刷题
导入试题
【多选题】
Which two features are supported in a VRF-aware softwar infrastructure before VRF-lite?___
A. multicast
B. fair queuing
C. WCCP
D.
E. IGRP
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
AD
解析
暂无解析
相关试题
【多选题】
.Which loS command do you enter to test authentication again a AAA server?___
A. dialer aaa suffix <suffix> password <password>
B. ppp authentication chap pap test
C. test aaa-server authentication dialer group user name <user> password <password>
D. aaa authentication enable default test group tacases
【多选题】
Which two statements about the self zone on a cisco Xone based policy firewall are true?___
A. Multiple interfaces can be assigned to the self zone
B. it supports stateful inspections for multicast traffic
C. zone pairs that include the self zone apply to traffic transiting the device.
D. it can be either the source zone or the destination zone
E. traffic entering the self zone must match a rule
【多选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which type of firewall can server as the interme diary between a client and a server ?___
A. Stateless firewall
B. application firewall
C. proxy firewall
D. personal firewall
【单选题】
What is the highest security level that can be configured for an interface on an ASA?___
A. 0
B. 50
C. 10
D. 200
【单选题】
Which term refers to the electromagnetic interference that can radiate from network cables?___
A. Gaussian distributions
B. Doppler waves
C. emanations
D. multimode distortion
【单选题】
How does a zone pair handle traffic if the policy de fination of the zone pair is missing?___
A. It inspects all traffic.
B. It drops all traffic.
C. It permits all traffic wihtout logging
D. It permits and logs all traffic
【单选题】
default how does a zone based firewall handle traffic to add from the self zone?___
A. It permits all traffic without inspection
B. It inspects all traffic to determine how it is handled
C. It permits all traffic after inspection
D. It frops all traffic
【单选题】
Which command should beused to ena ble AAA Authentication to determine if a user can access the privilege command level?___
A. aaa authentication enable local
B. aaa authentication enable level=
C. aaa authentication enable method de fault
D. aaa authentication enable defa ult local
【单选题】
On an ASA, the policy indicates that traffic should not be translated is often referred to as which of the following?___
A. NAT zero
B. NAT forward
C. NAT nul
D. NAT allow
【单选题】
Which protocol offers data Integrity encryption, authentication, and anti-replay functions for IPSec VPN?___
A. ESP protocol
B. IKEv3 Protocol
C. AH protoco
D. IKEv1 Protocol
【单选题】
Which component offers a variety of security Solution, including firwall, IF Antivirus and antiphishing features?___
A. Cisco loS router
B. Cisco ASA 5500 Ser ies security appliance
C. Cisco ASA 5500 X series Next Gen Security appliance
D. Cisco 4200 series IPS appliance
【单选题】
Refer to the exhibit, A Network Secur ity administrator check the ASa firewall NAT policy table rith show nat command, which statement is fails?___
A. There are only reverse translation matches for the REAL SERvER object
B. First policy in the Section 1 is a dynamic nat entry defined in the object configuration
C. NAT policy in section 2 is static entry de fined in the object configuration
D. Translation in Section 3 used when a connection does not matches any entries in first two sections
【单选题】
What is true of an aSa in transparent mode ?___
A. It supports OSPF
B. It requires an IP address for each interface
C. It requires a management IP address
D. It allows the use of dynamic NaT
【单选题】
What is the effect of the ip scp server enable command?___
A. It references an access list that allows specific SCP servers
B. It allows the router to initiate requests to an SCP server
C. It allows the router to become an SCP server
D. It adds SCP to the list of allowed copy functions
【单选题】
How can you mitigate attacks in which the attacker attaches more than one vLan tag to a packet?___
A. Assign an access VLAN to every active port on the switch
B. Disable Ether Channel on the switch
C. Explicitly identity each VLAN allowed across the trunk
D.
E. nable transparent VTP on the switch
【单选题】
Which technology can you implement to centrally mitigate potential threats when users on your network download files that might be malicious?___
A. Enable file-reputation services to inspect all files that traverse the company network and block files with low reputation scores
B. Verify that the compa ny IpS blocks all known malicious website
C. Verity that antivirus software is installed and up to date for all users on your network
D. Implement URL filtering on the perimeter firewall
【单选题】
What is the most common implementation of PaT in a standard networked environment?___
A. configuring multiple external hosts to join the self zo ne and to communicate with one another
B. configuring multiple internal hosts to communicate outside of the network using the outside interface IP address
C. configuring multiple internal hosts to communicate outside of the network by using the inside interface IP address
D. configuring an any any rule to enable external hosts to communicate inside the network
【单选题】
Which component of a bYod architecture provides aAa services for endpoint access ?___
A. Integrated Services Router
B. access point
C. ASA
D. Identity Services
E. ngine
【单选题】
You are configuring a NAT rule on a Cisco ASA ,Which description of a mapped interface is true?___
A. It is mandatory for all firewall modes
B. It is optional in routed mode
C. It is optional in transparent mode
D. It is mandatory for ide ntity NAT only
【单选题】
Which description of the use of a private key is true ?___
A. The sender signs a message using the receivers private key
B. The sender signs a message using their private key
C. The sender encrypts a message using the receivers private key
D. The receiver decrypts a n15ssage using the sender's private key
【单选题】
Which mechanism does the FireAMP Connector use to avoid conflicts with other security applications such as antivirus products ?___
A. Virtualization
B. Containers
C. Sandboxing
D.
E. xclusions
【单选题】
Which network to pology de scribes multiple LANS in a gec? ___
A. SOHO
B. MAN
C. pan
D. CAN
【单选题】
Which statement represents a difference between an access list on an aSa versus an access list on a router?___
A. The asa does not support number access lists
B. The aSa does not support standard access list
C. The asa does not ever use a wildcard mask
D. The asa does not support extended access lists
【单选题】
Which command do you enter to verify the status and settings of an iKE Phase 1 tunnel?___
A. show crypto ipsec as output
B. show crypto isakmp
C. show crypto isakmp policy
D. show crypto ipsec transform
【单选题】
Which feature can help a router or switch maintain packet forwarding and protocol states despite an attack or heavy traffic load on the router or switch?___
A. service Policy
B. Control Plane Policing
C. Policy Map
D. Cisco
E. xpress
F. orwarding
【单选题】
Which STP feature can prevent an attacker from becoming the root bridge by immediately shutting down the interface when it receives a BPDU?___
A. root guard
B. Port Fast
C. BPDU guard
D. BPDU filtering
【单选题】
Which technology can best protect data at rest on a user system?___
A. full-disk encryption
B. IPsec tunnel
C. router ACL
D. network IPS
【多选题】
Which two primary security concerns can you mitigate with a BYOD solution ?___
A. schedule for patching the device
B. securing access to a trusted corporate network
C. compliance with applicable policies
D. connections to public Wi-Fi networks
E. device tagging and invento
【多选题】
choose five___
A. MD5————————inserure
B. DES————————insercure
C. SDES———————legacy
D. SHA-1———————legacy
E. HMAC-MD5—————legacy
【多选题】
Which two characteristics of symmetric encryption are true?___
A. It uses digital certificates
B. It requires more resources than asymmetric ancryption
C. It uses the same key to enctypt and decrupt traffic
D. It uses a public key and a pricate key to encrypt and decrypt traffic.
E. It is faster than asymmetric encryption
【多选题】
which two characteristics of PVLAN are true?___
A. Promiscuous porta can communicate with PVLAN ports.
B. Isolated ports cannot communicate with other ports on the same VLAN
C. Community ports have to be a part of the trunk.
D. They require VTP to be enabled in server mode
E. PVLAN ports can be configured as Ether Channel ports
【多选题】
What are two options for running Cisco SDM?___
A. Running SDM from a mobile device
B. Running SDM from within CiscoWorks
C. Running SDM from a router's flash
D. Running SDM from the Cisco web porta
E. Running SDM from a PC
【多选题】
Which two options are the primary deployment modeles for mobile device management?___
A. multisite
B. cloud-based
C. on premises
D. hybrid cloud basedo
E. single site
【多选题】
Drag the recommendation on the left to the Cryptographic algorithms on the right, Options will be used more than once.___
A. Avoid——————————————DES,MD5
B. Legacy——————————————SDES,SHA1,HMAC-MD5
【多选题】
Which two are valid types of vLans using PVLANS ?___
A. Community VLAN
B. Backup VLAN
C. Secondary VLAN
D. Isolated VLAN
E. Isolated VLAN
【多选题】
Which two commands are used to implement Resilient lOS Configuration ___
A. Secure boot-config
B. copy running-config tftp
C. copy flash:ios bin tftp
D. copy running-config startup-config
E. secure boot-image
【多选题】
Which two types of firewalls work at layer 4 and above ?___
A. Stateful inspection
B. Network Address Translation
C. Circuit-Level gateway
D. Static packet filter
E. Application Level firewall
【多选题】
Which two default settings for port security are true ?___
A. Violation is Protect
B. Violation is Restrict
C. Violation is Shutdown
D. Maximum number of MAC addresses is 2
E. Maximum number of MAC addresses is 1
【多选题】
Which two are characteristics of RADIUS?___
A. Uses UDP ports 1812 /1813
B. Uses TCP port 49
C. Uses UDP port 49
D.
E. ncrypts only the password between user and server
推荐试题
【单选题】
IPv6协议栈中取消了( )协议。
A. ICMP
B. UDP
C. ARP
D. DHCP
【单选题】
IP地址v4:192. 168. 12.72 ,子网掩码为:255. 255. 255. 192,该地址 所在网段的 网络地址和广播地址为( )。
A. 192. 168. 12. 43;255. 255. 255. 128
B. 192. 168. 12. 64;192. 168. 12. 127
C. 192. 168.0.0;255.255.255.25
D. 192. 168. 12. 32; 192. 168. 12.127
【单选题】
室内覆盖系统中的干线放大器一般采取串联的方式进行联接。 ( )
A. 错误
B. 正确
【单选题】
以下关于直放站施主天线的描述, ( )是正确的
A. 尽量使用全向天线
B. 尽量使用方向性好的天线
C. 位置越低越好
D. 位置越高越好
【单选题】
若某天线是 9dBd,对应的 dBi 为 ( )。
A. 11.15
B. 14.15
C. 12
D. 19
【单选题】
SRVCC常用的互操作事件是
A. A2+B1
B. A2+B2
C. A2+A5
D. A2+A4
【单选题】
VoLTE中承载IMS信令的是( )
A. QCI=2
B. QCI=9
C. QCI=5
D. QCI=1
E. QCI=8
【单选题】
服务小区重选迟滞设置以下哪个值时,最容易导致乒乓重选?( )
A. 3dB
B. 4dB
C. 2dB
D. 1dB
【单选题】
LTE/eHRPD非优化切换实现中,通过读取哪个系统消息来读取eHRPD网络信息?( )
A. SIB7;
B. SIB8
C. SIB2;
D. SIB1;
【单选题】
电梯覆盖小区规划中,一般建议将电梯覆盖与( )层的小区划分为同一小区,电梯内部不设置切换区。
A. 最高层
B. 中间层
C. 一层
D. 负一层
【单选题】
SIB1的传输时间间隔是( )。
A. 40ms
B. 80ms
C. 20ms
D. 10ms
【单选题】
下面哪一个不是LTE中X2接口控制平面主要功能?( )
A. 负荷管理
B. 寻呼管理
C. 干扰管理
D. 移动性管理
【单选题】
eNodeB和SGW之间使用哪种协议?( )
A. GTP-C
B. GTP-U
C. X2AP
D. S1AP
【单选题】
LTE同频测量事件是( )同频切换。
A. A3
B. A4
C. A2
D. A1
【单选题】
发生切换时,( )发生数据的前转,在一定程度上保证数据不丢包。
A. GTPU
B. DMAC
C. PDCP
D. RLC
【单选题】
同频eNB间通过X2接口切换准备过程的成功概率是( )
A. 源站统计eNodeB发出的包含移动控制信息的RRC Reconfiguration/源站收到的来自MME的Handover Command的次数
B. 源站统计eNodeB发出的包含移动控制信息的RRC Reconfiguration/源站收到的来自目标站点的Handover Request Acknowledge次数
C. 源站统计eNodeB发出的Handover Request次数/源站收到的来自目标站点的Handover Request Acknowledge次数
D. 源站统计eNodeB发出的Handover Request次数/源站收到的来自MME的Handover Command的次数
【单选题】
ROHC在LTE中由( )处理。
A. MAC
B. RRC
C. PDCP
D. RLC
【单选题】
SGW和PGWS5/S8协议栈自上而下正确的顺序是:( )
A. GTP/SCTP/IP/L2/L1
B. GTP/RLC/MAC/L1
C. GTP/TCP/IP/L2/L1
D. GTP/UDP/IP/L2/L1
【单选题】
一个下行数据包从internet发送给一台终端,这台终端的状态是ECM-IDLE,接入方式是LTE以下说法正确的是:( )。
A. 这个数据包被SGW丢弃
B. PGW发起寻呼流程
C. MME发起寻呼流程
D. 这个数据包转发给eNodeB,eNodeB发起寻呼流程
【单选题】
Volte端到端时延( )
A. < 250 ms
B. < 500ms
C. < 50 ms
D. < 150 ms
E. < 15ms
【单选题】
LTE系统中,以下哪些参数可在小区激活状态下直接修改并生效( )。
A. 小区下行系统带宽
B. 小区最大发射功率
C. 子帧信息
D. 小区中心频点
【单选题】
SIP响应中183是什么含义?( )
A. 振铃
B. 会话进行中
C. 试呼叫
D. 呼叫正在前转
【单选题】
VOLTE中高清通话可采用的最高编码方式为( )
A. AMR23.05 kbit/s
B. AMR23.85kbit/s
C. AMR 24.28 kbit/s
D. AMR 37.85 kbit/s
【单选题】
VoLTE中语音业务承载组合:SRB1+SRB2+2xAM DRB+1xUM DRB,其中UM DRB为( )的承载
A. QCI=2
B. QCI=9
C. QCI=5
D. QCI=1
E. QCI=8
【单选题】
LTE的寻呼信道映射到以下哪个物理信道上。( )
A. PDCCH
B. PCFICH
C. PDSCH
D. PBCH
【单选题】
下面哪项不是PUCCH上载有的控制信令消息?( )
A. CQI
B. UCI
C. HARQACK/NACK
D. SR
【单选题】
LTE同步信号用来确保小区内UE获得下行同步,在信道中的位置和长度都固定,在频域上占用系统带宽中心位置共( )个子载波。
A. 72
B. 60
C. 84
D. 96
【单选题】
邻区规划的原则有( )。
A. 邻区越少越好
B. 郊县位置间距大,相邻位置不必配置为邻区
C. 邻区越多越好
D. 地理位置相邻的配置为邻区
【单选题】
( )用于在eNodeB与SAE之间传输用户面数据。
A. S1-UP
B. S5
C. UU
D. X2-UP
【单选题】
VoLTE的语音业务,从RB承载的角度来看,E-UTRAN需要需要建立以下承载的组合( )
A. SRB1+SRB2+2xAM DRB+1xUM DRB
B. SRB1+SRB2+2xAM DRB+2xUM DRB
C. SRB1+SRB2+1xAM DRB+2xUM DRB
D. SRB1+SRB2+1xAM DRB+1xUM DRB
【单选题】
以下哪个参数不用于LTE异系统小区重选控制( )。
A. ThreshXHigh
B. ThreshXLow
C. sNonintraSearch
D. sIntraSearch
【单选题】
移动互联网业务感知测试APP在幵启测速前应做什么工作?( )
A. 查看手机电量;
B. 不需做其他工作可直接发起测速
C. 查看手机信号;
D. 应先ping测试服务器确保正常
【单选题】
以下哪个功能不属于PGW的功能( )。
A. 合法监听
B. 上行和下行的承载绑定
C. IP地址分配
D. TA List管理
【单选题】
在测量报告消息中,最多可以上报( )个小区的测量结果。
A. 16
B. 32
C. 8
D. 4
【单选题】
单站验证测试中哪项不是空闲模式检查的内容?( )
A. 数据业务测试
B. CINR检查
C. PCI检查
D. 频率检查
【单选题】
在LTE系统中,以下哪个协议栈的速率最大( )。
A. MAC层速率
B. 物理层速率
C. PDCP层速率
D. 应用层速率
【单选题】
NB-IoT上行带宽为3.75KHz时,无线帧时长为( )。
A. 1ms
B. 4ms
C. 40ms
D. 10ms
【单选题】
除了IDLE状态外,NB-IoT引入了新的PSM状态,也就是终端关闭射频接收,进入休眠的状态,这种状态最长可以持续多长时间?( )
A. 310h
B. 620h
C. 2.92h
D. 2.56h
【单选题】
NB-IoT更长周期的定期位置更新,TAU最大可达( )。
A. 310h
B. 620h
C. 2.92h
D. 2.56h
【单选题】
NB-SIB1的资源固定映射在几号子帧?( )
A. 3
B. 4
C. 2
D. 1
欢迎使用我爱刷题
×
微信搜索我爱刷题小程序
温馨提示
×
请在电脑上登陆“www.woaishuati.com”使用