【多选题】
Which two features are supported in a VRF-aware softwar infrastructure before VRF-lite?___
A. multicast
B. fair queuing
C. WCCP
D.
E. IGRP
查看试卷,进入试卷练习
微信扫一扫,开始刷题
相关试题
【多选题】
.Which loS command do you enter to test authentication again a AAA server?___
A. dialer aaa suffix <suffix> password <password>
B. ppp authentication chap pap test
C. test aaa-server authentication dialer group user name <user> password <password>
D. aaa authentication enable default test group tacases
【多选题】
Which two statements about the self zone on a cisco Xone based policy firewall are true?___
A. Multiple interfaces can be assigned to the self zone
B. it supports stateful inspections for multicast traffic
C. zone pairs that include the self zone apply to traffic transiting the device.
D. it can be either the source zone or the destination zone
E. traffic entering the self zone must match a rule
【多选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which type of firewall can server as the interme diary between a client and a server ?___
A. Stateless firewall
B. application firewall
C. proxy firewall
D. personal firewall
【单选题】
What is the highest security level that can be configured for an interface on an ASA?___
【单选题】
Which term refers to the electromagnetic interference that can radiate from network cables?___
A. Gaussian distributions
B. Doppler waves
C. emanations
D. multimode distortion
【单选题】
How does a zone pair handle traffic if the policy de fination of the zone pair is missing?___
A. It inspects all traffic.
B. It drops all traffic.
C. It permits all traffic wihtout logging
D. It permits and logs all traffic
【单选题】
default how does a zone based firewall handle traffic to add from the self zone?___
A. It permits all traffic without inspection
B. It inspects all traffic to determine how it is handled
C. It permits all traffic after inspection
D. It frops all traffic
【单选题】
Which command should beused to ena ble AAA Authentication to determine if a user can access the privilege command level?___
A. aaa authentication enable local
B. aaa authentication enable level=
C. aaa authentication enable method de fault
D. aaa authentication enable defa ult local
【单选题】
On an ASA, the policy indicates that traffic should not be translated is often referred to as which of the following?___
A. NAT zero
B. NAT forward
C. NAT nul
D. NAT allow
【单选题】
Which protocol offers data Integrity encryption, authentication, and anti-replay functions for IPSec VPN?___
A. ESP protocol
B. IKEv3 Protocol
C. AH protoco
D. IKEv1 Protocol
【单选题】
Which component offers a variety of security Solution, including firwall, IF Antivirus and antiphishing features?___
A. Cisco loS router
B. Cisco ASA 5500 Ser ies security appliance
C. Cisco ASA 5500 X series Next Gen Security appliance
D. Cisco 4200 series IPS appliance
【单选题】
Refer to the exhibit, A Network Secur ity administrator check the ASa firewall NAT policy table rith show nat command, which statement is fails?___
A. There are only reverse translation matches for the REAL SERvER object
B. First policy in the Section 1 is a dynamic nat entry defined in the object configuration
C. NAT policy in section 2 is static entry de fined in the object configuration
D. Translation in Section 3 used when a connection does not matches any entries in first two sections
【单选题】
What is true of an aSa in transparent mode ?___
A. It supports OSPF
B. It requires an IP address for each interface
C. It requires a management IP address
D. It allows the use of dynamic NaT
【单选题】
What is the effect of the ip scp server enable command?___
A. It references an access list that allows specific SCP servers
B. It allows the router to initiate requests to an SCP server
C. It allows the router to become an SCP server
D. It adds SCP to the list of allowed copy functions
【单选题】
How can you mitigate attacks in which the attacker attaches more than one vLan tag to a packet?___
A. Assign an access VLAN to every active port on the switch
B. Disable Ether Channel on the switch
C. Explicitly identity each VLAN allowed across the trunk
D.
E. nable transparent VTP on the switch
【单选题】
Which technology can you implement to centrally mitigate potential threats when users on your network download files that might be malicious?___
A. Enable file-reputation services to inspect all files that traverse the company network and block files with low reputation scores
B. Verify that the compa ny IpS blocks all known malicious website
C. Verity that antivirus software is installed and up to date for all users on your network
D. Implement URL filtering on the perimeter firewall
【单选题】
What is the most common implementation of PaT in a standard networked environment?___
A. configuring multiple external hosts to join the self zo ne and to communicate with one another
B. configuring multiple internal hosts to communicate outside of the network using the outside interface IP address
C. configuring multiple internal hosts to communicate outside of the network by using the inside interface IP address
D. configuring an any any rule to enable external hosts to communicate inside the network
【单选题】
Which component of a bYod architecture provides aAa services for endpoint access ?___
A. Integrated Services Router
B. access point
C. ASA
D. Identity Services
E. ngine
【单选题】
You are configuring a NAT rule on a Cisco ASA ,Which description of a mapped interface is true?___
A. It is mandatory for all firewall modes
B. It is optional in routed mode
C. It is optional in transparent mode
D. It is mandatory for ide ntity NAT only
【单选题】
Which description of the use of a private key is true ?___
A. The sender signs a message using the receivers private key
B. The sender signs a message using their private key
C. The sender encrypts a message using the receivers private key
D. The receiver decrypts a n15ssage using the sender's private key
【单选题】
Which mechanism does the FireAMP Connector use to avoid conflicts with other security applications such as antivirus products ?___
A. Virtualization
B. Containers
C. Sandboxing
D.
E. xclusions
【单选题】
Which network to pology de scribes multiple LANS in a gec? ___
A. SOHO
B. MAN
C. pan
D. CAN
【单选题】
Which statement represents a difference between an access list on an aSa versus an access list on a router?___
A. The asa does not support number access lists
B. The aSa does not support standard access list
C. The asa does not ever use a wildcard mask
D. The asa does not support extended access lists
【单选题】
Which command do you enter to verify the status and settings of an iKE Phase 1 tunnel?___
A. show crypto ipsec as output
B. show crypto isakmp
C. show crypto isakmp policy
D. show crypto ipsec transform
【单选题】
Which feature can help a router or switch maintain packet forwarding and protocol states despite an attack or heavy traffic load on the router or switch?___
A. service Policy
B. Control Plane Policing
C. Policy Map
D. Cisco
E. xpress
F. orwarding
【单选题】
Which STP feature can prevent an attacker from becoming the root bridge by immediately shutting down the interface when it receives a BPDU?___
A. root guard
B. Port Fast
C. BPDU guard
D. BPDU filtering
【单选题】
Which technology can best protect data at rest on a user system?___
A. full-disk encryption
B. IPsec tunnel
C. router ACL
D. network IPS
【多选题】
Which two primary security concerns can you mitigate with a BYOD solution ?___
A. schedule for patching the device
B. securing access to a trusted corporate network
C. compliance with applicable policies
D. connections to public Wi-Fi networks
E. device tagging and invento
【多选题】
choose five___
A. MD5————————inserure
B. DES————————insercure
C. SDES———————legacy
D. SHA-1———————legacy
E. HMAC-MD5—————legacy
【多选题】
Which two characteristics of symmetric encryption are true?___
A. It uses digital certificates
B. It requires more resources than asymmetric ancryption
C. It uses the same key to enctypt and decrupt traffic
D. It uses a public key and a pricate key to encrypt and decrypt traffic.
E. It is faster than asymmetric encryption
【多选题】
which two characteristics of PVLAN are true?___
A. Promiscuous porta can communicate with PVLAN ports.
B. Isolated ports cannot communicate with other ports on the same VLAN
C. Community ports have to be a part of the trunk.
D. They require VTP to be enabled in server mode
E. PVLAN ports can be configured as Ether Channel ports
【多选题】
What are two options for running Cisco SDM?___
A. Running SDM from a mobile device
B. Running SDM from within CiscoWorks
C. Running SDM from a router's flash
D. Running SDM from the Cisco web porta
E. Running SDM from a PC
【多选题】
Which two options are the primary deployment modeles for mobile device management?___
A. multisite
B. cloud-based
C. on premises
D. hybrid cloud basedo
E. single site
【多选题】
Drag the recommendation on the left to the Cryptographic algorithms on the right, Options will be used more than once.___
A. Avoid——————————————DES,MD5
B. Legacy——————————————SDES,SHA1,HMAC-MD5
【多选题】
Which two are valid types of vLans using PVLANS ?___
A. Community VLAN
B. Backup VLAN
C. Secondary VLAN
D. Isolated VLAN
E. Isolated VLAN
【多选题】
Which two commands are used to implement Resilient lOS Configuration ___
A. Secure boot-config
B. copy running-config tftp
C. copy flash:ios bin tftp
D. copy running-config startup-config
E. secure boot-image
【多选题】
Which two types of firewalls work at layer 4 and above ?___
A. Stateful inspection
B. Network Address Translation
C. Circuit-Level gateway
D. Static packet filter
E. Application Level firewall
【多选题】
Which two default settings for port security are true ?___
A. Violation is Protect
B. Violation is Restrict
C. Violation is Shutdown
D. Maximum number of MAC addresses is 2
E. Maximum number of MAC addresses is 1
【多选题】
Which two are characteristics of RADIUS?___
A. Uses UDP ports 1812 /1813
B. Uses TCP port 49
C. Uses UDP port 49
D.
E. ncrypts only the password between user and server
推荐试题
【单选题】
下列不是铝、镁及其合金的焊接方法的是___。
A. 直流正接的等离子弧焊
B. 直流反接的等离子弧焊
C. 交流等离子弧焊
【单选题】
反射式聚焦所适用的激光加工设备具有___
【单选题】
手工堆焊工艺与手工电弧焊工艺主要的区别在于___。
A. 操作方法
B. 规范参数
C. 焊接缺陷的防止
【单选题】
氧气的液化温度为___℃。
A. -182.96
B. -192.56
C. -202.16.
【单选题】
以下关于电的说法不正确的是___
A. 静电感应不会对人体造成伤害
B. 高压电场会对人体造成伤害
C. 高频电磁场会对人体造成伤害
【单选题】
白铜主要是铜元素与___元素组成的合金
【单选题】
自动埋弧堆焊速度以___较为合适
A. 8-18m/h
B. 14-36m/h
C. 24-42m/h
【单选题】
登高作业脚手板的双人道宽度不得小于___
【单选题】
一切灭火措施,都是为了破坏产生___的条件
【单选题】
人体因操作不慎而触及两相带电体,称为___触电
【单选题】
二氧化碳气体保护焊的主要缺点是焊接过程中产生___
【单选题】
关于焊接通风技术措施设计的要求,下列说法错误的是___
A. 有害物质可直接抽排至室外大气
B. 车间内施焊时,必须保证焊接过程中产生的有害物质能及时排出
C. 采用通风措施后必须保证冬季室温在规定范围内,满足采暖需要
【单选题】
铜及铜合金导热性能好,所以焊接前一般应___
A. 可不预热
B. 应预热
C. 必须气保护预热
【单选题】
下列现象属于燃烧的是___
A. 点燃的火柴
B. 金属生锈
C. 生石灰遇水
【单选题】
二氧化碳焊焊接成本是焊条电弧焊的___
A. 40%-50%
B. 70%-80%
C. 100%-120%
【单选题】
熔化极惰性气体保护电弧焊适用于___
A. 铝及铝合金中、厚板焊接
B. 碳钢全位置焊接
C. 合金钢全位置焊接
【单选题】
关于职业病防治过程中劳动者的权利和义务,下列说法错误的是___。
A. 从事接触职业病危害因素作业的劳动者有获得职业健康检查的权利
B. 劳动者无权了解本人健康检查结果
C. 劳动者若不同意职业健康检查的结论,有权根据有关规定投诉
【单选题】
二氧化碳焊的全称为___
A. 二氧化碳气体保护电弧焊
B. 二氧化碳气体保护焊
C. 二氧化碳焊
【单选题】
关于焊接电流的选择,下列说法错误的是___
A. 电流过小,电弧不稳定,易造成夹渣和未焊透等缺陷
B. 电流过大不会导致飞溅增加
C. 电流过小,导致生产率低
【单选题】
马氏体的体积比相同重量的奥氏体的体积___
【单选题】
埋弧焊由于采用颗粒状焊剂,所以此种焊接方法一般只适用于的焊接位置是___
【单选题】
如果该健康检查项目不是国家法律法规制定的强制性进行的项目,劳动者参加应本着___
A. 自愿原则
B. 服从单位安排原则
C. 服从医嘱原则
【单选题】
下列不属于易出现机械性伤害的是___
A. 碰撞和刮蹭的伤害
B. 物体坠落打击的伤害
C. 电动机械设备不按规定接地接零
【单选题】
社会保险行政部门应当自受理工伤认定申请之日起___日内作出工伤认定的决定。
【单选题】
紫外线对人体的危害主要是造成皮肤和眼睛的伤害,其引起的原因是紫外线的___
【单选题】
容器上的聚四氟乙烯、聚丙烯等填料垫圈,焊前必须___
【单选题】
焊丝送进和电弧移动都由专门的焊接装置自动完成的埋孤焊类型是___
【单选题】
氩弧焊时,气体保护效果不佳的原因不包括___
A. 气体流量过低
B. 气流挺度差
C. 排除周围空气的能力强
【单选题】
普通低合金钢中合金元素的含量一般不超过___%
【单选题】
对焊接场所的要求,说法正确的是___
A. 在焊接工作场所,必须有防火设备
B. 附近有与明火作业相抵触的工种在作业(如油漆等)可以进行钎焊操作
C. 施工人员配带安全带并遵守高空作业的其他有关规定即可.不用办理高空作业许可证
【单选题】
谁焊主要用于材料间的冶金结合是___
A. 同种金属
B. 异种金属
C. 金属与非金属
【单选题】
下列不是氩弧焊接特点的是___
A. 电弧的光辐射很强
B. 可以焊接薄板
C. 焊接设备比较复杂
【单选题】
二氧化碳气体保护焊时,为了控制熔深,一般调节___
【单选题】
原子氢焊进行焊接时采用的电源形式为___
【单选题】
容量为40升的标准钢气瓶可灌入的液态二氧化碳质量为___kg
【单选题】
熔化极活性气体保护电弧焊不适用于___
A. 不锈钢全位置焊接
B. 合金钢全位置焊接
C. 铝及铝合金中、厚板焊接