHA
B. IPSec
C.
D. ES
【单选题】
What is the actual los privilege level of User Exec mode?___
A. 1
B. 0
C. 5
D. 15
【单选题】
What is the effect of the asa command crypto isakmp nat-traversal?___
A. It opens port 500 only on the out side interface
B. It opens port 500 only on the inside interface
C. It opens port 4500 on all interfaces that are IPSec enabled
D. It opens port 4500 only on the out side interfac
【单选题】
Which Fire POWER preproce ssor engine is used to prevent SYN attacks?___
A. Inline normalization
B. IP Defragmentation
C. Ports can
D. etection
【单选题】
Which NAT type allows objects or groups to reference an IP address ?___
A. identity NAt
B. static NAT
C. dynamic
D. dynamic NAT
【单选题】
Which Auto NAT policies are processed first?___
A. Dynamic NAT with longest prefix
B. Dynamic NAT with shortest prefix
C. static NAT with longest prefix
D. static NAT with shortest prefix
【单选题】
Which feature allows a dynamic Pat pool to se lect the next address in the pat pool instead of the next port of an existing address?___
A. next IP
B. round robin
C. dynamic rotation
D. NAT address rotation
【单选题】
Which IPS detection method can you use to detect attacks that are based on the attackers IP address?___
A. anomally-based
B. policy-based
C. signature-based
D. reputation-based
【单选题】
Which type of encryption technology has the broadest platform support?___
A. software
B. middleware
C. file-level
D. hardware
【单选题】
Which type of address translation supports the initiation of comm unications bidirectionally ?___
A. multi-session PAT
B. dynamic NAT
C. dynamic PAT
D. static NAT
【单选题】
Which label is given to a person who uses existing computer scripts to hack into computers while lacking the expertise to write the own?___
A. script kiddy
B. white hat hacker
C. hacktivist
D. phreaker
【单选题】
What is the primary purpose of a defined rule in an IPS?___
A. to configure an event action that takes place when a signature is triggered
B. to define a set of actions that occur when a specific user logs in to the system
C. to configure an event action that is pre-defined by the system administrator
D. to detect internal attacks
【单选题】
Which option is the default valuce for the Diffie- Hell man group when configuring a site-to-site VPn on an asa device ?___
A. Group 1
B. Group 2
C. Group 5
D. Group 7
【单选题】
Which feature filters CoPP packets?___
A. access control lists
B. class maps
C. policy maps
D. route maps
【单选题】
Which command is used in global configuration mode to enable AAA?___
A. configure-model aaa
B. configure aaa-modelA
C. aaa new-model
D. aaa
E. XEC
【单选题】
Which statement about the given configuration is true?___
A. The single-connection command causes the device to establish one connection for all TACACS
B. The single-connection command causes the device to process one TacAcs request and then move to the next server
C. The timeout com mand causes the device to move to the next server after 20 seconds of TACACS inactive
【多选题】
What are two well-known security terms?___
A. phishing//网络钓鱼
B. ransomware //勒索软件
C. BPDU guard
D. LACP
E. hair-pinning
【多选题】
Which two commands must you enter to securely archive the primary bootset of a device___
A. router(config )#secure boot-config
B. router(config)#auto secure
C. router(config)#secure boot-image
D. router(config)#service passw ord-encryption
【多选题】
Which two functions can SIEM provide ?___
A. correlation between logs and events from multiple systems
B. event aggregation that allows for reduced log storage requirements
C. proactive malware analysis to block malicious traffic
D. dual-factor authentication
E. centralized firewall management
【多选题】
Which two features of Cisco Web Reputation tracking can mitigate web-based threats?___
A. buffer overflow filterin dhsuowip
B. Bayesian filters
C. web reputation filters
D. outbreak filtering
E. exploit filtering
【多选题】
What are two challenges when deploying host- level IPS? ___
A. The deployment must support multiple operating systems.
B. It is unable to provide a complete networ k picture of an attack.
C. It is unable to determine the outcome of e very attack that it detects
D. It does not provide protection for offsite computers
E. It is unable to detect fragmentation attacks
【多选题】
Which technology can be used to rate data fidelity and to provide an authenticated hash for data?___
A. file reputation
B. file analysis
C. signature updates
D. network blocking
【多选题】
Which two statements about host-based iPS solutions are true?___
A. It uses only signature-based polices
B. It can be deployed at the perimeter.
C. It can be have more restrictive policies than network-based IPS
D. it works with deployed firewall
E. It can generate alerts based on be havior at the de sto
【多选题】
When two events would cause the state table of a stateful firewall to be updated? ___
A. when a packet is evaluated against the outbound access list and is denied
B. when a con nection is created
C. when rate-limiting is applied
D. when a connection s timer has expired within the state table.
E. when an outbound packet is forwarded to the outbound interface
【多选题】
Which two characteristics apply to an intrusion Prevention System(IPS)?___
A. Cannot drop the packet on its own
B. Cabled directly inline with the flow of the network traffic
C. Runs in promiscuous mode wat
D. Does not add delay to the original traffic
E. Can drop traffic based on a set of rules
推荐试题
【单选题】
中国共产党党员必须 ,不惜牺牲个人的一切,为实现共产主义奋斗终身。___
A. 全心全意为人民服务
B. 为人民服务
C. 从事志愿服务
【单选题】
发展党员,必须把 放在首位,经过党的支部,坚持个别吸收的原则。___
A. 能力水平
B. 所做贡献
C. 政治标准
【单选题】
预备党员的义务同正式党员一样。预备党员的权利,除了没有表决权、选举权和 以外,也同正式党员一样。___
A. 被选举权
B. 知情权
C. 发言权
【单选题】
党员如果没有正当理由,连续 不参加党的组织生活,或不交纳党费,或不做党所分配的工作,就被认为是自行脱党。___
A. 三个月
B. 六个月
C. 十二个月
【单选题】
党的民主集中制的基本原则之一是: ,少数服从多数,下级组织服从上级组织,全党各个组织和全体党员服从党的全国代表大会和中央委员会。___
A. 党员个人服从党的组织
B. 个人服从集体
C. 普通党员服从领导干部
【单选题】
党的最高领导机关,是党的全国代表大会和它所产生的 。___
A. 政治局
B. 中纪委
C. 中央委员会
【单选题】
凡是成立党的新组织,或是撤销党的原有组织,必须由 决定。___
A. 上级党组织
B. 乡镇党委
C. 县(市、区)委组织部
【单选题】
党组织讨论决定问题,必须执行 的原则。决定重要问题,要进行表决。___
A. 委员服从书记
B. 少数服从多数
C. 个人服从组织
【单选题】
党的全国代表大会每 年举行一次,由中央委员会召集。___
A. 三
B. 五
C. 七
【单选题】
党的省、自治区、直辖市的代表大会,设区的市和自治州的代表大会,县(旗)、自治县、不设区的市和市辖区的代表大会,每 年举行一次。___
A. 三
B. 五
C. 七
【单选题】
企业、农村、机关、学校、科研院所、街道社区、社会组织、人民解放军连队和其他基层单位,凡是有 以上的,都应当成立党的基层组织。___
A. 党员三人
B. 正式党员三人
C. 正式党员十人
【单选题】
党支部是党的基础组织,担负直接 、管理党员、监督党员和组织群众、宣传群众、凝聚群众、服务群众的职责。___
A. 教育党员
B. 引导党员
C. 劝导党员
【单选题】
对党员的纪律处分有五种:警告、严重警告、撤销党内职务、 、开除党籍。___
A. 记过
B. 留党检查
C. 留党察看
【单选题】
党员在留党察看期间没有表决权、 和被选举权。___
A. 选举权
B. 知情权
C. 发言权
【单选题】
对经过 以上培养教育和考察、基本具备党员条件的入党积极分子,在听取党小组、培养联系人、党员和群众意见的基础上,支部委员会讨论同意并报上级党委备案后,可列为发展对象。___
A. 半年
B. 一年
C. 三年
【单选题】
支部大会讨论接收预备党员时,要采取 进行表决。赞成人数超过应到会有表决权的正式党员的半数,才能通过接收预备党员的决议。___
A. 无记名投票方式
B. 举手方式
C. 实名投票方式
【单选题】
预备党员的预备期为 。预备期从支部大会通过其为预备党员之日算起。___
A. 半年
B. 一年
C. 三年
【单选题】
预备党员预备期满时,党支部认为需要继续考察和教育的,可以延长一次预备期,延长时间不能少于 ,最长不超过一年。___
A. 半年
B. 一年
C. 三年
【单选题】
中国共产党的宗旨是 。___
A. 实现社会主义现代化
B. 全心全意为人民服务
C. 实现共产主义
【单选题】
发展党员时对入党积极分子的考察期是 。___
A. 半年
B. 一年
C. 一年以上
【单选题】
留党察看最长不超过 。___
A. 一年
B. 两年
C. 三年
【单选题】
中国共产党人的初心和使命,就是为中国人民 ,为中华民族 。这个初心和使命是激励中国共产党人不断前进的根本动力。 ___
A. 谋幸福,谋未来
B. 谋生活,谋复兴
C. 谋幸福,谋复兴
D. 谋生活,谋未来
【单选题】
党的十九届四中全会指出,中国特色社会主义制度是党和人民在长期实践探索中形成的 ,我国国家治理一切工作和活动都依照中国特色社会主义制度展开,我国国家治理体系和治理能力是中国特色社会主义制度及其执行能力的集中体现。___
A. 治理制度体系
B. 科学制度体系
C. 特色制度体系
【单选题】
党的十九届四中全会强调,我国国家制度和国家治理体系具有 方面的显著优势。___
A. 四
B. 八
C. 十三
【多选题】
(多选题)全党要更加自觉地增强 、 、 、 ,既不走封闭僵化的老路,也不走改旗易帜的邪路,保持政治定力,坚持实干兴邦,始终坚持和发展中国特色社会主义。 ___
A. 道路自信
B. 理论自信
C. 制度自信
D. 文化自信
E. 思想自信
【多选题】
(多选题)党政军民学,东西南北中,党是领导一切的。必须增强 、 、 、 ,自觉维护党中央权威和集中统一领导,自觉在思想上政治上行动上同党中央保持高度一致。 ___
A. 政治意识
B. 大局意识
C. 核心意识
D. 看齐意识
E. 纪律意识
【判断题】
马克思列宁主义揭示了人类社会历史发展的规律,它的基本原理是正确的,具有强大的生命力
A. 对
B. 错
【判断题】
在特殊情况下,党的中央和省、自治区、直辖市委员会可以直接接收党员
A. 对
B. 错
【判断题】
党员的党龄,从预备期满转为正式党员之日算起
A. 对
B. 错
【判断题】
中共党员不可以有宗教信仰
A. 对
B. 错
【判断题】
凡是成立党的新组织,或者撤销党的原有组织,必须由上级党组织决定
A. 对
B. 错
【判断题】
中国共产党党员永远是劳动人民的普通一员。除了法律和政策规定范围内的个人利益和工作职权以外,所有共产党员都不得谋求任何私利和特权
A. 对
B. 错
【判断题】
中国共产党成立于1921年
A. 对
B. 错
【判断题】
开除党籍是党内的最高处分
A. 对
B. 错
【判断题】
“两学一做”学习教育,指的是“学党章党规、学系列讲话,做合格党员”学习教育
A. 对
B. 错
【判断题】
“不忘初心、牢记使命”主题教育的总要求是守初心、担使命,找差距、抓落实
A. 对
B. 错
【判断题】
马克思列宁主义揭示了人类社会历史发展的规律,它的基本原理是正确的,具有强大的生命力
A. 对
B. 错
【判断题】
在特殊情况下,党的中央和省、自治区、直辖市委员会可以直接接收党员
A. 对
B. 错
【判断题】
党员的党龄,从预备期满转为正式党员之日算起
A. 对
B. 错
【判断题】
预备党员可以担任党支部书记
A. 对
B. 错
欢迎使用我爱刷题
×
微信搜索我爱刷题小程序
温馨提示
×
请在电脑上登陆“www.woaishuati.com”使用