刷题
导入试题
【单选题】
Which technology can best protect data at rest on a user system?___
A. full-disk encryption
B. IPsec tunnel
C. router ACL
D. network IPS
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
A
解析
暂无解析
相关试题
【多选题】
Which two primary security concerns can you mitigate with a BYOD solution ?___
A. schedule for patching the device
B. securing access to a trusted corporate network
C. compliance with applicable policies
D. connections to public Wi-Fi networks
E. device tagging and invento
【多选题】
choose five___
A. MD5————————inserure
B. DES————————insercure
C. SDES———————legacy
D. SHA-1———————legacy
E. HMAC-MD5—————legacy
【多选题】
Which two characteristics of symmetric encryption are true?___
A. It uses digital certificates
B. It requires more resources than asymmetric ancryption
C. It uses the same key to enctypt and decrupt traffic
D. It uses a public key and a pricate key to encrypt and decrypt traffic.
E. It is faster than asymmetric encryption
【多选题】
which two characteristics of PVLAN are true?___
A. Promiscuous porta can communicate with PVLAN ports.
B. Isolated ports cannot communicate with other ports on the same VLAN
C. Community ports have to be a part of the trunk.
D. They require VTP to be enabled in server mode
E. PVLAN ports can be configured as Ether Channel ports
【多选题】
What are two options for running Cisco SDM?___
A. Running SDM from a mobile device
B. Running SDM from within CiscoWorks
C. Running SDM from a router's flash
D. Running SDM from the Cisco web porta
E. Running SDM from a PC
【多选题】
Which two options are the primary deployment modeles for mobile device management?___
A. multisite
B. cloud-based
C. on premises
D. hybrid cloud basedo
E. single site
【多选题】
Drag the recommendation on the left to the Cryptographic algorithms on the right, Options will be used more than once.___
A. Avoid——————————————DES,MD5
B. Legacy——————————————SDES,SHA1,HMAC-MD5
【多选题】
Which two are valid types of vLans using PVLANS ?___
A. Community VLAN
B. Backup VLAN
C. Secondary VLAN
D. Isolated VLAN
E. Isolated VLAN
【多选题】
Which two commands are used to implement Resilient lOS Configuration ___
A. Secure boot-config
B. copy running-config tftp
C. copy flash:ios bin tftp
D. copy running-config startup-config
E. secure boot-image
【多选题】
Which two types of firewalls work at layer 4 and above ?___
A. Stateful inspection
B. Network Address Translation
C. Circuit-Level gateway
D. Static packet filter
E. Application Level firewall
【多选题】
Which two default settings for port security are true ?___
A. Violation is Protect
B. Violation is Restrict
C. Violation is Shutdown
D. Maximum number of MAC addresses is 2
E. Maximum number of MAC addresses is 1
【多选题】
Which two are characteristics of RADIUS?___
A. Uses UDP ports 1812 /1813
B. Uses TCP port 49
C. Uses UDP port 49
D.
E. ncrypts only the password between user and server
【多选题】
When setting up a site-to-site VPN with PSK authentication on a Cisco router, which two elements must be configured under crypto map?___
A. pfs
B. nat
C. reverse route
D. peer
E. transform-set
【多选题】
When using the Adaptive Security Device Manager(ASDM), which two options are available to add a new root certificate?___
A. Install from SFTP server
B. Usehttps
C. Install from a file
D. Use LDAP
E. Use SCEP
【多选题】
Which two SNMPv3 services support its capabilities as a secure networ k manage protocol? ___
A. access control
B. the shared secret key
C. authentication
D. authorization
E. accounting
【多选题】
Which two statements about routed firewall mode are true ?___
A. The firewall acts as a routed hop in the network
B. This mode conceals the presence of the firewall
C. The firewall requires a unique iP address for each interface
D. This mode allows the firewall to be added to an existing networ k with minimal additional configuration By default, this mode permits most traffic to pass throug
【多选题】
Which two statements describe DHCP spoofing attacks?___
A. They are used to perform man-in- the-middle attacks
B. They can access most network devices
C. They can modify the flow of traffic in transit. LNGKAIG
D. They protect the identity of ti attacker by masking the DHCP address
E. They can physically modify the network gateway
【多选题】
Which two types of VLANs using PVLANs are valid?___
A. isolated
B. promiscuous
C. backup
D. secondary
E. community
【多选题】
What are two limitations of the self-zone policies on a zone-based firewall?___
A. They are unable to block Https traffic
B. They restrict SNMP traffic.
C. They are unable to support Https traffic
D. They are unable to implement application inspection
E. They are unable to perform rate limiting
【多选题】
Which two descriptions of TACACS+ are true? ___
A. The TACACS+ header is unencrypted
B. It combines a uthentication and authorization
C. It uses TCP as its transport protocol
D. Only the password is encrypted.
E. It uses UDP as its transport protocol.
【多选题】
Which two actions does an IPS perform? ___
A. it spans the traffic
B. it reflects the traffic back to the sender
C. it encrypts the traffic
D. it terminates the user session or connection of the attacker
E. it reconfigures a device to block the traffic
【多选题】
In which form of fraud does an attacker try to learn information such as login credenti account information by ma squerading as a reputable entity or person in email, IM or communication channels ?___
A. phishing
B. Smurfit
C. Hacking
D. Identity Spoofing
【多选题】
Which two ESA services are available for incoming and outgoing mails ?___
A. anti-DoS
B. reputation filter
C. antispam
D. content filter
E. DLP
【多选题】
What are two reasons to recommend SNMPv 3 over SNMPv2?___
A. SNMPv3 is secure because you can configure authe ntication and privacy
B. SNMPv3 is insecure because it send in formation in clear text
C. SNMPv2 is insecure because it send information in clear text
D. SNMPv3 is a Cisco proprietary protocol
E. SNMPv2 is secure because you can configure authentication and privacy
【多选题】
Which two actions can a zone- based firewall apply to a packet as it transits a zone pair?___
A. drop
B. inspect
C. queue
D. quarantine
【单选题】
Which security principle has been violated if data is altered in an unauthorized manner?___
A. accountability
B. confidentiality
C. availability
D. integrity
【单选题】
Which IKE Phase 1 parameter can you use to require the site-to-site VPN to use a pre-shared ?___
A. encryption
B. authentication
C. group
【单选题】
Which command successfully creates an administrative user with a password of "cisco"on a Cisco router?___
A. username Operator privilege 7 password cisco
B. username Operator privilege 1 password cisco
C. username Operator privilege 15 password cisco
D. username Operator password cisco privilege 15
【单选题】
Which EAP method authenticates a client against Active Directory without the use of client-side 802.1X certificates?___
A. EAP-TLS
B. EAP-MSCHAPv2
C. EAP-PEAP
D.
E. AP-GTC
【单选题】
What is a limitation of network-based IPS?___
A. It must be in dividually configured to support every operating system on the network.
B. It is most effective at the in dividual host level
C. It is unable to monitor attacks across the entire netw ork
D. Large installations require numerous sensors to fully protect the network
【单选题】
When would you configure the ip dhcp snooping trust command on a sw itch?___
A. when the switch is connected to a DHCP server
B. when the switch is working in an edge capacit
C. when the switch is connected to a client system
D. when the switch is serving as an aggregator
【单选题】
How does the 802. 1x supplicant communicate with the authentication server?___
A. The supplicant creates EAP packets and sends them to the authenticator, which encapsulates them into RADIUS and forwards them to the authentication server.
B. The supplicant creates RADIUS packets and sends them to the authe nticator, which encapsulates the m into EAP and forwards them to the a uthentication server.
C. The supplicant creates RADIUS packets and sends them to the authenticator, which translates them into eap and forwards them to the a ut hentication server
D. The supplicant creates
E. AP packets and sends them to the authe nticator, which translates them into radius and forwards them to the authentication server.
【单选题】
Which command do you enter to verify the phase I status of a VPN connection?___
A. sh crypto se ssion
B. debug crypto isakmp
C. sh crypto isakmp sa
D. sh crypto ipsec sa
【单选题】
Refer to the exhibit. what is the e ffect of the given configuration?___
A. It enables authentication,
B. It prevents keychain authentication.
C. The two routers receive normal updates from one another.
D. The two device s are able to pass the message digest to one another.
【单选题】
Which command can you enter to configure OSPF to use hashing to authenticate routing updates?___
A. ip ospf aut hentication message-digest
B. neighbor 192 168.0 112 cost md5
C. ip ospf priority 1
D. ip ospf aut hentication-key
【单选题】
Which command can you enter to verify the status of Cisco lOS Resilient Configuration on a Cisco router?___
A. show secure bootset
B. secure boot-image
C. show binary file
D. ure boot-config
【单选题】
A user on your network inadvertently activates a botnet program that was received as an emai attachment. Which type of mechanism does Cisco Firepower use to detect and block only the botnet attack?___
A. network-based access control rule
B. reputation-based
C. user-ba sed access control rule
D. botnet traffic filter
【单选题】
What does the policy map do in CoPP?___
A. defines service parameters
B. defines packet selection parameters
C. defines the packet filter
D. define s the action to be performed
【单选题】
How is management traffic isolated on a Cisco ASR 1002?___
A. Traffic isolation is done on the vlan level
B. There is no management traffic isolation on a Cisco ASR 1002
C. Traffic is isolated based upon how you configure routing on the device
D. The management interface is configured in a special vRF that provides traffic isolation from the default routing table
【单选题】
Which statement about NaT table evaluation in the asa is true?___
A. After-auto NAT polices are appl d first
B. Manual NAT policies are applied first
C. the asa uses the most specific match
D. Auto NAT policies are applied first
推荐试题
【单选题】
为方便客户,税务局开发了电子税务局系统,我行现已支持网上协议验证。即纳税人只需登录“( )”(办理地税业务的个人也可以通过“( )”)录入“三方协议”信息。___
A. 浙江国地税联合电子税务局 浙江地税支付宝平台
B. 浙江地税支付宝平台 浙江国地税联合电子税务局
C. 浙江国税支付宝平台 浙江国地税联合电子税务局
【单选题】
办理税收缴库业务,应填制 ( )。目前协议书分为传统纸质协议和客户自行从电子税务局网站打印的协议。___
A. 划缴税款协议书
B. 划缴税款申请书
C. 代缴费委托付款书
【单选题】
非单位法人前来办理短信开通业务,经办人无须提供___
A. 营业执照
B. 法人身份证和经办人身份证
C. 授权书
D. 组织机构代码证
【单选题】
若单位非法人前来办理,而是其他工作人员在得到法人的授权情况下来办理,则该经办人在向柜台提供营业执照副本法人身份证时还须向柜台提供经办人身份证,以及我行规定格式的___一份。
A. 授权书
B. 协议书
C. 申请书
D. 承诺书
【单选题】
我行现系统不支持___开通短信业务。
A. 金融IC卡
B. 磁条卡
C. 储蓄存单
D. 存折
【单选题】
企业短信开通一个帐号能对应___个手机号码。
A. 1
B. 2
C. 3
D. 多个
【单选题】
现金非税缴款___万元以上(含),经办人出示身份证原件,并复印留存。
A. 5
B. 10
C. 20
D. 50
【单选题】
办理非税缴款业务的缴费等关联交易时,个人客户转账缴款___万元以上(含),如为卡本人,出示身份证原件,如为经办人,出示卡本人和经办人身份证原件,并复印留存。
A. 1万元
B. 5万元
C. 10万元
D. 50万元
【单选题】
非税线下支付系统的后台清算业务支持___对账
A. T
B. T+1
C. T+2
D. T+3
【单选题】
客户所缴非税业务款项暂收我行清算中心内部户(非税收入业务暂收款),___日对账无误后将暂收款项划入财政子户,财政发送清算指令后将款项由财政子户划入财政结算账户。
A. T
B. T+1
C. T+2
D. T+3
【单选题】
非税业务退款需要___授权。
A. 柜员相互
B. 会计主管
C. 集中授权
【单选题】
AE、客户风险测试评估有效期限是___。
A. 1年
B. 2年
C. 0.5年
D. 1.5年
【单选题】
本行对___岁以上(含)的客户进行风险评估时,将其风险承受能力上限限定为中级。
A. 55
B. 60
C. 65
D. 70
【单选题】
私人银行定制产品单笔投资金额原则上不低于( )万元,机构定制产品单笔投资金额原则上不低于___万元。
A. 200,500
B. 500,600
C. 600,1000
D. ,500,1000
【单选题】
李明因工作忙,可以请其母亲代理办理的是___
A. 个人理财签约
B. 个人理财购买
C. 个人理财账户变更
D. 所购理财款项到账,支取款项
【单选题】
单位客户购买理财时不需填定客户风险属性测试书,其风险承受能力默认为___
A. 中低
B. 中等
C. 高
D. 匹配产品风险等级
【单选题】
自2018年7月1日起,绍兴银行理财乐业务单笔金额由 提高至 万,单笔手续费率由 提高至 。___
A. 5万 10万 22元 30元
B. 5万 8万 22元 30元
C. 5万 10万 20元 30元
D. 10万 20万 25元 35元
【单选题】
我行客户申请变更理财签约账号可以通过___办理
A. 帐户开户网点
B. 账户所属一级分支行
C. 我行任意网点
D. 手机银行网上银行
【单选题】
柜面认购封闭式理财产品截止至募集期最后一天___
A. 16:00
B. 16:30
C. 16:40
D. 16:50
【单选题】
理财签约,一个客户(同一客户号)允许有___个签约账户。
A. 1
B. 2
C. 3
D. 多
【单选题】
风险评级为低风险、中低风险的理财产品,单一客户销售起点金额不得低于 ( )万元人民币;风险评级为中风险、中高风险的理财产品,单一客户销售起点金额不得低于 ( )万元人民币;风险评级为高风险的理财产品,单一客户销售起点不得低于( )万元人民币。___
A. 5 5 10
B. 5 10 10
C. 5 10 20
D. 5 20 20
【单选题】
理财产品(计划)包含的相关交易工具面临的风险不包括___
A. 信用风险
B. 操作风险
C. 声誉风险
D. 流动性风险
【单选题】
___是指客户通过理财规划所要实现的目标或满足的期望。
A. 理财目标
B. 投资目标
C. 理财目的
D. 投资目的
【单选题】
关于货币性理财产品,以下描述错误的是___
A. 主要投资于货币市场
B. 投资期短,资金赎回灵活
C. 收益安全性高
D. 本金保证
【单选题】
客户在柜面购买理财产品后,且该理财产品还尚未成立,可在( )对该笔认购进行撤销。___
A. 理财产品认购当天
B. 理财产品募集期(除最后一天外)
C. 任意网点
D. 理财购买网点
【单选题】
理财门户代理贵金属业务的可交易品种不包括___
A. Au99.99
B. Au99.95
C. Au100g
D. Au(T+D1)
【单选题】
按照上海黄金交易所有关规定,客户上月()日至本月( )日有贵金属库存积数时不能进行产品解约 ___
A. 10 10
B. 15 15
C. 20 20
D. 25 25
【单选题】
客户到我行开办贵金属代理业务的任意网点进行理财门户签约时支持采用身份证开户的结算账户不包括___
A. 存折
B. 普通兰花卡
C. 金融IC卡
D. 白金卡
【单选题】
在办理理财门户签约时,《银银平台理财门户客户签约三方协议》的“兴业银行联”联同客户有效身份证复印件于( )交到总行个金部。___
A. 每月21日前
B. 每月5日前
C. 每季度第一个月5日前
D. 每季度第一个月21日前
【单选题】
客户在与上海黄金交易所结清全部费用和欠款,且当天无委托和成交纪录时,可申请进行贵金属产品解约。按照上海黄金交易所有关规定,客户上月( )日至本月( )日有贵金属库存积数时不能进行产品解约。___
A. 5;5
B. 10;10
C. 20;20
D. 25;25
【单选题】
个人客户与本行建立贵金属代理交易业务关系须符合的条件不包括___
A. 在本行开立个人银行活期结算账户;
B. 接受投资产品适应性测试,同意并签署风险评估揭示书;
C. 有贵金属交易经验
D. 无不良交易记录;
【单选题】
客户在银银平台理财门户自主开户当日,可于___在柜面做“签约账户修改”交易。
A. 当日
B. 第二日
C. 第二工作日
D. 三日后
【单选题】
基金投资人在开放日交易时间之外的申请,作为赎回申请的预受理,其基金份额申购价格按照___价格。
A. 申请当日
B. 下一个开放日
C. 下一自然日
D. 客户与银行协商日
【单选题】
风险承担意愿取决于投资者的___。
A. 投资期限
B. 资产负债状况
C. 风险厌恶程度
D. 现金流入情况
【单选题】
下列关于混合型基金,说法错误的是___。
A. :混合型基金同时投资于股票、债券
B. :混合型基金的风险小于股票基金
C. :混合型基金的收益小于债券基金
D. :混合型基金的收益介于股票基金和债券基金之间
【单选题】
投资者可与每个约定的投资日期,___个工作日之后,通过“客户历史委托查询”查询定期定额申购交易发起情况。
A. 1
B. 2
C. 3
D. 4
【单选题】
投资人赎回的资金将在有效提交赎回之日起不超过___个工作日内,由我行划回其签约银行资金账户中。
A. 4
B. 5
C. 6
D. 7
【单选题】
系统自动对机构客户默认的风险评级为___
A. 低
B. 中低
C. 中高
D. 高
【单选题】
我行基金产品认购为( )赎回为( )___
A. 金额认购、金额赎回
B. 金额认购、份额赎回
C. 份额认购、金额赎回
D. 份额认购、份额赎回
【单选题】
开放式基金的买卖价格以___为基础。
A. 市场供求关系
B. 银行存款利率
C. 基金份额净值
D. 基金份额总额
欢迎使用我爱刷题
×
微信搜索我爱刷题小程序
温馨提示
×
请在电脑上登陆“www.woaishuati.com”使用