刷题
导入试题
【单选题】
___ system let you run more tlian one program at a time
A. : Application
B. :Software
C. : Real time
D. :Multitask
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
D
解析
暂无解析
相关试题
【单选题】
Small business may use___ for word processing
A. : microcomputers
B. :industrial computers
C. : mainframe computers
D. :supercomputers
【单选题】
Once you've made the Internet connection, you can send___ to any of computer user all around the w orld
A. :e-mail
B. :WWW
C. :ccc
D. :web station
【单选题】
Which statement about zone-based firewall configuration is true?___
A. You can assign an interface to more than one zone
B. Traffic is implicitly denied by de fault between interfaces in the same zone
C. The zone must be configured before it can be a ssigned
D. Traffic that is destined to or sourced from the Self zone is de nied by default
【单选题】
Refer to the exhibit line in this configuration prevents the help Desk user from modifying the interface configuration.___
A. Privilege exec level 10 interface
B. Privilege exec level 9 configure terminal
C. Privilege exec level 7 show start-up
D. Username HelpDesk privilege 6 password help
【单选题】
You have been tasked with blocking user access to websites that violate company policy, but the sites use dynamic IP addresses. What is the best practice for URl filtering to solve the problem?___
A. Enable URL filtering and use URL categorization to block the we bsites that violate company
B. Enable URL filtering and create a blacklist to block the websites that violate company policy
C. Enable URL filtering and create a whitelist to block the websites that violate company policy
D.
E. nable URL filtering and use URL categorization to allow only the websites that company policy allows users to access.
【单选题】
Within an 802. 1x-enabled network with the auth Fail feature configured, when does a switch port get placed into a restricted VLAN?___
A. When a conected client fails to authenticate after a certain number of attempts.
B. if a connected client does not support 802. 1x
C. when AAA new-model is ena bled
D. after a connected client exceeds a specified idle time
E. when 802. 1x is not globally enabled on the Cisco Catalyst switch
【单选题】
Which type of attack does a proxy firewall protect against ?___
A. cross-site scripting attack
B. worm traffic
C. port scanning
D. DDoS attacks
【单选题】
When an administrator initiates a device wipe command from the ISE, what is the immediate effect?___
A. It requests the administrator to choose between erasing all device data or only managed corporate data.
B. It requests the administrator to enter the device pin or password before proceeding with the operation
C. It notifies the device user and proceeds with the erase operation
D. It immediately erases all data on the device
【单选题】
What is a valid implicit permit rule for traffic that is traversing the ASa firewall?___
A. ARPs in both directions are permitted in transparent mode only
B. Unicast IPv4 traffic from a higher security interface to a lower security interface is permittee in routed mode only.
C. Unicast IPv6 traffic from a higher security interface to a lower security interface is permitted in transparent mode only.
D. Only BPDUs from a higher security interface to a lower secur ity interface are permitted in transparent mode.
E. Only BPDUs from a higher security interface to a lower secur ity interface are permitted in routed mode
【单选题】
A specific URL has been identified as containing malware. What action can you take to block users from accidentally visiting the URl and becoming infected with malware ?___
A. Enable URL filtering on the perimeter router and add the URls you want to block to the router's local URL list
B. Enable URL filtering on the perimeter firewall and add the URls you want to allow to the router's local URL list.
C. Enable URL filtering on the perimeter router and add the URls you want to allow to the firewall's local URL list
D. Create a blacklist that contains the URl you want to block and activate the blacklist on the perimeter rout
E. Create a whitelist that contains the URLs you want to allow and activate the whitelist on the perimeter router.
【单选题】
How does PEAP protect the EAP exchange ?___
A. It encrypts the exchange using the server certificate
B. It encrypts the exchange using the client certificate
C. It validates the server-supplied certificate,and then encrypts the exchange using the client certificate
D. It validates the client-supplied certificate,and then encrypts the excha nge using the server certificate
【单选题】
Which feature of the Cisco Email Security Appliance can mitigate the impact of snowshoe spam and sophisticated phishing attacks?___
A. contextual analysis
B. holistic understanding of threats
C. graymail management and filtering
D. signature-based IPS
【单选题】
Refer to the exhibit【nat (inside,outside)dunamic interface】 Which translation technique does this configuration result in?___
A. DynamIc PAT
B. Dynamic NAT
C. Twice NAT
D. Static NAT
【单选题】
Refer to the exhibit which are repre sents the data center?___
A. A
B. B
C. C
D. D
【单选题】
While trouble shooting site-to-site VPN, you issued the show crypto isakmp sa command. What does the given output show?___
A. IKE Phase 1 main mode was created on 10.1.1.5, but it failed to negotiate with 10.10 10.2
B. IKE Phase 1 main mode has successfully negotiated between 10.1.1.5 and 10.10..
C. IKE Phase 1 aggressive mode was created on 10.1.1.5, but it failed to negotiate with
【单选题】
Refer to the exhibit All ports on switch 1 have a primary vLan of 300 Which devices can host 1 reach?___
A. host 2
B. server
C. host 4
D. other devices within VLAN303
【单选题】
Which option is the cloud-based security service from Cisco the provides URL filtering, web browsing content security, and roaming user protection?___
A. Cloud Web service
B. Cloud Advanced Malware Protection
C. Cloud We b Security
D. Cloud Web Protection
【单选题】
How can you detect a false negative on an IPS?___
A. View the alert on the ips
B. Review the ips log
C. Review the is console
D. Use a third- party system to perform penetration testing.
E. Use a third- party to audit the next generation firewall rules
【单选题】
If a switch port goes directly into a blocked state only when a superior BPDU is received, what mechanism must be in use?___
A. STP BPDU guard
B. Loop guard
C. EtherChannel guard
D. STP Root guard
【单选题】
what improvement does EAP-FASTv2 provide over EAP-FAST? ___
A. It allows multiple credentials to be passed in a single EAP exchange.
B. It supports more secure encryption protocols
C. It allows faster authentication by using fewer packets.
D. It addresses security vulnerabilities found in the original protocol
【单选题】
When users login to the Client less Ssl Vpn using https://209.165.201.2/test ,which group policy will be applied?___
A. test
B. clientless
C. sales
D. DfitGrp Policy
E. Default RAGroup
F. Default WEB VPN
G. roup
【单选题】
Which user authentication method is used when users login to the Clientless SSLVPN portal using https://209.165.201.2/test?___
A. AAA with LOCAL database
B. AAA with RADIUS server
C. Certificate
D. :Both Certificate and aaa with LoCAL database
E. Both Certificate and AAA with RADIUS server
【单选题】
What' s the technology that you can use to prevent non malicious program to runin the computer that is disconnected from the network?___
A. Firewall
B. Sofware Antivirus
C. Network IPS
D. Host IPS
【单选题】
Which statement about the communication between interfaces on the same security level is true?___
A. Interfaces on the same security level require additional configuration to permit interinterface communication
B. Configuring interfaces on the same security level can cause asymmetric routing
C. All traffic is allowed by default between interfaces on the same security level
D. You can configure only one interface on a n individual security level
【单选题】
Which product can be used to provide application layer protection for tcp port 25 traffic?___
A. ESA
B. CWS
C. WSA
D. ASA
【单选题】
which iPS mode is less secure than other options but allows optimal network through put ?___
A. inline mode
B. inline-bypass mode
C. transparent mode
D. Promiscuous mode
【单选题】
Which feature of the Cisco Email security Appliance can mitigate the impact of snowshoe spam and sophisticated phishing attack?___
A. reputation based filtering
B. signature based IPS
C. contextual analysis
D. graymail management and filtering
【单选题】
Which type of social-engineering attack uses normal tele phone service as the attack vector?___
A. smishing
B. dialing
C. phishing
D. vishing
【单选题】
Which quantifiable item should you consider when you organization adopts new technologies?___
A. exploits
B. vulnerability
C. threat
D. Risk
【单选题】
Referencing the ClA model, in which scenario is a hash- only function most appropriate ?___
A. securing data at rest
B. securing real-time traffic
C. securing data in files
D. securing wireless transmissions
【单选题】
Which ports must be open between a aaa server and a microsoft server to permit Active Directory authentications?___
A. 445 and 389
B. 888 and 3389
C. 636 and 4445
D. 363 and 983
【单选题】
Refer to the exhibit for which reason is the tunnel unable to pass traffic___
A. the tunnel is failing to receive traffic from the remote peer
B. the local peer is unable to encrypt the traffic
C. the ip address of the remote peer is incorrect
D. UDP port 500 is blocked
【单选题】
Which type of attack can exploit design flaws in the implementation of an application without___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
How can you protect CDP from reconnaissance attacks?___
A. Enable dynamic ARP inspection on all untrusted ports.
B. Enable dot1x on all ports that are connected to other switches.
C.
D. isable CDP on ports connected to endpoints.
【单选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which option is a key security compone nt of and MDM deployment ?___
A. using network-specific installer packages
B. using an application tunnel by default
C. using self-signed certificates to validate the server
D. using MS-CHAPv2 as the primary
E. AP method
【单选题】
Which Firepower Management Center feature detects and block exploits and hack attempts?___
A. Content blocker
B. file control
C. intrusion prevention
D. advanced malware protection
【单选题】
hich description of the nonsecret numbers that are used to start a Diffie- Hellman exchange is ture?___
A. They are preconfigured prime integers.
B. They are large pseudorandom numbers.
C. They are very small numbers chosen from a table of known valuses
D. They are numeric values extracted from ha shed system hostnames
【多选题】
Which two characteristics of an application layer firewall are true?___
A. provides stateful firewal functionality
B. has low processor usage
C. provides protection for multiple applications
D. provides rever se proxy services
E. is immune to URL manipulation
【多选题】
Which two devices are components of the BYOD architectural framework?___
A. Nexus 7010 switch
B. Cisco 3945 Router
C. Identify Services Engine
D. Wireless Access oints
E. Prime Infrastructure
推荐试题
【判断题】
☆各级党的机关、国家权力机关、行政机关、司法机关、军事机关、人民政协机关和人民解放军、武警部队、参照公务员法管理的事业单位的受益所有人可以不识别。
A. 对
B. 错
【判断题】
☆☆☆对于我行非自然人客户经核实确认的受益所有人,要登记该非自然人客户所有的受益所有人信息,包括姓名、联系电话、身份证件或者身份证明文件号码。
A. 对
B. 错
【判断题】
☆对非自然人客户受益所有人的追溯,要逐层深入,并最终明确为掌握控制权或者获取收益的自然人。
A. 对
B. 错
【判断题】
☆某公司客户在我行无管户客户经理,则其受益所有人的身份识别工作由反洗钱团队负责。
A. 对
B. 错
【判断题】
☆☆我行反洗钱重大事项应及时向董事会报告,确保董事会能及时获得洗钱风险信息。董事会应定期听取反洗钱工作情况报告,关注反洗钱合规管理和风险管理情况,研究反洗钱管理工作中的重要问题。
A. 对
B. 错
【判断题】
☆业务和产品管理部门应将反洗钱要求嵌入各项工作流程,覆盖各项业务、产品和系统。
A. 对
B. 错
【判断题】
☆☆我行根据客户洗钱风险评级结果,开展风险分类管理,有效预防和控制洗钱风险。
A. 对
B. 错
【判断题】
☆☆对于存疑客户,应当根据客户及其申请业务的风险状况,采取延长开户审查期限、加大客户尽职调查力度、持续客户身份识别等措施,必要时应当拒绝开户。
A. 对
B. 错
【判断题】
☆☆☆可疑交易报告后续控制措施包括立即采取措施限制客户或账户的交易方式、规模、频率等,特别是客户通过非柜面方式办理业务的金额、次数和业务类型;拒绝提供金融服务,乃至终止业务关系。
A. 对
B. 错
【判断题】
☆☆识别、核对客户及其代理人真实身份的相关措施包括但不限于:联网核查身份证件、人员问询、客户回访、实地查访、公用事业账单(如电费、水费等缴费凭证)验证、网络信息查验等方式。
A. 对
B. 错
【判断题】
☆经办柜员在交易时如发现客户在我行业务系统中登记的证件到期日为空或过有效期,应提示客户配合我行做好相应的信息更新工作。
A. 对
B. 错
【判断题】
☆我行在开展业务时应当严格遵循监管要求,并建立健全反洗钱工作领导小组对于高风险客户、可疑交易报告客户处置方案的审议处理机制,切实提高反洗钱工作的有效性。
A. 对
B. 错
【判断题】
☆☆☆在证据可能灭失或以后难以取得的情况下,经检查组组长批准、检查组可以对被查机构有关证据材料予以先行登记保存。
A. 对
B. 错
【判断题】
☆反洗钱检查现场作业结束时,检查组应退还全部借阅材料,并与被查单位举行离场会谈。
A. 对
B. 错
【判断题】
☆反洗钱调查只能采取现场调查。
A. 对
B. 错
【判断题】
☆反洗钱询问笔录应当交被询问人核对、并在询问笔录上逐页签名或者盖章。
A. 对
B. 错
【判断题】
☆中国人民银行或者其省一级分支机构发现可疑交易活动需要调查核实的,可以向金融机构调查可疑交易活动涉及的客户账户信息、交易记录和其他有关资料,金融机构及其工作人员应当予以配合。
A. 对
B. 错
【判断题】
☆金融机构及其工作人员应当对报告可疑交易、配合中国人民银行调查可疑交易活动等有关反洗钱工作信息予以保密,不得违反规定向客户和其他人员提供。
A. 对
B. 错
【判断题】
☆金融机构在按照中国人民银行的要求采取临时冻结措施后24小时内,未接到侦查机关继续冻结通知的,应当立即解除临时冻结。
A. 对
B. 错
【判断题】
☆☆金融机构在履行反洗钱义务过程中,发现涉嫌犯罪的,应当及时以电子形式向中国人民银行当地分支机构和当地公安机关报告。
A. 对
B. 错
【判断题】
☆☆通过绑定账户开立III户的个人在同一银行所有III类账户资金双边首付金额累计达7万元(含)以上时,应当要求个人在5日内提供有效身份证件。
A. 对
B. 错
【判断题】
☆☆同一家银行通过电子渠道非面对面方式可以为同一人开立5个允许非绑定账户入金的III类户。
A. 对
B. 错
【判断题】
☆☆每个客户名下最多可拥有1本活期一本通存折和4张借记卡,社会保障卡、军人保障卡不计入数量限制。
A. 对
B. 错
【判断题】
☆自2016年12月1日起,同一个人客户在我行开立个人银行结算账户的,仅能开立一个Ⅰ类户,但在此日期之前在我行开立一个以上Ⅰ类户的客户,可以再新开Ⅰ类户。
A. 对
B. 错
【判断题】
☆☆I类账户连续6个月内客户未主动发起资金类交易或签约类交易,我行核心业务系统将对其进行自动休眠处置。
A. 对
B. 错
【判断题】
☆银行各种电子渠道支持办理开立I类账户的开户业务。
A. 对
B. 错
【判断题】
☆☆☆银行通过电子渠道非面对面为个人新开立Ⅲ类户后,可以接收非绑定账户小额转入资金。
A. 对
B. 错
【判断题】
☆☆☆银行通过电子渠道非面对面为个人开立II类账户时,应当向绑定账户开户行验证二类账户与绑定账户为同一人开立且绑定账户可以为信用卡账户。
A. 对
B. 错
【判断题】
☆个人代理他人办理借记卡,原则上个人一次性代办借记卡的数量原则上不得超过5张。
A. 对
B. 错
【判断题】
☆☆对委托他人代理开户(法定监护人代理除外)的,除须同时核实存款人和代理人的有效身份证件,留存存款人和代理人证件复印件外,还要当场电话联系存款人进行核实,确实无法当场联系到存款人的,仍应予以开户,并如实记录核实结果。
A. 对
B. 错
【判断题】
☆☆个人在银行柜面开立的Ⅱ、Ⅲ类户后,需绑定Ⅰ类户或者信用卡账户进行身份验证。
A. 对
B. 错
【判断题】
☆银行账户不得出租,但可以出借。
A. 对
B. 错
【判断题】
☆☆年满16周岁不满18周岁客户本人办理开户,仅需提供身份证件原件即可办理。
A. 对
B. 错
【判断题】
☆☆依托自助机具为个人开立Ⅰ类户的,应当经银行工作人员现场面对面审核开户人身份。
A. 对
B. 错
【判断题】
☆☆存款人如需查询账户信息,应由本人申请。除有权机关外,其他单位与个人不得随意查询存款人账户信息。
A. 对
B. 错
【判断题】
☆☆存款人首次在我行开立个人结算账户,且我行核心业务系统中未登记身份信息的,要先为其开立客户号,完成存款人信息登记及信息核实结果的登记。
A. 对
B. 错
【判断题】
☆☆Ⅱ类户非绑定账户转入资金、存入现金日累计限额合计为5万元,年累计限额合计为20万元。
A. 对
B. 错
【判断题】
☆☆Ⅱ类户消费和缴费、向非绑定账户转出资金、取出现金日累计限额合计为1万元,年累计限额合计为20万元。
A. 对
B. 错
【判断题】
☆☆银行可按规定对存款人身份信息进行进一步核验后,将Ⅱ类户转为Ⅰ类户。
A. 对
B. 错
【判断题】
☆☆通过网上银行和手机银行等电子渠道提交银行账户开户申请的,存款人仅能开立Ⅲ类户。
A. 对
B. 错
欢迎使用我爱刷题
×
微信搜索我爱刷题小程序
温馨提示
×
请在电脑上登陆“www.woaishuati.com”使用