【多选题】
In which form of fraud does an attacker try to learn information such as login credenti account information by ma squerading as a reputable entity or person in email, IM or communication channels ?___
A. phishing
B. Smurfit
C. Hacking
D. Identity Spoofing
查看试卷,进入试卷练习
微信扫一扫,开始刷题
相关试题
【多选题】
Which two ESA services are available for incoming and outgoing mails ?___
A. anti-DoS
B. reputation filter
C. antispam
D. content filter
E. DLP
【多选题】
What are two reasons to recommend SNMPv 3 over SNMPv2?___
A. SNMPv3 is secure because you can configure authe ntication and privacy
B. SNMPv3 is insecure because it send in formation in clear text
C. SNMPv2 is insecure because it send information in clear text
D. SNMPv3 is a Cisco proprietary protocol
E. SNMPv2 is secure because you can configure authentication and privacy
【多选题】
Which two actions can a zone- based firewall apply to a packet as it transits a zone pair?___
A. drop
B. inspect
C. queue
D. quarantine
【单选题】
Which security principle has been violated if data is altered in an unauthorized manner?___
A. accountability
B. confidentiality
C. availability
D. integrity
【单选题】
Which IKE Phase 1 parameter can you use to require the site-to-site VPN to use a pre-shared ?___
A. encryption
B. authentication
C. group
【单选题】
Which command successfully creates an administrative user with a password of "cisco"on a Cisco router?___
A. username Operator privilege 7 password cisco
B. username Operator privilege 1 password cisco
C. username Operator privilege 15 password cisco
D. username Operator password cisco privilege 15
【单选题】
Which EAP method authenticates a client against Active Directory without the use of client-side 802.1X certificates?___
A. EAP-TLS
B. EAP-MSCHAPv2
C. EAP-PEAP
D.
E. AP-GTC
【单选题】
What is a limitation of network-based IPS?___
A. It must be in dividually configured to support every operating system on the network.
B. It is most effective at the in dividual host level
C. It is unable to monitor attacks across the entire netw ork
D. Large installations require numerous sensors to fully protect the network
【单选题】
When would you configure the ip dhcp snooping trust command on a sw itch?___
A. when the switch is connected to a DHCP server
B. when the switch is working in an edge capacit
C. when the switch is connected to a client system
D. when the switch is serving as an aggregator
【单选题】
How does the 802. 1x supplicant communicate with the authentication server?___
A. The supplicant creates EAP packets and sends them to the authenticator, which encapsulates them into RADIUS and forwards them to the authentication server.
B. The supplicant creates RADIUS packets and sends them to the authe nticator, which encapsulates the m into EAP and forwards them to the a uthentication server.
C. The supplicant creates RADIUS packets and sends them to the authenticator, which translates them into eap and forwards them to the a ut hentication server
D. The supplicant creates
E. AP packets and sends them to the authe nticator, which translates them into radius and forwards them to the authentication server.
【单选题】
Which command do you enter to verify the phase I status of a VPN connection?___
A. sh crypto se ssion
B. debug crypto isakmp
C. sh crypto isakmp sa
D. sh crypto ipsec sa
【单选题】
Refer to the exhibit. what is the e ffect of the given configuration?___
A. It enables authentication,
B. It prevents keychain authentication.
C. The two routers receive normal updates from one another.
D. The two device s are able to pass the message digest to one another.
【单选题】
Which command can you enter to configure OSPF to use hashing to authenticate routing updates?___
A. ip ospf aut hentication message-digest
B. neighbor 192 168.0 112 cost md5
C. ip ospf priority 1
D. ip ospf aut hentication-key
【单选题】
Which command can you enter to verify the status of Cisco lOS Resilient Configuration on a Cisco router?___
A. show secure bootset
B. secure boot-image
C. show binary file
D. ure boot-config
【单选题】
A user on your network inadvertently activates a botnet program that was received as an emai attachment. Which type of mechanism does Cisco Firepower use to detect and block only the botnet attack?___
A. network-based access control rule
B. reputation-based
C. user-ba sed access control rule
D. botnet traffic filter
【单选题】
What does the policy map do in CoPP?___
A. defines service parameters
B. defines packet selection parameters
C. defines the packet filter
D. define s the action to be performed
【单选题】
How is management traffic isolated on a Cisco ASR 1002?___
A. Traffic isolation is done on the vlan level
B. There is no management traffic isolation on a Cisco ASR 1002
C. Traffic is isolated based upon how you configure routing on the device
D. The management interface is configured in a special vRF that provides traffic isolation from the default routing table
【单选题】
Which statement about NaT table evaluation in the asa is true?___
A. After-auto NAT polices are appl d first
B. Manual NAT policies are applied first
C. the asa uses the most specific match
D. Auto NAT policies are applied first
【单选题】
Which information can you display by executing the show crypto ipsec sa command?___
A. ISAKMP SAs that are established between two peers
B. recent changes to the IP address of a peer router
C. proxy infor mation for the connection between two peers
D. IPsec SAs established between two peers
【单选题】
How can you prevent NAT rules from sending traffic to incorrect interfaces?___
A. Assign the output interface in the NAT statement
B. Add the no-proxy-arp command to the nat line.
C. Configure twice NAT instead o bject NAT. 5
D. Use packet-tracer rules to reroute misrouted NAT entries.
【单选题】
What term can be defined as the securing, control, and identification of digital data?___
A. cryptography
B. crypto key
C. cryptoanalysis
D. cryptology
【单选题】
Which feature in the dNS security module provide on and off network DNS protection?___
A. Data Loss Prevention
B. Umbrella
C. Real-time sandboxing
D. Layer-4 monitoring
【单选题】
Which a dverse consequence can occur on a network without BPDu guard ?___
A. The olde st switch can be elected as the root bridge
B. Unauthorized switches that are connected to the network can cause spanning-tree loops
C.
D. ouble tagging can cause the switches to experience CAM table overload.
【单选题】
What configuration is required for multitenancy ?___
A. shared infrastructure
B. multiple carriers
C. co-located resources
D. multiple separate zones
【单选题】
Why does ISE require its own certificate issued by a trusted CA?___
A. ISEs certificate allows guest devices to validate it as a trusted network device
B. It generates certificates for guest devices ba sed on its own certificate
C. It requests certificates for guest devices from the Ca server based on its own certificate.
D. ISE's certificate allows it to join the network security framework
【单选题】
which attack involves large numbers of ICMP packets with a spoofed source IP address?___
A. smurf attack
B. Teardrop attack
C. Nuke attack
D. SYN Flood attack
【单选题】
Which statement about interface and global access rules is true?___
A. Interface access rules are processed before global access rules.
B. Global access rules apply only to outbound traffic, but interface access rules can be applied in either direction
C. The implicit allow is proce ssed after both the global and interface access rules
D. If an interface access rule is applied, the global access rule is ignored
【单选题】
Which type of malicious software can create a back-door into a device or network?___
A. bot
B. worm
C. virus
D. Trojan
【单选题】
Which security term refers to the like lihood that a weakness will be exploited to cause damage to an asset?___
A. threat
B. risk
C. countermeasure
D. vulnerability
【单选题】
Which IPS detection method examines network traffic for preconfigured patterns?___
A. signature-based detection
B. honey-pot detection
C. anomaly-based detection
D. policy-based detection
【单选题】
What is an advantage of split tunneling ?___
A. It allows users with a VpN connection to a corporate network to access the internet with sending traffic across the cor porate network.
B. It allows users with a vpn connection to a corporate network to access the internet by using the vPN for security.
C. It protects traffic on the private network from users on the public network
D. It enables the VPN server to filter traffic more efficiently
【单选题】
Which IDS/IPS state misidentifies acceptable behavior as an attack ?___
A. false negative
B. true positive NEKA G
C. true negative
D. false positive
【单选题】
What is the maximum num ber of methods that a single method list can contain?___
【单选题】
Which command enables authentication at the oSPFv2 routing process level?___
A. ip ospf authentication message-digest
B. area 0 authentication message-digest
C. ip ospf message-digest-key 1 mds Cisco
D. area 0 authentication ipsec spi 500 md5 1234567890ABCDEF1234567890ABCDEF
【单选题】
Which type of firewall monitors a nd protects a specific system?___
A. firewall
B. application firewall
C. stateless firewall wvp
D. personal firewall
【单选题】
On an ASA, which maps are used to identify traffic?___
A. Route maps
B. Policy maps
C. Class maps
D. Service maps
【单选题】
Which type of social engineering attack targets top executives?___
A. whaling
B. vishin
C. spear phishing ng
D. baiting
【单选题】
What is the minimum Cisco lOS version that supports zone-based firewalls?___
A. 12.1T
B. 15.1
C. 15.0
D. 124
【单选题】
In which type of attack does an attacker overwrite an entry in the CAM table to divert traffic destined to a legitimate host?___
A. DHCP spoofing
B. ARP spoofing
C. CAM table overflow
D. MAC spoofing
【多选题】
Which two attack types can be prevented with the impleme ntation of a Cisco IPS solution?___
A. DDos
B. man-in-the-middle
C. worms
D. ARP spoofing
E. VLAN hopping
推荐试题
【判断题】
坚持把发达国家作为对外政策的基础,秉持正确义利观和真实亲诚理念加强同发达国家团结合作。
【判断题】
世界多极化、经济全球化、社会信息化、文化多样化深入发展,全球治理体系和国际秩序变革加速推进,各国相互联系和依存日益加深,国际力量对比更趋平衡,和平发展大势不可逆转。
【判断题】
构建人类命运共同体思想,继承和发展了新中国不同时期重大外交思想和主张,反映了中外优秀文化和全人类共同价值追求,适应了新时代中国与世界关系的历史性变化。
【判断题】
“一带一路”指的分别是“21世纪沿海经济带”和“丝绸之路”。
【判断题】
在和平与发展时期,世界范围的竞争主要是经济实力和以高科技为基础的综合国力的较量。
【判断题】
“引进来和走出去”是“一带一路”国际合作的重要内容,如同车之两轮、鸟之两翼。
【判断题】
加强同邻国的团结与合作是我国对外工作的基本立足点。
【判断题】
中国外交政策的宗旨是维护世界和平,促进共同发展。
【判断题】
当代经济全球化是发达资本主义国家主导的,因此,中国加人经济全球化必然被纳入世界资本主义体系。
【判断题】
我们坚持和平共处五项原则,并不意味着我们要同所有国家发展友好合作关系。
【判断题】
推动构建人类命运共同体,要坚持以对话解决争端、以谈判化解分歧,统筹应对传统和非传统安全威胁,反对一切形式的恐怖主义。
【判断题】
国防和军队改革取得历史性突破,形成军委管总、战区主战、军种主建新格局,人民军队组织架构和力量体系实现革命性重塑。
【判断题】
建设强大的现代化陆军、海军、空军、火箭军和战略支援部队,打造坚强高效的军种联合作战指挥机构。
【判断题】
加强军队的革命化建设,就要毫不动摇坚持党对军队的绝对领导,持续培育当代革命军人核心价值观,大力发展先进军事文化,永葆人民军队性质、本色、作风。
【判断题】
坚持走中国特色军民融合式发展路子,军民融合源于党的“人民战争”思想。
【判断题】
中国军队的最高领导权和指挥权属于党中央、中央军委。
【判断题】
必须坚持国家利益至上,以国家安全为宗旨,以政治安全为根本,加强国家安全能力建设,坚决维护国家主权、安全、发展利益。
【判断题】
党在新时代的强军目标是建设一支听党指挥、能打胜仗、作风优良的人民军队,把人民军队建设成为世界一流军队。
【判断题】
中国共产党坚持对人民解放军和其他人民武装力量的绝对领导,贯彻习近平强军思想,加强人民解放军的建设。
【判断题】
实现国防和军队现代化建设又快又好发展,必须坚持军民结合、寓军于民的方针。
【判断题】
解决当前我国所面临的国防和军队现代化问题,关键是发展科学技术。
【判断题】
经济建设是国防建设的基础,国防则提供经济建设所必需的安全环境。
【判断题】
中华人民共和国武装力量由中国人民解放军现役部队和预备役部队、中国人民武装警察部队组成。
【判断题】
国防教育的作用落实到人们的行为上,就是要使广大公民和各种社会组织自觉地履行国防义务,正确地行使国防权利。
【判断题】
我国武装力量建设的一项根本政治制度是必须接受中国共产党的领导。
【判断题】
构建中国特色现代军事力量体系就是要加快形成精干、联合、多能、高效的信息化军事力量体系。
【判断题】
依法治国是党领导人民治理国家的根本保证。
【判断题】
党的组织建设是党的根本性建设,决定党的建设方向和效果。
【判断题】
十九大报告指出,科学立法、严格执法、公正司法、全民守法深入推进,法治国家、法治政党、法治社会建设相互促进,中国特色社会主义法治体系日益完善,全社会法治观念明显增强。
【判断题】
十九大报告指出,提拔重用牢固树立“四个意识”和“四个自信”、坚决维护党中央权威、全面贯彻执行党的理论和路线方针政策、忠诚干净担当的干部。
【判断题】
中国共产党始终把为人类作出新的更大的贡献作为自己的使命。
【判断题】
一个政党,一个政权,其前途命运取决于人心向背。人民群众反对什么、痛恨什么,我们就要坚决防范和纠正什么。
【判断题】
为贯彻十八大精神,党中央召开七次全会,分别就政府机构改革和职能转变、全面深化改革、全面推进依法治国、制定“十三五”规划、全面从严治党等重大问题作出决定和部署。
【判断题】
五年来,我们党解决了许多长期想解决而没有解决的难题,办成了许多过去想办而没有办成的大事,推动党和国家事业发生历史性变革。
【判断题】
推进伟大工程,要结合伟大斗争、伟大事业、伟大梦想的实践来进行,确保党在世界形势深刻变化的历史进程中始终走在时代前列,在应对国内外各种风险和考验的历史进程中始终成为全国人民的主心骨,在坚持和发展中国特色社会主义的历史进程中始终成为坚强领导核心。
【判断题】
坚持依法治国和以德治国相结合,依法治国和依法治党有机统一,深化司法体制改革,提高全民族法治素养和道德素质。
【判断题】
全面依法治国是国家治理的一场深刻革命,必须坚持厉行法治,推进科学立法、严格执法、公正司法、全民守法。
【判断题】
各级党组织和全体党员要带头尊法学法守法用法,任何组织和个人都不得有超越宪法法律的特权,绝不允许以言代法、以权压法、逐利违法、徇私枉法。
【判断题】
推进科学立法、民主立法、依法立法,以法治促进发展、保障善治。
【判断题】
推进社会主义民主政治制度化、规范化、法治化、常态化,保证人民依法通过各种途径和形式管理国家事务。