刷题
导入试题
【多选题】
Which two statements regarding the aSA VPN configurations are correct?___
A. The asa has a certificate issued by an external certificate authority associated to the ASDM TrustPoint1
B. The Default WEBVPNGroup Connection Profile is using the aaa with RADIUS server method
C. The Inside-srvbook mark references the https://192.168.1.2url
D. Only Clientless SSL VPN access is allowed with the Sales group policy
E. Any Connect, IPSec IKEv1, and IPSec IKEv2 VPN access is enabled on the outside interface
F. The Inside -SRV bookmark has not been applied to the Sales group policy
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
BC
解析
暂无解析
相关试题
【多选题】
Which three ESP fields can be encrypted during transmission?___
A. Security Parameter Index
B. Sequence Number
C. MAC Address
D. Padding
E. Pad length
F. Next Header
【多选题】
.Which three statements de scribe DHCP spoofing attacks?___
A. They can modify traffic in transit.
B. They are used to perform man- in-the-middle attacks
C. They use ARP poisoning
D. They can access most network devices
E. They protect the ide ntity of the attacker by masking the DHCP address.
F. They are can physically modify the network gateway.
【多选题】
Which statement about the communication between interfaces on the same security level is true?___
A. Interfaces on the same security level require additional configuration to permit interinterface communication
B. Configuring interfaces on the same security level can cause asymmetric routing
C. All traffic is allowed by default between interfaces on the same security level
D. You can configure only one interface on a n individual security level
【多选题】
In which two situations should you use in band management? ___
A. when the control plane fails to respond
B. when you require administrator access from multiple locations
C. when you require ROMMON access.
D. where a network device fails to forward packets
E. when multiple ma nagement applications need concument access to the device.
【多选题】
Which two features are supported in a VRF-aware softwar infrastructure before VRF-lite?___
A. multicast
B. fair queuing
C. WCCP
D.
E. IGRP
【多选题】
.Which loS command do you enter to test authentication again a AAA server?___
A. dialer aaa suffix <suffix> password <password>
B. ppp authentication chap pap test
C. test aaa-server authentication dialer group user name <user> password <password>
D. aaa authentication enable default test group tacases
【多选题】
Which two statements about the self zone on a cisco Xone based policy firewall are true?___
A. Multiple interfaces can be assigned to the self zone
B. it supports stateful inspections for multicast traffic
C. zone pairs that include the self zone apply to traffic transiting the device.
D. it can be either the source zone or the destination zone
E. traffic entering the self zone must match a rule
【多选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which type of firewall can server as the interme diary between a client and a server ?___
A. Stateless firewall
B. application firewall
C. proxy firewall
D. personal firewall
【单选题】
What is the highest security level that can be configured for an interface on an ASA?___
A. 0
B. 50
C. 10
D. 200
【单选题】
Which term refers to the electromagnetic interference that can radiate from network cables?___
A. Gaussian distributions
B. Doppler waves
C. emanations
D. multimode distortion
【单选题】
How does a zone pair handle traffic if the policy de fination of the zone pair is missing?___
A. It inspects all traffic.
B. It drops all traffic.
C. It permits all traffic wihtout logging
D. It permits and logs all traffic
【单选题】
default how does a zone based firewall handle traffic to add from the self zone?___
A. It permits all traffic without inspection
B. It inspects all traffic to determine how it is handled
C. It permits all traffic after inspection
D. It frops all traffic
【单选题】
Which command should beused to ena ble AAA Authentication to determine if a user can access the privilege command level?___
A. aaa authentication enable local
B. aaa authentication enable level=
C. aaa authentication enable method de fault
D. aaa authentication enable defa ult local
【单选题】
On an ASA, the policy indicates that traffic should not be translated is often referred to as which of the following?___
A. NAT zero
B. NAT forward
C. NAT nul
D. NAT allow
【单选题】
Which protocol offers data Integrity encryption, authentication, and anti-replay functions for IPSec VPN?___
A. ESP protocol
B. IKEv3 Protocol
C. AH protoco
D. IKEv1 Protocol
【单选题】
Which component offers a variety of security Solution, including firwall, IF Antivirus and antiphishing features?___
A. Cisco loS router
B. Cisco ASA 5500 Ser ies security appliance
C. Cisco ASA 5500 X series Next Gen Security appliance
D. Cisco 4200 series IPS appliance
【单选题】
Refer to the exhibit, A Network Secur ity administrator check the ASa firewall NAT policy table rith show nat command, which statement is fails?___
A. There are only reverse translation matches for the REAL SERvER object
B. First policy in the Section 1 is a dynamic nat entry defined in the object configuration
C. NAT policy in section 2 is static entry de fined in the object configuration
D. Translation in Section 3 used when a connection does not matches any entries in first two sections
【单选题】
What is true of an aSa in transparent mode ?___
A. It supports OSPF
B. It requires an IP address for each interface
C. It requires a management IP address
D. It allows the use of dynamic NaT
【单选题】
What is the effect of the ip scp server enable command?___
A. It references an access list that allows specific SCP servers
B. It allows the router to initiate requests to an SCP server
C. It allows the router to become an SCP server
D. It adds SCP to the list of allowed copy functions
【单选题】
How can you mitigate attacks in which the attacker attaches more than one vLan tag to a packet?___
A. Assign an access VLAN to every active port on the switch
B. Disable Ether Channel on the switch
C. Explicitly identity each VLAN allowed across the trunk
D.
E. nable transparent VTP on the switch
【单选题】
Which technology can you implement to centrally mitigate potential threats when users on your network download files that might be malicious?___
A. Enable file-reputation services to inspect all files that traverse the company network and block files with low reputation scores
B. Verify that the compa ny IpS blocks all known malicious website
C. Verity that antivirus software is installed and up to date for all users on your network
D. Implement URL filtering on the perimeter firewall
【单选题】
What is the most common implementation of PaT in a standard networked environment?___
A. configuring multiple external hosts to join the self zo ne and to communicate with one another
B. configuring multiple internal hosts to communicate outside of the network using the outside interface IP address
C. configuring multiple internal hosts to communicate outside of the network by using the inside interface IP address
D. configuring an any any rule to enable external hosts to communicate inside the network
【单选题】
Which component of a bYod architecture provides aAa services for endpoint access ?___
A. Integrated Services Router
B. access point
C. ASA
D. Identity Services
E. ngine
【单选题】
You are configuring a NAT rule on a Cisco ASA ,Which description of a mapped interface is true?___
A. It is mandatory for all firewall modes
B. It is optional in routed mode
C. It is optional in transparent mode
D. It is mandatory for ide ntity NAT only
【单选题】
Which description of the use of a private key is true ?___
A. The sender signs a message using the receivers private key
B. The sender signs a message using their private key
C. The sender encrypts a message using the receivers private key
D. The receiver decrypts a n15ssage using the sender's private key
【单选题】
Which mechanism does the FireAMP Connector use to avoid conflicts with other security applications such as antivirus products ?___
A. Virtualization
B. Containers
C. Sandboxing
D.
E. xclusions
【单选题】
Which network to pology de scribes multiple LANS in a gec? ___
A. SOHO
B. MAN
C. pan
D. CAN
【单选题】
Which statement represents a difference between an access list on an aSa versus an access list on a router?___
A. The asa does not support number access lists
B. The aSa does not support standard access list
C. The asa does not ever use a wildcard mask
D. The asa does not support extended access lists
【单选题】
Which command do you enter to verify the status and settings of an iKE Phase 1 tunnel?___
A. show crypto ipsec as output
B. show crypto isakmp
C. show crypto isakmp policy
D. show crypto ipsec transform
【单选题】
Which feature can help a router or switch maintain packet forwarding and protocol states despite an attack or heavy traffic load on the router or switch?___
A. service Policy
B. Control Plane Policing
C. Policy Map
D. Cisco
E. xpress
F. orwarding
【单选题】
Which STP feature can prevent an attacker from becoming the root bridge by immediately shutting down the interface when it receives a BPDU?___
A. root guard
B. Port Fast
C. BPDU guard
D. BPDU filtering
【单选题】
Which technology can best protect data at rest on a user system?___
A. full-disk encryption
B. IPsec tunnel
C. router ACL
D. network IPS
【多选题】
Which two primary security concerns can you mitigate with a BYOD solution ?___
A. schedule for patching the device
B. securing access to a trusted corporate network
C. compliance with applicable policies
D. connections to public Wi-Fi networks
E. device tagging and invento
【多选题】
choose five___
A. MD5————————inserure
B. DES————————insercure
C. SDES———————legacy
D. SHA-1———————legacy
E. HMAC-MD5—————legacy
【多选题】
Which two characteristics of symmetric encryption are true?___
A. It uses digital certificates
B. It requires more resources than asymmetric ancryption
C. It uses the same key to enctypt and decrupt traffic
D. It uses a public key and a pricate key to encrypt and decrypt traffic.
E. It is faster than asymmetric encryption
【多选题】
which two characteristics of PVLAN are true?___
A. Promiscuous porta can communicate with PVLAN ports.
B. Isolated ports cannot communicate with other ports on the same VLAN
C. Community ports have to be a part of the trunk.
D. They require VTP to be enabled in server mode
E. PVLAN ports can be configured as Ether Channel ports
【多选题】
What are two options for running Cisco SDM?___
A. Running SDM from a mobile device
B. Running SDM from within CiscoWorks
C. Running SDM from a router's flash
D. Running SDM from the Cisco web porta
E. Running SDM from a PC
【多选题】
Which two options are the primary deployment modeles for mobile device management?___
A. multisite
B. cloud-based
C. on premises
D. hybrid cloud basedo
E. single site
【多选题】
Drag the recommendation on the left to the Cryptographic algorithms on the right, Options will be used more than once.___
A. Avoid——————————————DES,MD5
B. Legacy——————————————SDES,SHA1,HMAC-MD5
推荐试题
【单选题】
固定资产贷款提款条件,包括___项目实际进度与已投资额相匹配等。
A. 与贷款同比例的资本金到位50%
B. 与贷款同比例的资本金已足额到位
C. 项目实际进度大于已投资额
D. 项目实际进度小于已投资额
【单选题】
固定资产贷款的借款人违约事项,包括___未按约定方式支用贷款资金未遵守承诺事项申贷文件信息失真突破约定的财务指标约束等。
A. 未按约定时间支用贷款资金
B. 未及时通知变更的联系方式
C. 未按约定用途使用贷款
D. 提前偿还贷款本息
【单选题】
固定资产贷款发放与支付必要时应通过专门的贷款发放账户办理,专门的贷款发放账户可以是一般账户或___账户。
A. 专用
B. 基本
C. 临时
D. 任意
【单选题】
对于固定资产贷款,农信社应根据___的原则,与借款人协商是否采用专门的贷款发放账户。
A. 是否能有效监控贷款按约定用途使用
B. 是否能到期偿还贷款本息
C. 是否符合固定资产贷款管理办法
D. 是否在信用社开立账户
【单选题】
单笔金额超过超过___万元人民币的固定资产贷款资金支付应采用受托支付。
A. 500(含)
B. 500(不含)
C. 1000(含)
D. 1000(不含)
【单选题】
受托支付方式下,借款人应提交以下资料:___,本笔支付对应的交易资料,资本金到位及使用情况的证明等。
A. 借款人未签章的支付结算凭证
B. 以前的交易资料
C. 交易商品的数量及名称
D. 借款人已签章的支付结算凭证
【单选题】
审核固定资产贷款资本金到位情况包括,确认与拟发放贷款___的资本金已经到位或已使用于项目。
A. 同金额
B. 同比例
C. 超比例
D. 超金额
【单选题】
审核固定资产贷款支付事项合规情况包括,支付事项符合约定的贷款用途___等。
A. 贷款用途合规合法
B. 交易资料完整
C. 交易对象真实存在
D. 支付对象与交易资料中的交易对手一致
【单选题】
固定资产贷款审核通过后,农信社___将款项由借款人账户划入其交易对手账户。
A. 资金组织
B. 结算部门
C. 公司业务
D. 财务管理
【单选题】
项目融资的贷款用途通常是用于建造___大型生产装置基础设施房地产项目或其他项目,包括对在建或已建项目的再融资。
A. 一个或一组
B. 一个或多组
C. 多个或一组
D. 多个或多组
【单选题】
对于融资结构复杂采用新型技术的项目融资,在项目评估和执行过程中,可以委托或者要求借款人委托具备相关资质的独立中介机构为项目提供___税务保险技术环保和监理等方面的专业意见或服务。
A. 法律
B. 人员
C. 财务
D. 融资
【单选题】
项目融资的风险评价,应充分识别和评估融资项目中存在的___风险和经营期风险。
A. 计划期
B. 融资期
C. 建设期
D. 转型期
【单选题】
项目融资的风险评价,以偿债能力分析为核心,重点从项目技术可行性财务可行性和___等方面评估。
A. 融资渠道多样性
B. 还款来源可靠性
C. 项目操作人员道德
D. 还款方式合理性
【单选题】
项目融资的风险评价,以___分析为核心,重点从项目技术可行性财务可行性和还款来源可靠性等方面评估。
A. 偿债能力
B. 还款方式
C. 支付方式
D. 项目前景
【单选题】
对于___不确定性因素较大的项目融资,农信社认为有必要的,应要求项目发起人将持有的项目法人股权为贷款提供质押担保。
A. 短期
B. 金额较小
C. 金额较大
D. 期限较长
【单选题】
同一笔项目融资可以根据不同阶段的___和水平,按照风险收益匹配原则设定不同的贷款利率方式和利率水平。
A. 风险特征
B. 政策要求
C. 资金需求
D. 收益
【单选题】
与贷款同比例的项目资本金___发放贷款的,应对有关责任人进行责任认定和处罚。
A. 到位后
B. 到位前
C. 到位同时
D. 到位
【单选题】
对于项目融资贷款,应对借款人和项目的经营情况进行___的监控。
A. 不定期
B. 持续
C. 有效
D. 持续有效
【单选题】
关于成长阶段企业信贷风险分析不正确的是___。
A. 有能力偿还资本贷款和固定资产贷款
B. 销售增长和产品开发有可能导致偿付风险
C. 必须进行细致的信贷分析
D. 成长阶段的企业代表中等程度的风险
【单选题】
关于流动性的说法,不正确的是___。
A. 流动比率、存量存贷比率、增量存贷比率是衡量目标区域流动性的指标
B. 过高的流动性可能意味着资金利用效率不足,信贷经营处于低效率中
C. 流动性过高或过低都可能意味着区域风险的下降
D. 过低的流动性意味着资金周转不畅或出现信贷资金固化
【单选题】
关于影响贷款价格的主要因素,以下说法错误的是___。
A. 借款人的信用越好,贷款风险越小,贷款价格也应越低
B. 当贷款供大于求时,贷款价格应当提高;当贷款供不应求时,贷款价格应当适当降低
C. 贷款收益率目标直接影响到银行总体盈利目标的实现。在贷款定价时,必须考虑能否在总体上实现银行的贷款收益
D. 为弥补非预期损失,贷款要占用一定的经济资本,经济资本是用来承担非预期损失和保持正常经营所需的成本
【单选题】
借款人还款能力的主要标志就是___。
A. 借款人的现金流量是否充足
B. 借款人的资产负债比率是否足够低
C. 借款人的管理水平是否很高
D. 借款人的销售收入和利润是否足够高
【单选题】
借款人盈利能力的比率通过___反映。
A. 效率比率
B. 杠杆比率
C. 流动比率
D. 营业利润率
【单选题】
竞争性进入威胁的严重程度取决于___。
A. 进入新领域的障碍大小与预期现有企业对于进入者的反应情况
B. 替代品的威胁
C. 买方的讨价还价能力
D. 供方的讨价还价能力
【单选题】
某公司第一年的销售收入为100 万元,销售成本比率为40%;第二年的销售收入为200 万元,销售成本比率为50%,则销售成本比率的增加消耗掉了___万元的现金。
A. 60
B. 50
C. 40
D. 20
【单选题】
企业速动资产包括___。
A. 待摊费用
B. 预付账款
C. 存货
D. 应收账款
【单选题】
如果某公司固定资产的累计折旧为50 万元,总固定资产为100 万元,总折旧固定资产为80 万元,则该公司的固定资产使用率为___。
A. 62.5%
B. 50%
C. 80%
D. 1
【单选题】
商业银行对借款人最关心的就是___。
A. 借款人财务信息的质量
B. 借款人的家庭背景
C. 借款人的商业经验
D. 借款人的现在和未来的偿债能力
【单选题】
市场细分的作用不包括___。
A. 有利于市场的发展和营销
B. 有利于选择目标市场和制定营销策略
C. 有利于发掘市场机会,开拓新市场,更好地满足不同客户对金融产品的需要
D. 有利于集中人力、物力投入目标市场,提高银行的经济效益
【单选题】
损益表分析中,计算企业净利润的步骤应为___。
A. 收入一利润总额一毛利润一净利润
B. 毛利润一营业利润-利润总额一净利润
C. 营业利润一毛利润一利润总额一净利润
D. 营业利润一利润总额一毛利润一净利润
【单选题】
下列比率不属于营运能力分析常用的比率的是___。
A. 总资产周转率
B. 固定资产周转率
C. 流动比率
D. 资产收益率
【单选题】
下列对现金流量的理解,正确的是___。
A. 是存量的概念,反映一段时间内现金的发生额
B. 主要讨论现金及现金等价物之间的变动
C. 可分为经营活动的现金流量、投资活动的现金流量和融资活动的现金流量
D. 计算时,要以资产负债表为基础,根据损益表期初期末的变动数调整
【单选题】
下列对于经济周期的描述,正确的是___。
A. 经济周期的供求几乎不变
B. 经济周期中经济增长是均衡的
C. 经济周期中经济增长是非均衡的
D. 经济周期中不存在经济的扩张和收缩
【单选题】
下列关于企业流动比率的说法,正确的是___。
A. 流动比率也称酸性测验比率
B. 流动比率=流动资产/(流动资产+流动负债)
C. 流动比率反映了企业用来偿还负债的能力
D. 企业的流动比率越高越好
【单选题】
下列关于区域风险的说法,错误的是___。
A. 区域风险是指受特定区域的自然、社会、经济、文化和银行管理水平等因素影响,而使信贷资产遭受损失的可能性
B. 区域风险包括外部因素引发的区域风险
C. 区域风险包括内部因素导致的区域风险
D. 区域风险表现为利率风险、清算风险、汇率风险
【单选题】
下列关于区域经济政策对信贷风险的影响,说法正确的是___。
A. 通常国家重点支持地区的信贷风险相对较低
B. 国家重点发展区域之外的地区,银行贷款风险较高
C. 在评价区域政策时,应充分重点吸收学者专家的意见
D. 在评价区域政策时,要把握银行战略导向,有计划而为
【单选题】
下列关于区域市场化程度和法制框架对信贷风险的影响,说法正确的是___。
A. 市场的成熟完善与否,间接影响到区域发展的快慢
B. 通常情况下,市场化程度越高,区域风险越高
C. 不同区域的法律制度体系完善程度不同,但其对区域风险的影响大同小异
D. 法律制度框架完善的区域,贷款回收能得到有效保障,区域风险相对较低
【单选题】
下列属于银行市场定位中的产品定位手段是___。
A. 设计特色办公楼
B. 设计专用字体
C. 提供增值服务
D. 设计户外广告
【单选题】
下列选项不能反映借款人盈利能力的比率的有___。
A. 销售利润率
B. 营业利润率
C. 税前利润率和净利润率
D. 负债与所有者权益比率
【单选题】
下列因素不会导致行业中现有企业之间竞争加剧的是___。
A. 行业进入障碍较低
B. 产品需求增长迅速
C. 用户转换成本很低
D. 退出障碍较高
欢迎使用我爱刷题
×
微信搜索我爱刷题小程序
温馨提示
×
请在电脑上登陆“www.woaishuati.com”使用