【单选题】
Which feature of the Cisco Email Security Appliance can mitigate the impact of snowshoe spam and sophisticated phishing attacks?___
A. contextual analysis
B. holistic understanding of threats
C. graymail management and filtering
D. signature-based IPS
查看试卷,进入试卷练习
微信扫一扫,开始刷题
相关试题
【单选题】
Refer to the exhibit【nat (inside,outside)dunamic interface】 Which translation technique does this configuration result in?___
A. DynamIc PAT
B. Dynamic NAT
C. Twice NAT
D. Static NAT
【单选题】
Refer to the exhibit which are repre sents the data center?___
【单选题】
While trouble shooting site-to-site VPN, you issued the show crypto isakmp sa command. What does the given output show?___
A. IKE Phase 1 main mode was created on 10.1.1.5, but it failed to negotiate with 10.10 10.2
B. IKE Phase 1 main mode has successfully negotiated between 10.1.1.5 and 10.10..
C. IKE Phase 1 aggressive mode was created on 10.1.1.5, but it failed to negotiate with
【单选题】
Refer to the exhibit All ports on switch 1 have a primary vLan of 300 Which devices can host 1 reach?___
A. host 2
B. server
C. host 4
D. other devices within VLAN303
【单选题】
Which option is the cloud-based security service from Cisco the provides URL filtering, web browsing content security, and roaming user protection?___
A. Cloud Web service
B. Cloud Advanced Malware Protection
C. Cloud We b Security
D. Cloud Web Protection
【单选题】
How can you detect a false negative on an IPS?___
A. View the alert on the ips
B. Review the ips log
C. Review the is console
D. Use a third- party system to perform penetration testing.
E. Use a third- party to audit the next generation firewall rules
【单选题】
If a switch port goes directly into a blocked state only when a superior BPDU is received, what mechanism must be in use?___
A. STP BPDU guard
B. Loop guard
C. EtherChannel guard
D. STP Root guard
【单选题】
what improvement does EAP-FASTv2 provide over EAP-FAST? ___
A. It allows multiple credentials to be passed in a single EAP exchange.
B. It supports more secure encryption protocols
C. It allows faster authentication by using fewer packets.
D. It addresses security vulnerabilities found in the original protocol
【单选题】
When users login to the Client less Ssl Vpn using https://209.165.201.2/test ,which group policy will be applied?___
A. test
B. clientless
C. sales
D. DfitGrp Policy
E. Default RAGroup
F. Default WEB VPN
G. roup
【单选题】
Which user authentication method is used when users login to the Clientless SSLVPN portal using https://209.165.201.2/test?___
A. AAA with LOCAL database
B. AAA with RADIUS server
C. Certificate
D. :Both Certificate and aaa with LoCAL database
E. Both Certificate and AAA with RADIUS server
【单选题】
What' s the technology that you can use to prevent non malicious program to runin the computer that is disconnected from the network?___
A. Firewall
B. Sofware Antivirus
C. Network IPS
D. Host IPS
【单选题】
Which statement about the communication between interfaces on the same security level is true?___
A. Interfaces on the same security level require additional configuration to permit interinterface communication
B. Configuring interfaces on the same security level can cause asymmetric routing
C. All traffic is allowed by default between interfaces on the same security level
D. You can configure only one interface on a n individual security level
【单选题】
Which product can be used to provide application layer protection for tcp port 25 traffic?___
A. ESA
B. CWS
C. WSA
D. ASA
【单选题】
which iPS mode is less secure than other options but allows optimal network through put ?___
A. inline mode
B. inline-bypass mode
C. transparent mode
D. Promiscuous mode
【单选题】
Which feature of the Cisco Email security Appliance can mitigate the impact of snowshoe spam and sophisticated phishing attack?___
A. reputation based filtering
B. signature based IPS
C. contextual analysis
D. graymail management and filtering
【单选题】
Which type of social-engineering attack uses normal tele phone service as the attack vector?___
A. smishing
B. dialing
C. phishing
D. vishing
【单选题】
Which quantifiable item should you consider when you organization adopts new technologies?___
A. exploits
B. vulnerability
C. threat
D. Risk
【单选题】
Referencing the ClA model, in which scenario is a hash- only function most appropriate ?___
A. securing data at rest
B. securing real-time traffic
C. securing data in files
D. securing wireless transmissions
【单选题】
Which ports must be open between a aaa server and a microsoft server to permit Active Directory authentications?___
A. 445 and 389
B. 888 and 3389
C. 636 and 4445
D. 363 and 983
【单选题】
Refer to the exhibit for which reason is the tunnel unable to pass traffic___
A. the tunnel is failing to receive traffic from the remote peer
B. the local peer is unable to encrypt the traffic
C. the ip address of the remote peer is incorrect
D. UDP port 500 is blocked
【单选题】
Which type of attack can exploit design flaws in the implementation of an application without___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
How can you protect CDP from reconnaissance attacks?___
A. Enable dynamic ARP inspection on all untrusted ports.
B. Enable dot1x on all ports that are connected to other switches.
C.
D. isable CDP on ports connected to endpoints.
【单选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which option is a key security compone nt of and MDM deployment ?___
A. using network-specific installer packages
B. using an application tunnel by default
C. using self-signed certificates to validate the server
D. using MS-CHAPv2 as the primary
E. AP method
【单选题】
Which Firepower Management Center feature detects and block exploits and hack attempts?___
A. Content blocker
B. file control
C. intrusion prevention
D. advanced malware protection
【单选题】
hich description of the nonsecret numbers that are used to start a Diffie- Hellman exchange is ture?___
A. They are preconfigured prime integers.
B. They are large pseudorandom numbers.
C. They are very small numbers chosen from a table of known valuses
D. They are numeric values extracted from ha shed system hostnames
【多选题】
Which two characteristics of an application layer firewall are true?___
A. provides stateful firewal functionality
B. has low processor usage
C. provides protection for multiple applications
D. provides rever se proxy services
E. is immune to URL manipulation
【多选题】
Which two devices are components of the BYOD architectural framework?___
A. Nexus 7010 switch
B. Cisco 3945 Router
C. Identify Services Engine
D. Wireless Access oints
E. Prime Infrastructure
【多选题】
Which two actions can a zone based firewall take when looking at traffic? ___
A. forward
B. inspect
C. drop
D. broadcast
E. filter
【多选题】
n which two situations should you use in-band management?___
A. when management applications need concurrent access to the device
B. when you require administrator access from multiple locations
C. when a network device fails to forward packets
D. when you require ROMMON access
E. when the control plane fails to respond
【多选题】
What are two ways to prevent eavesdropping when you perform device management tasks?___
A. Use an SSH connection.
B. Use SNMPv3
C. Use out-of-band management
D. Use SNMP
E. Use in-band management
【多选题】
Which two features are commonly used CoPP and CPPr to protect the control plane? ___
A. QoS
B. traffic classification
C. access lists
D. policy maps
E. class maps
F. Cisco Express Forwarding
【多选题】
Which four tunne ling prot ocols are enabled in the Dfit GrpPolicy group policy ?___
A. Clientless SSL VPN
B. SSL VPN Client
C. PPTP
D. L2TP/IPsec
E. IPsec IKEv1
F. IPsec IKEv2
【多选题】
Which two statements regarding the aSA VPN configurations are correct?___
A. The asa has a certificate issued by an external certificate authority associated to the ASDM TrustPoint1
B. The Default WEBVPNGroup Connection Profile is using the aaa with RADIUS server method
C. The Inside-srvbook mark references the https://192.168.1.2url
D. Only Clientless SSL VPN access is allowed with the Sales group policy
E. Any Connect, IPSec IKEv1, and IPSec IKEv2 VPN access is enabled on the outside interface
F. The Inside -SRV bookmark has not been applied to the Sales group policy
【多选题】
Which three ESP fields can be encrypted during transmission?___
A. Security Parameter Index
B. Sequence Number
C. MAC Address
D. Padding
E. Pad length
F. Next Header
【多选题】
.Which three statements de scribe DHCP spoofing attacks?___
A. They can modify traffic in transit.
B. They are used to perform man- in-the-middle attacks
C. They use ARP poisoning
D. They can access most network devices
E. They protect the ide ntity of the attacker by masking the DHCP address.
F. They are can physically modify the network gateway.
【多选题】
Which statement about the communication between interfaces on the same security level is true?___
A. Interfaces on the same security level require additional configuration to permit interinterface communication
B. Configuring interfaces on the same security level can cause asymmetric routing
C. All traffic is allowed by default between interfaces on the same security level
D. You can configure only one interface on a n individual security level
【多选题】
In which two situations should you use in band management? ___
A. when the control plane fails to respond
B. when you require administrator access from multiple locations
C. when you require ROMMON access.
D. where a network device fails to forward packets
E. when multiple ma nagement applications need concument access to the device.
【多选题】
Which two features are supported in a VRF-aware softwar infrastructure before VRF-lite?___
A. multicast
B. fair queuing
C. WCCP
D.
E. IGRP
【多选题】
.Which loS command do you enter to test authentication again a AAA server?___
A. dialer aaa suffix <suffix> password <password>
B. ppp authentication chap pap test
C. test aaa-server authentication dialer group user name <user> password <password>
D. aaa authentication enable default test group tacases
推荐试题
【单选题】
评价一台交换机性能如何,除了话务量这一质量指标以外,还有一个重要指标就是控制部件的( )。
A. 呼叫处理能力
B. 接续能力
C. 交换能力
D. 通信能力
【单选题】
全互连的组网方式带来的优势是( )。
A. 经济成本降低
B. 更多的路由选择,更强的物理线路容错性
C. 物路线路上相对均衡的衰减
D. 更为简单的组网
【单选题】
市话电缆的色谱为:大组:( )
A. 白、橙、黑、绿、灰
B. 蓝、橙、绿、综、灰
C. 白、红、黑、黄、紫
D. 白、绿、黑、黄、紫
【单选题】
信令是各交换局在完成( )的一种通信语言。
A. 呼叫接续中
B. 通话
C. 全过程
D. 呼叫结束时
【单选题】
以太网中的防环策略是( )。
A. STP生成树协议
B. 源删除、目的地删除和监控节点删除
C. 划分VLAN
D. 使用单播流量
【单选题】
在下列选项中,不属于用户数据的是( )。
A. 信令数据
B. 电话号码
C. 话机类别
D. 用户权限
【单选题】
重启一块电路板可以用rstcpl命令来执行,正确的命令行为:( )。
A. rstcpl
B. rstcpl cr_nbr
C. rstcpl cpl_nbr
D. rstcpl cr_nbr cpl_nbr
【单选题】
A4400交换机各ACT分架通过_________ 板与主ACT-CPU分架进行联接。
A. INTOF
B. CPU
C. NPRAE2
D. IO2N
【单选题】
48键调度台按键的顺序为( )连接的。
A. 自左至右,自下而上
B. 自左至右,自上而下
C. 自右至左,自下而上
D. 自右至左,自上而下
【单选题】
FH8161 数字录音仪的各个录音通道分别连至所要录音话机(或调度台)的音频接口,放音通道则接交换机的共电(或称用户)接口。可通过FH8161( ) 。
A. 只能本地放音
B. 既能本地放音,又能远程调听
C. 只能远程调听
D. 两者都不能
【单选题】
共电板提供6路共电接口,接( )。
A. 调度台
B. 值班台
C. 录音仪
D. 音频话机
【单选题】
共电板由( )等部分组成,分别完成与主控通讯,提供接口电路,和内部母线分配功能。
A. 通讯单元、共电接口单元、交换网
B. 通讯单元、共电接口单元、时钟单元
C. 切换逻辑单元、通讯单元、共电接口单元
D. 通讯单元、数模转换部分、共电接口单元
【单选题】
枢纽侧数据主要包括:( )、号码表、调度台按键表、调度侧组呼表、调度侧半固定接续表、中继表、号码转换表等。
A. 模块配置表、值班分机和值班台表、告警路由表
B. 模块配置表、模拟线路表、业务号码对照表
C. 模块配置表、模拟线路表、值班台按键表
D. 模块配置表、值班分机和值班台表、值班台按键表
【单选题】
一般情况下,通信使用下行E1通道,系统实时监测2M口的通信状态,当检测到“数字环”下行E1通道的某处断开时,立刻切换至上行E1通道方向进行通信,从而保证“数字环”的任何一处断开都不会影响系统的正常通信,切换时间为( )。
A. 微秒级
B. 毫秒级
C. 秒级
D. 分钟级
【单选题】
有铃流电源板除提供+5V、-5V直流电源输出,还提供两种( )的铃流源信号,分别向共电接口的用户话机和磁石接口的用户话机送振铃。
A. 25HZ、75V
B. 50HZ、75V
C. 25HZ、48V
D. 25HZ、110V
【单选题】
语音资料按分级目录的方式存储( ),以日期命名。
A. 每一小时的语音资料建立一个子目录
B. 每12小时的语音资料建立一个子目录
C. 每一星期的语音资料建立一个子目录
D. 每一天的语音资料建立一个子目录
【单选题】
在进行数据传送时,( )。
A. 只能将数据全部传送
B. 只能传送选定数据
C. 只能传送改动数据
D. 三种都可以
【单选题】
专用电话主系统数字层通过( )与主控层进行通信。
A. DB15接口
B. DB9串口
C. 40P总线
D. RS232串口
【单选题】
NC-16型噪声输入单元可外接( )个NH-D型噪声传感器。
【单选题】
一般总是要保证扬声器能得到( )标称功率值的音频功率。
【单选题】
在开放式环境下,有线广播中的扬声器多数是采用( )扬声器。
A. 号筒式高音
B. 舌簧
C. 压电
D. 纸盆式
【单选题】
以下( )不是南延线车站广播控制单元的基本组成。
A. 数字汇接模块(SZ4-2)
B. 语音合成模块(YH-2)
C. 音频汇接模块(YP-5)
D. 功率放大器(TG200A)
【单选题】
以下对采样及监听模块描述不正确的是( )。
A. CY2-8采样及监听模块包含8路采样电路及8选1监听电路
B. 8路采样电路用于对功放的输出信号进行采样,并将采样结果输出至功放检测模块(GJ6-5)
C. 8选1监听电路可对8路广播区任意选择监听,并送往车站广播控制盒,供其选择监听。
D. 对功放进行检测
【单选题】
自动广播计算机远程其他计算机的CMD命令是( )
A. msconfig
B. ping
C. mstsc
D. regedit
【单选题】
自动广播计算机登录名和密码是( )
A. administration和1
B. administration和123
C. administrator和1
D. administrator和123
【单选题】
自动广播软件默认与设备采集箱通讯串口为( )
A. COM1
B. COM2
C. COM3
D. COM4
【单选题】
自动广播系统的列车位置检测器三芯线棕、蓝、黑的连接方法( )
A. 棕色电源正、蓝色电源负、黑色信号
B. 棕色电源正、蓝色信号、黑色电源负
C. 棕色电源负、蓝色电源正、黑色信号
D. 棕色电源负、蓝色信号、黑色电源负
【单选题】
A4400交换机退出系统命令为( )。
A. exit
B. quit
C. mtcl
D. swinst
【单选题】
PCM32系统中,每帧时长为( )μs。
A. 32us
B. 64us
C. 125us
D. 258us
【单选题】
公务电话OPS文件保存在( )板的硬盘中
A. INTOF
B. CPU
C. IO2N
D. NPRAE2
【单选题】
下列( )方式不是公务电话系统创建连选组时可设置的振铃方式
A. 循环振铃
B. 依次振铃
C. 同时振铃
D. 随机振铃
【单选题】
A4400交换机登录系统命令和密码为( )。
A. mtcl
B. SoftInst
C. mgr
D. config
【单选题】
按照信令的作用区域可以把信令划分为用户线信令和( )两种。
A. 地址信令
B. 公共信道信令
C. 局间信令
D. 记发器信令
【单选题】
查看公务交换机系统中继线状态命令( )。
A. config all
B. trkstat –r 中继组号
C. exit
D. get mao-acc
【单选题】
程控交换机按信号方式分为( )交换机。
A. 时分和空分
B. 时分和码分
C. 码分和频分
D. 时分和频分
【单选题】
下列( )不是程控交换机传送给用户的“三音”
A. 拨号音
B. 回铃音
C. 忙音
D. 铃声
【单选题】
一号线控制中心程控交换机电源采用直流( )供电
A. 220V
B. 110V
C. -48
D. +48
【单选题】
一号线公务电话从( )交换机出局?
A. 小行车辆段
B. 地铁大厦
C. 大学城停车场
D. 上层网交换机
【单选题】
( )交换机实现一号线、二号线、十号线跨线拨打电话的功能
A. 小行车辆段
B. 地铁大厦
C. 大学城停车场
D. 上层网交换机
【单选题】
地铁大厦交换机负责( )个车站的远端模块的通信