刷题
导入试题
【单选题】
If a switch port goes directly into a blocked state only when a superior BPDU is received, what mechanism must be in use?___
A. STP BPDU guard
B. Loop guard
C. EtherChannel guard
D. STP Root guard
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
D
解析
暂无解析
相关试题
【单选题】
what improvement does EAP-FASTv2 provide over EAP-FAST? ___
A. It allows multiple credentials to be passed in a single EAP exchange.
B. It supports more secure encryption protocols
C. It allows faster authentication by using fewer packets.
D. It addresses security vulnerabilities found in the original protocol
【单选题】
When users login to the Client less Ssl Vpn using https://209.165.201.2/test ,which group policy will be applied?___
A. test
B. clientless
C. sales
D. DfitGrp Policy
E. Default RAGroup
F. Default WEB VPN
G. roup
【单选题】
Which user authentication method is used when users login to the Clientless SSLVPN portal using https://209.165.201.2/test?___
A. AAA with LOCAL database
B. AAA with RADIUS server
C. Certificate
D. :Both Certificate and aaa with LoCAL database
E. Both Certificate and AAA with RADIUS server
【单选题】
What' s the technology that you can use to prevent non malicious program to runin the computer that is disconnected from the network?___
A. Firewall
B. Sofware Antivirus
C. Network IPS
D. Host IPS
【单选题】
Which statement about the communication between interfaces on the same security level is true?___
A. Interfaces on the same security level require additional configuration to permit interinterface communication
B. Configuring interfaces on the same security level can cause asymmetric routing
C. All traffic is allowed by default between interfaces on the same security level
D. You can configure only one interface on a n individual security level
【单选题】
Which product can be used to provide application layer protection for tcp port 25 traffic?___
A. ESA
B. CWS
C. WSA
D. ASA
【单选题】
which iPS mode is less secure than other options but allows optimal network through put ?___
A. inline mode
B. inline-bypass mode
C. transparent mode
D. Promiscuous mode
【单选题】
Which feature of the Cisco Email security Appliance can mitigate the impact of snowshoe spam and sophisticated phishing attack?___
A. reputation based filtering
B. signature based IPS
C. contextual analysis
D. graymail management and filtering
【单选题】
Which type of social-engineering attack uses normal tele phone service as the attack vector?___
A. smishing
B. dialing
C. phishing
D. vishing
【单选题】
Which quantifiable item should you consider when you organization adopts new technologies?___
A. exploits
B. vulnerability
C. threat
D. Risk
【单选题】
Referencing the ClA model, in which scenario is a hash- only function most appropriate ?___
A. securing data at rest
B. securing real-time traffic
C. securing data in files
D. securing wireless transmissions
【单选题】
Which ports must be open between a aaa server and a microsoft server to permit Active Directory authentications?___
A. 445 and 389
B. 888 and 3389
C. 636 and 4445
D. 363 and 983
【单选题】
Refer to the exhibit for which reason is the tunnel unable to pass traffic___
A. the tunnel is failing to receive traffic from the remote peer
B. the local peer is unable to encrypt the traffic
C. the ip address of the remote peer is incorrect
D. UDP port 500 is blocked
【单选题】
Which type of attack can exploit design flaws in the implementation of an application without___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
How can you protect CDP from reconnaissance attacks?___
A. Enable dynamic ARP inspection on all untrusted ports.
B. Enable dot1x on all ports that are connected to other switches.
C.
D. isable CDP on ports connected to endpoints.
【单选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which option is a key security compone nt of and MDM deployment ?___
A. using network-specific installer packages
B. using an application tunnel by default
C. using self-signed certificates to validate the server
D. using MS-CHAPv2 as the primary
E. AP method
【单选题】
Which Firepower Management Center feature detects and block exploits and hack attempts?___
A. Content blocker
B. file control
C. intrusion prevention
D. advanced malware protection
【单选题】
hich description of the nonsecret numbers that are used to start a Diffie- Hellman exchange is ture?___
A. They are preconfigured prime integers.
B. They are large pseudorandom numbers.
C. They are very small numbers chosen from a table of known valuses
D. They are numeric values extracted from ha shed system hostnames
【多选题】
Which two characteristics of an application layer firewall are true?___
A. provides stateful firewal functionality
B. has low processor usage
C. provides protection for multiple applications
D. provides rever se proxy services
E. is immune to URL manipulation
【多选题】
Which two devices are components of the BYOD architectural framework?___
A. Nexus 7010 switch
B. Cisco 3945 Router
C. Identify Services Engine
D. Wireless Access oints
E. Prime Infrastructure
【多选题】
Which two actions can a zone based firewall take when looking at traffic? ___
A. forward
B. inspect
C. drop
D. broadcast
E. filter
【多选题】
n which two situations should you use in-band management?___
A. when management applications need concurrent access to the device
B. when you require administrator access from multiple locations
C. when a network device fails to forward packets
D. when you require ROMMON access
E. when the control plane fails to respond
【多选题】
What are two ways to prevent eavesdropping when you perform device management tasks?___
A. Use an SSH connection.
B. Use SNMPv3
C. Use out-of-band management
D. Use SNMP
E. Use in-band management
【多选题】
Which two features are commonly used CoPP and CPPr to protect the control plane? ___
A. QoS
B. traffic classification
C. access lists
D. policy maps
E. class maps
F. Cisco Express Forwarding
【多选题】
Which four tunne ling prot ocols are enabled in the Dfit GrpPolicy group policy ?___
A. Clientless SSL VPN
B. SSL VPN Client
C. PPTP
D. L2TP/IPsec
E. IPsec IKEv1
F. IPsec IKEv2
【多选题】
Which two statements regarding the aSA VPN configurations are correct?___
A. The asa has a certificate issued by an external certificate authority associated to the ASDM TrustPoint1
B. The Default WEBVPNGroup Connection Profile is using the aaa with RADIUS server method
C. The Inside-srvbook mark references the https://192.168.1.2url
D. Only Clientless SSL VPN access is allowed with the Sales group policy
E. Any Connect, IPSec IKEv1, and IPSec IKEv2 VPN access is enabled on the outside interface
F. The Inside -SRV bookmark has not been applied to the Sales group policy
【多选题】
Which three ESP fields can be encrypted during transmission?___
A. Security Parameter Index
B. Sequence Number
C. MAC Address
D. Padding
E. Pad length
F. Next Header
【多选题】
.Which three statements de scribe DHCP spoofing attacks?___
A. They can modify traffic in transit.
B. They are used to perform man- in-the-middle attacks
C. They use ARP poisoning
D. They can access most network devices
E. They protect the ide ntity of the attacker by masking the DHCP address.
F. They are can physically modify the network gateway.
【多选题】
Which statement about the communication between interfaces on the same security level is true?___
A. Interfaces on the same security level require additional configuration to permit interinterface communication
B. Configuring interfaces on the same security level can cause asymmetric routing
C. All traffic is allowed by default between interfaces on the same security level
D. You can configure only one interface on a n individual security level
【多选题】
In which two situations should you use in band management? ___
A. when the control plane fails to respond
B. when you require administrator access from multiple locations
C. when you require ROMMON access.
D. where a network device fails to forward packets
E. when multiple ma nagement applications need concument access to the device.
【多选题】
Which two features are supported in a VRF-aware softwar infrastructure before VRF-lite?___
A. multicast
B. fair queuing
C. WCCP
D.
E. IGRP
【多选题】
.Which loS command do you enter to test authentication again a AAA server?___
A. dialer aaa suffix <suffix> password <password>
B. ppp authentication chap pap test
C. test aaa-server authentication dialer group user name <user> password <password>
D. aaa authentication enable default test group tacases
【多选题】
Which two statements about the self zone on a cisco Xone based policy firewall are true?___
A. Multiple interfaces can be assigned to the self zone
B. it supports stateful inspections for multicast traffic
C. zone pairs that include the self zone apply to traffic transiting the device.
D. it can be either the source zone or the destination zone
E. traffic entering the self zone must match a rule
【多选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which type of firewall can server as the interme diary between a client and a server ?___
A. Stateless firewall
B. application firewall
C. proxy firewall
D. personal firewall
【单选题】
What is the highest security level that can be configured for an interface on an ASA?___
A. 0
B. 50
C. 10
D. 200
【单选题】
Which term refers to the electromagnetic interference that can radiate from network cables?___
A. Gaussian distributions
B. Doppler waves
C. emanations
D. multimode distortion
【单选题】
How does a zone pair handle traffic if the policy de fination of the zone pair is missing?___
A. It inspects all traffic.
B. It drops all traffic.
C. It permits all traffic wihtout logging
D. It permits and logs all traffic
【单选题】
default how does a zone based firewall handle traffic to add from the self zone?___
A. It permits all traffic without inspection
B. It inspects all traffic to determine how it is handled
C. It permits all traffic after inspection
D. It frops all traffic
推荐试题
【单选题】
为个人存款人办理人民币单笔___万元以上现金支取业务的,银行应核对存款人的有效身份证件。
A. 1
B. 5
C. 10
D. 20
【单选题】
系统中客户手机号未验证的,客户在办理业务时,柜员要主动使用___交易对客户的手机号码进行验证。
A. 131
B. 104
C. 105
D. 107
【单选题】
临时存款账户是存款人因临时需要并在规定期限内使用而开立的银行结算账户。人行结算账户管理办法规定临时存款账户的有效期为___年,到期后需要销户重开。
A. 1
B. 2
C. 5
D. 10
【单选题】
同一个法人行社为同一个人开立Ⅱ、Ⅲ类户的数量原则上分别不得超过___个。
A. 2
B. 4
C. 5
D. 10
【单选题】
柜员做【1200法定机关冻结】交易时,冻结通知书上有明确的金额时,柜员应操作的冻结种类是___。
A. 只收不付
B. 只付不收
C. 金额冻结
D. 封闭冻结
【单选题】
下列关于收缴假币的过程,不正确的是___。
A. 正面水印窗处竖向加盖假币章
B. 背面中间横向加盖假币章
C. 向客户出具《假币收缴凭证》
D. 可以在客户离开后再在人行反假币系统和综合业务系统进行假币录入
【单选题】
郑州市郊联社存款证明手续费的收费标准是___。
A. 个人客户20元,对公客户100元
B. 个人客户20元,对公客户200元
C. 个人客户50元,对公客户100元
D. 个人客户50元,对公客户200元
【单选题】
自2016年12月1日起,同一个人在同一个法人行社只能开立___Ⅰ类户。
A. 1
B. 2
C. 5
D. 有合理理由时不限制
【单选题】
对于疑似一户多号的客户,柜员在办理业务时应主动对客户的多个客户号进行___。
A. 销户
B. 维护
C. 合并
D. 迁移
【单选题】
下列业务中,不需要留存客户身份证复印件的有___。
A. 客户存款,新开立一张10万元的存单
B. 客户银行卡丢失,办理正式挂失业务
C. 客户王某本人持银行卡取款5万元
D. 张某持王某的银行卡代理取款5万元
【单选题】
II类银行卡账户升级为I类银行卡账户,可通过___交易将账户属性维护成“001-I类结算户”即可。
A. 1123
B. 1219
C. 1132
D. 1058
【单选题】
个人通过自助柜员机转账的,在发卡行受理后___内,个人可以向发卡行申请撤销转账。
A. 1小时
B. 12小时
C. 24小时
D. 48小时
【单选题】
我联社智能通知存款的利率为___%
A. 1.16
B. 1.755
C. 1.495
D. 1.958
【单选题】
自2018年1月22日起,大额实时支付系统运行的时间为___。
A. 5*12
B. 7*12
C. 5*21
D. 5*24
【单选题】
自2018年1月22日起,大额实时支付系统的业务受理时间为___。
A. 8:00-17:00
B. 8:30-17:00
C. 前一日23:30-17:15
D. 前一日23:30-20:30
【单选题】
个人客户办理金燕芯片卡换卡,换卡的工本费为___。
A. 5元
B. 10元
C. 15元
D. 30元
【单选题】
Ⅱ类户非绑定账户转入资金、存入现金日累计限额合计为___元,年累计限额合计为( )元,向绑定账户转账无限额。
A. 5000;1万
B. 5000;5万
C. 1万;10万
D. 1万;20万
【单选题】
【7125账户密码重置】交易优化后,对应凭证正常的密码挂失,可以直接选择___选项,实现密码挂失与密码重置一步完成。
A. 密码重置
B. 挂失及重置
C. 挂失后重置
D. 挂失重置
【单选题】
下列关于账户控制,说法错误的是___。
A. 差错临控、封闭控制、金额控制、只收不付控制、质押控制、法院冻控都可以通过1204交易办理
B. 单位定期存款账户质押控制时,存款凭证要先通过1101交易将存款证实书转换为存单后方可操作
C. 控制手续办完后,应通过1201交易进行业务核实
D. 质押控制、差错临控操作时,“是否自动解控”不能录入“是”,否则到期系统会自动解控账户
【单选题】
电子验印系统上线后,印鉴的挂失需在电子验印系统操作,印鉴挂失的有效期为___天。
A. 7
B. 10
C. 12
D. 无有效期控制
【单选题】
客户在非开户网点柜面办理转账业务限额为___。
A. 100万元
B. 200万元
C. 1000万元
D. 无限额
【单选题】
自2018年4月16日起,市郊联社定期类存款产品存款利率全面上浮___%。
A. 30
B. 40
C. 45
D. 55
【单选题】
关于储蓄存款,下列说法中不正确的是___。
A. 任何单位和个人不得将公款以个人名义转为储蓄存款
B. 办理储蓄业务,必须遵循"存款自愿,取款自由,存款有息,为储户保密"的原则
C. 定期储蓄存款在存期内遇有利率调整,按存单支取日挂牌公告的相应的定期储蓄存款利率计付利息
D. 储蓄机构不代任何单位和个人查询、冻结或者划拨储蓄存款,国家法律、行政法规另有规定的除外
【单选题】
张先生使用金燕卡在柜面往建设银行上海分行汇款20万元,按照市郊联社的收费标准,应该收取张先生___元的电汇手续费。
A. 5
B. 15
C. 25
D. 50
【单选题】
客户至网点申请查询某笔手机银行客户端跨行转账账务状态,营业网点通过哪个交易码查询交易清算状态。___
A. 6030
B. 7169
C. 6150
D. 6153
【单选题】
协定存款按季结息,每季末月___日为计息日。最低留存额部分按活期存款计息;高于留存额部分,按结息日挂牌公告的协定存款利率计息。
A. 15
B. 20
C. 21
D. 30
【单选题】
一个单位定期存款账户只能开具___张开户证实书,且能转换成( )张单位定期存单。
A. 1,1
B. 1,2
C. 1,3
D. 1,多
【单选题】
Ⅲ类户实行余额管理,综合业务系统控制Ⅲ类户账户余额最高为___元,转入余额超限时,业务系统将做出拒绝提醒。
A. 1000
B. 2000
C. 5000
D. 10000
【单选题】
银行业金融机构应及时协助公安机关办理涉案冻结资金返还,现场无法办理完毕的,应当在___个工作日办理完毕。
A. 一
B. 二
C. 三
D. 七
【单选题】
对公客户办理单位卡,不满三个月销卡,应收客户的工本费___。
A. 5元
B. 10元
C. 15元
D. 30元
【单选题】
下列关于现金支票的审核要点,说法错误的是___
A. 大小写金额需填写相符
B. 出票人签章要清晰、完整的盖在指定位置
C. 大写日期需填写完整、正确
D. 用途栏内容可不要求客户填写
【单选题】
使用【1109】久悬户手工处理交易,将单位账户从久悬户转为正常户时,下列有关授权应提交的资料说法错误的是___
A. 单位公函、客户有效证件,法定代表人或负责人身份证件,如为代理,需同时提供代理人身份证件和授权委托书
B. 若为存折户,需同时提供存折
C. 客户影像
D. 县级行社财务部门审批表
【单选题】
【1132】单位账户维护交易,以下维护事项说法正确的是 ___
A. 机构证件类型、证件号码为客户的关键信息,在本交易中可以修改
B. 可以增加除主证件类型外的其他证件号码
C. 可以通过本交易实现变更基本户开户行行名、行号、账号、开户许可证号码等信息
D. 可以通过本交易维护验资户转为基本户
【单选题】
有关支票上大写日期的填写,说法错误的是___
A. 壹月、贰月前必须加零
B. 壹拾月前可不加零
C. 壹至玖日前都必须加零
D. 壹拾日、贰拾日、叁拾日前都必须加零
【单选题】
下列哪种凭证不能通过【7133】客户凭证作废交易进行作废处理___
A. 转账支票
B. UK
C. 金燕卡
D. 现金支票
【单选题】
下列那种凭证不得作为质押的权利凭证___
A. 单位定期存单
B. 股金证
C. 个人定期存单
D. 单位定期存款开户证实书
【单选题】
关于【1060】单位存款证实书打印交易,下列说法不正确的是___
A. 证实书可在存入资金后随时打印,但付款前必须打印,该交易可在任意行社办理
B. 各存期内只能通过【1060】交易打印一次证实书
C. 不转存的账户、未转存的账户不能进行转存补打
D. 新开账户余额为零,不允许打印证实书
【单选题】
下列关于转账支票的背书,说法错误的是___
A. 从左往右依次背书,且背书必须连续
B. 如若背书,第一背书人是转账支票上的付款人
C. 如若背书,第一背书人是转账支票上的收款人
D. 背书栏内只能填写与背书有关的信息,其他信息不得填写在背书人栏
【单选题】
关于【1059】单位验资/临时户维护交易,下列说法错误的是___
A. 本交易只处理临时户和验资户,且临时户启用后才可进行维护
B. 验资户维护为基本户后,无需使用账户启用交易
C. 验资户修改账户分类时,只能维护成基本户
D. 临时户维护信息有误的可通过8899交易撤销
【单选题】
每年系统自动生成拟转久悬清单的日期为___。生成久悬清单后,网点要及时打印并张贴公告。
A. 6月21日
B. 5月10日
C. 12月31日
D. 4月10日和10月10日
欢迎使用我爱刷题
×
微信搜索我爱刷题小程序
温馨提示
×
请在电脑上登陆“www.woaishuati.com”使用