刷题
导入试题
【单选题】
Which description of the use of a private key is true ?___
A. The sender signs a message using the receivers private key
B. The sender signs a message using their private key
C. The sender encrypts a message using the receivers private key
D. The receiver decrypts a n15ssage using the sender's private key
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
B
解析
暂无解析
相关试题
【单选题】
Which mechanism does the FireAMP Connector use to avoid conflicts with other security applications such as antivirus products ?___
A. Virtualization
B. Containers
C. Sandboxing
D.
E. xclusions
【单选题】
Which network to pology de scribes multiple LANS in a gec? ___
A. SOHO
B. MAN
C. pan
D. CAN
【单选题】
Which statement represents a difference between an access list on an aSa versus an access list on a router?___
A. The asa does not support number access lists
B. The aSa does not support standard access list
C. The asa does not ever use a wildcard mask
D. The asa does not support extended access lists
【单选题】
Which command do you enter to verify the status and settings of an iKE Phase 1 tunnel?___
A. show crypto ipsec as output
B. show crypto isakmp
C. show crypto isakmp policy
D. show crypto ipsec transform
【单选题】
Which feature can help a router or switch maintain packet forwarding and protocol states despite an attack or heavy traffic load on the router or switch?___
A. service Policy
B. Control Plane Policing
C. Policy Map
D. Cisco
E. xpress
F. orwarding
【单选题】
Which STP feature can prevent an attacker from becoming the root bridge by immediately shutting down the interface when it receives a BPDU?___
A. root guard
B. Port Fast
C. BPDU guard
D. BPDU filtering
【单选题】
Which technology can best protect data at rest on a user system?___
A. full-disk encryption
B. IPsec tunnel
C. router ACL
D. network IPS
【多选题】
Which two primary security concerns can you mitigate with a BYOD solution ?___
A. schedule for patching the device
B. securing access to a trusted corporate network
C. compliance with applicable policies
D. connections to public Wi-Fi networks
E. device tagging and invento
【多选题】
choose five___
A. MD5————————inserure
B. DES————————insercure
C. SDES———————legacy
D. SHA-1———————legacy
E. HMAC-MD5—————legacy
【多选题】
Which two characteristics of symmetric encryption are true?___
A. It uses digital certificates
B. It requires more resources than asymmetric ancryption
C. It uses the same key to enctypt and decrupt traffic
D. It uses a public key and a pricate key to encrypt and decrypt traffic.
E. It is faster than asymmetric encryption
【多选题】
which two characteristics of PVLAN are true?___
A. Promiscuous porta can communicate with PVLAN ports.
B. Isolated ports cannot communicate with other ports on the same VLAN
C. Community ports have to be a part of the trunk.
D. They require VTP to be enabled in server mode
E. PVLAN ports can be configured as Ether Channel ports
【多选题】
What are two options for running Cisco SDM?___
A. Running SDM from a mobile device
B. Running SDM from within CiscoWorks
C. Running SDM from a router's flash
D. Running SDM from the Cisco web porta
E. Running SDM from a PC
【多选题】
Which two options are the primary deployment modeles for mobile device management?___
A. multisite
B. cloud-based
C. on premises
D. hybrid cloud basedo
E. single site
【多选题】
Drag the recommendation on the left to the Cryptographic algorithms on the right, Options will be used more than once.___
A. Avoid——————————————DES,MD5
B. Legacy——————————————SDES,SHA1,HMAC-MD5
【多选题】
Which two are valid types of vLans using PVLANS ?___
A. Community VLAN
B. Backup VLAN
C. Secondary VLAN
D. Isolated VLAN
E. Isolated VLAN
【多选题】
Which two commands are used to implement Resilient lOS Configuration ___
A. Secure boot-config
B. copy running-config tftp
C. copy flash:ios bin tftp
D. copy running-config startup-config
E. secure boot-image
【多选题】
Which two types of firewalls work at layer 4 and above ?___
A. Stateful inspection
B. Network Address Translation
C. Circuit-Level gateway
D. Static packet filter
E. Application Level firewall
【多选题】
Which two default settings for port security are true ?___
A. Violation is Protect
B. Violation is Restrict
C. Violation is Shutdown
D. Maximum number of MAC addresses is 2
E. Maximum number of MAC addresses is 1
【多选题】
Which two are characteristics of RADIUS?___
A. Uses UDP ports 1812 /1813
B. Uses TCP port 49
C. Uses UDP port 49
D.
E. ncrypts only the password between user and server
【多选题】
When setting up a site-to-site VPN with PSK authentication on a Cisco router, which two elements must be configured under crypto map?___
A. pfs
B. nat
C. reverse route
D. peer
E. transform-set
【多选题】
When using the Adaptive Security Device Manager(ASDM), which two options are available to add a new root certificate?___
A. Install from SFTP server
B. Usehttps
C. Install from a file
D. Use LDAP
E. Use SCEP
【多选题】
Which two SNMPv3 services support its capabilities as a secure networ k manage protocol? ___
A. access control
B. the shared secret key
C. authentication
D. authorization
E. accounting
【多选题】
Which two statements about routed firewall mode are true ?___
A. The firewall acts as a routed hop in the network
B. This mode conceals the presence of the firewall
C. The firewall requires a unique iP address for each interface
D. This mode allows the firewall to be added to an existing networ k with minimal additional configuration By default, this mode permits most traffic to pass throug
【多选题】
Which two statements describe DHCP spoofing attacks?___
A. They are used to perform man-in- the-middle attacks
B. They can access most network devices
C. They can modify the flow of traffic in transit. LNGKAIG
D. They protect the identity of ti attacker by masking the DHCP address
E. They can physically modify the network gateway
【多选题】
Which two types of VLANs using PVLANs are valid?___
A. isolated
B. promiscuous
C. backup
D. secondary
E. community
【多选题】
What are two limitations of the self-zone policies on a zone-based firewall?___
A. They are unable to block Https traffic
B. They restrict SNMP traffic.
C. They are unable to support Https traffic
D. They are unable to implement application inspection
E. They are unable to perform rate limiting
【多选题】
Which two descriptions of TACACS+ are true? ___
A. The TACACS+ header is unencrypted
B. It combines a uthentication and authorization
C. It uses TCP as its transport protocol
D. Only the password is encrypted.
E. It uses UDP as its transport protocol.
【多选题】
Which two actions does an IPS perform? ___
A. it spans the traffic
B. it reflects the traffic back to the sender
C. it encrypts the traffic
D. it terminates the user session or connection of the attacker
E. it reconfigures a device to block the traffic
【多选题】
In which form of fraud does an attacker try to learn information such as login credenti account information by ma squerading as a reputable entity or person in email, IM or communication channels ?___
A. phishing
B. Smurfit
C. Hacking
D. Identity Spoofing
【多选题】
Which two ESA services are available for incoming and outgoing mails ?___
A. anti-DoS
B. reputation filter
C. antispam
D. content filter
E. DLP
【多选题】
What are two reasons to recommend SNMPv 3 over SNMPv2?___
A. SNMPv3 is secure because you can configure authe ntication and privacy
B. SNMPv3 is insecure because it send in formation in clear text
C. SNMPv2 is insecure because it send information in clear text
D. SNMPv3 is a Cisco proprietary protocol
E. SNMPv2 is secure because you can configure authentication and privacy
【多选题】
Which two actions can a zone- based firewall apply to a packet as it transits a zone pair?___
A. drop
B. inspect
C. queue
D. quarantine
【单选题】
Which security principle has been violated if data is altered in an unauthorized manner?___
A. accountability
B. confidentiality
C. availability
D. integrity
【单选题】
Which IKE Phase 1 parameter can you use to require the site-to-site VPN to use a pre-shared ?___
A. encryption
B. authentication
C. group
【单选题】
Which command successfully creates an administrative user with a password of "cisco"on a Cisco router?___
A. username Operator privilege 7 password cisco
B. username Operator privilege 1 password cisco
C. username Operator privilege 15 password cisco
D. username Operator password cisco privilege 15
【单选题】
Which EAP method authenticates a client against Active Directory without the use of client-side 802.1X certificates?___
A. EAP-TLS
B. EAP-MSCHAPv2
C. EAP-PEAP
D.
E. AP-GTC
【单选题】
What is a limitation of network-based IPS?___
A. It must be in dividually configured to support every operating system on the network.
B. It is most effective at the in dividual host level
C. It is unable to monitor attacks across the entire netw ork
D. Large installations require numerous sensors to fully protect the network
【单选题】
When would you configure the ip dhcp snooping trust command on a sw itch?___
A. when the switch is connected to a DHCP server
B. when the switch is working in an edge capacit
C. when the switch is connected to a client system
D. when the switch is serving as an aggregator
【单选题】
How does the 802. 1x supplicant communicate with the authentication server?___
A. The supplicant creates EAP packets and sends them to the authenticator, which encapsulates them into RADIUS and forwards them to the authentication server.
B. The supplicant creates RADIUS packets and sends them to the authe nticator, which encapsulates the m into EAP and forwards them to the a uthentication server.
C. The supplicant creates RADIUS packets and sends them to the authenticator, which translates them into eap and forwards them to the a ut hentication server
D. The supplicant creates
E. AP packets and sends them to the authe nticator, which translates them into radius and forwards them to the authentication server.
【单选题】
Which command do you enter to verify the phase I status of a VPN connection?___
A. sh crypto se ssion
B. debug crypto isakmp
C. sh crypto isakmp sa
D. sh crypto ipsec sa
推荐试题
【判断题】
依法应实施检疫的进出境邮寄物,未经海关检疫,不得运递。
A. 对
B. 错
【判断题】
携带、邮寄进境的动植物、动植物产品和其他检疫物,经检疫不合格又无有效方法作除害处理的,作退回或销毁处理。
A. 对
B. 错
【判断题】
海关需作进一步检疫的进境邮寄物,由海关同邮政机构办理交接手续后予以封存,并通知收件人。
A. 对
B. 错
【判断题】
干制的植物标本如干燥的叶脉书签等不属于禁止携带、邮寄入境物。
A. 对
B. 错
【判断题】
进境邮寄物包括所使用或携带的植物性包装物、铺垫材料。
A. 对
B. 错
【判断题】
邮寄多肉植物进境时,收件人除提供我国农业部门出具的检疫审批单,还需提供输出国家或地区官方机构出具的植物检疫证书。
A. 对
B. 错
【判断题】
进境邮寄物需拆包查验时,由海关的工作人员进行拆包、重封,邮政工作人员应在场给予必要的配合。
A. 对
B. 错
【判断题】
对法定检验的进出口商品,尚未制定国家技术规范的强制性要求的,可以参照国家商检部门指定的行业标准进行检验。
A. 对
B. 错
【判断题】
法定检验的进出口商品,有国家技术规范的强制性要求的,按照国家技术规范的强制性要求进行检验。
A. 对
B. 错
【判断题】
法律、行政法规规定由其他检验机构实施检验的进出口商品或者检验项目,依照有关法律、行政法规的规定办理。
A. 对
B. 错
【判断题】
当事人对进出口商品复验结论不服应首先依法申请行政复议,对复议结论不服的,再提起行政诉讼。
A. 对
B. 错
【判断题】
因科学研究需要可以引进动植物检疫法禁止进境物。
A. 对
B. 错
【判断题】
通过贸易、科技合作、交换、赠送、援助等方式输入动植物、动植物产品和其他检疫物的,应当在合同或者协议中订明双方商定的检疫要求。
A. 对
B. 错
【判断题】
输出动植物、动植物产品和其他检疫物,检疫不合格又无有效方法作除害处理的,不准出境。
A. 对
B. 错
【判断题】
对过境植物、动植物产品和其他检疫物口岸动植物检疫机关发现有《进出境动植物检疫法》规定的一类、二类动物传染病、寄生虫病;植物危险性病、虫、杂草的,作除害处理或者不准过境。
A. 对
B. 错
【判断题】
对过境植物、动植物产品和其他检疫物,口岸动植物检疫机关检查运输工具或者包装,经检疫合格的,准予过境。
A. 对
B. 错
【判断题】
《进出境动植物检疫法》规定,已经加工的植物产品不属须实施检疫的植物产品范围。
A. 对
B. 错
【判断题】
任何组织或个人有权举报食品生产经营中的违法行为,依法向有关部门了解食品安全信息,对食品安全监督管理工作提出意见和建议。
A. 对
B. 错
【判断题】
食品安全风险评估采集样品应当按照成本价格支付费用。
A. 对
B. 错
【判断题】
食品安全风险评估结果是制定、修订食品安全标准和对食品安全实施监督管理的科学依据。
A. 对
B. 错
【判断题】
从事接触直接入口食品工作的食品生产经营人员应当每年进行健康检查,取得健康证明后方可上岗工作。
A. 对
B. 错
【判断题】
生产经营转基因食品应当按照规定显著标示。
A. 对
B. 错
【判断题】
食品和食品添加剂与其标签、说明书的内容不符的,不得上市销售。
A. 对
B. 错
【判断题】
首次进口的保健食品应当经国务院食品药品监督管理部门备案。
A. 对
B. 错
【判断题】
进口的保健食品应当是出口国(地区)主管部门准许上市销售的产品。
A. 对
B. 错
【判断题】
婴幼儿配方食品生产企业应当实施从原料进厂到成品出厂的全过程质量控制,对出厂的婴幼儿配方食品实施抽批检验,保证食品安全。
A. 对
B. 错
【判断题】
进口婴幼儿配方乳粉的产品配方应当经海关注册。
A. 对
B. 错
【判断题】
同一企业可以用同一配方生产不同品牌的婴幼儿配方乳粉。
A. 对
B. 错
【判断题】
企业可以以分装的方式生产婴幼儿配方乳粉。
A. 对
B. 错
【判断题】
根据《食品安全法》,食品复检机构出具的复检结论为最终检验结论。
A. 对
B. 错
【判断题】
进口的食品、食品添加剂应当经海关依照进出口商品检验相关法律、行政法规的规定检验合格。
A. 对
B. 错
【判断题】
向我国境内出口食品的境外出口商或者代理商、进口食品的进口商应当向海关备案。
A. 对
B. 错
【判断题】
出口食品原料种植、养殖场应当向国家农业行政部门备案。
A. 对
B. 错
【判断题】
食品安全监管部门接到公民对食品安全投诉、举报,不属于本部门职责的,可以不予处理。
A. 对
B. 错
【判断题】
食品检验机构出具虚假检验报告,使消费者的合法权益受到损害的,应当与食品生产经营者承担连带责任。
A. 对
B. 错
【判断题】
进口食品仅标签、说明书存在不影响食品安全且不会对消费者造成误导的瑕疵的,仍需向消费者支付多倍赔偿金。
A. 对
B. 错
【判断题】
国境口岸食品的监督管理由海关依照《食品安全法》以及有关法律、行政法规的规定实施。
A. 对
B. 错
【判断题】
在紧急情况下,必须实施检验的进出口商品目录应当在实施之日公布。
A. 对
B. 错
【判断题】
海关对列入必须实施检验的进出口商品目录的进出口商品以及法律、行政法规规定须经海关检验的其他进出口商品实施检验被称为法定检验。
A. 对
B. 错
【判断题】
法定检验的进出口商品,由海关许可的检验机构实施检验。
A. 对
B. 错
欢迎使用我爱刷题
×
微信搜索我爱刷题小程序
温馨提示
×
请在电脑上登陆“www.woaishuati.com”使用