【单选题】
Which command should beused to ena ble AAA Authentication to determine if a user can access the privilege command level?___
A. aaa authentication enable local
B. aaa authentication enable level=
C. aaa authentication enable method de fault
D. aaa authentication enable defa ult local
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
D
解析
暂无解析
相关试题
【单选题】
On an ASA, the policy indicates that traffic should not be translated is often referred to as which of the following?___
A. NAT zero
B. NAT forward
C. NAT nul
D. NAT allow
【单选题】
Which protocol offers data Integrity encryption, authentication, and anti-replay functions for IPSec VPN?___
A. ESP protocol
B. IKEv3 Protocol
C. AH protoco
D. IKEv1 Protocol
【单选题】
Which component offers a variety of security Solution, including firwall, IF Antivirus and antiphishing features?___
A. Cisco loS router
B. Cisco ASA 5500 Ser ies security appliance
C. Cisco ASA 5500 X series Next Gen Security appliance
D. Cisco 4200 series IPS appliance
【单选题】
Refer to the exhibit, A Network Secur ity administrator check the ASa firewall NAT policy table rith show nat command, which statement is fails?___
A. There are only reverse translation matches for the REAL SERvER object
B. First policy in the Section 1 is a dynamic nat entry defined in the object configuration
C. NAT policy in section 2 is static entry de fined in the object configuration
D. Translation in Section 3 used when a connection does not matches any entries in first two sections
【单选题】
What is true of an aSa in transparent mode ?___
A. It supports OSPF
B. It requires an IP address for each interface
C. It requires a management IP address
D. It allows the use of dynamic NaT
【单选题】
What is the effect of the ip scp server enable command?___
A. It references an access list that allows specific SCP servers
B. It allows the router to initiate requests to an SCP server
C. It allows the router to become an SCP server
D. It adds SCP to the list of allowed copy functions
【单选题】
How can you mitigate attacks in which the attacker attaches more than one vLan tag to a packet?___
A. Assign an access VLAN to every active port on the switch
B. Disable Ether Channel on the switch
C. Explicitly identity each VLAN allowed across the trunk
D.
E. nable transparent VTP on the switch
【单选题】
Which technology can you implement to centrally mitigate potential threats when users on your network download files that might be malicious?___
A. Enable file-reputation services to inspect all files that traverse the company network and block files with low reputation scores
B. Verify that the compa ny IpS blocks all known malicious website
C. Verity that antivirus software is installed and up to date for all users on your network
D. Implement URL filtering on the perimeter firewall
【单选题】
What is the most common implementation of PaT in a standard networked environment?___
A. configuring multiple external hosts to join the self zo ne and to communicate with one another
B. configuring multiple internal hosts to communicate outside of the network using the outside interface IP address
C. configuring multiple internal hosts to communicate outside of the network by using the inside interface IP address
D. configuring an any any rule to enable external hosts to communicate inside the network
【单选题】
Which component of a bYod architecture provides aAa services for endpoint access ?___
A. Integrated Services Router
B. access point
C. ASA
D. Identity Services
E. ngine
【单选题】
You are configuring a NAT rule on a Cisco ASA ,Which description of a mapped interface is true?___
A. It is mandatory for all firewall modes
B. It is optional in routed mode
C. It is optional in transparent mode
D. It is mandatory for ide ntity NAT only
【单选题】
Which description of the use of a private key is true ?___
A. The sender signs a message using the receivers private key
B. The sender signs a message using their private key
C. The sender encrypts a message using the receivers private key
D. The receiver decrypts a n15ssage using the sender's private key
【单选题】
Which mechanism does the FireAMP Connector use to avoid conflicts with other security applications such as antivirus products ?___
A. Virtualization
B. Containers
C. Sandboxing
D.
E. xclusions
【单选题】
Which network to pology de scribes multiple LANS in a gec? ___
A. SOHO
B. MAN
C. pan
D. CAN
【单选题】
Which statement represents a difference between an access list on an aSa versus an access list on a router?___
A. The asa does not support number access lists
B. The aSa does not support standard access list
C. The asa does not ever use a wildcard mask
D. The asa does not support extended access lists
【单选题】
Which command do you enter to verify the status and settings of an iKE Phase 1 tunnel?___
A. show crypto ipsec as output
B. show crypto isakmp
C. show crypto isakmp policy
D. show crypto ipsec transform
【单选题】
Which feature can help a router or switch maintain packet forwarding and protocol states despite an attack or heavy traffic load on the router or switch?___
A. service Policy
B. Control Plane Policing
C. Policy Map
D. Cisco
E. xpress
F. orwarding
【单选题】
Which STP feature can prevent an attacker from becoming the root bridge by immediately shutting down the interface when it receives a BPDU?___
A. root guard
B. Port Fast
C. BPDU guard
D. BPDU filtering
【单选题】
Which technology can best protect data at rest on a user system?___
A. full-disk encryption
B. IPsec tunnel
C. router ACL
D. network IPS
【多选题】
Which two primary security concerns can you mitigate with a BYOD solution ?___
A. schedule for patching the device
B. securing access to a trusted corporate network
C. compliance with applicable policies
D. connections to public Wi-Fi networks
E. device tagging and invento
【多选题】
choose five___
A. MD5————————inserure
B. DES————————insercure
C. SDES———————legacy
D. SHA-1———————legacy
E. HMAC-MD5—————legacy
【多选题】
Which two characteristics of symmetric encryption are true?___
A. It uses digital certificates
B. It requires more resources than asymmetric ancryption
C. It uses the same key to enctypt and decrupt traffic
D. It uses a public key and a pricate key to encrypt and decrypt traffic.
E. It is faster than asymmetric encryption
【多选题】
which two characteristics of PVLAN are true?___
A. Promiscuous porta can communicate with PVLAN ports.
B. Isolated ports cannot communicate with other ports on the same VLAN
C. Community ports have to be a part of the trunk.
D. They require VTP to be enabled in server mode
E. PVLAN ports can be configured as Ether Channel ports
【多选题】
What are two options for running Cisco SDM?___
A. Running SDM from a mobile device
B. Running SDM from within CiscoWorks
C. Running SDM from a router's flash
D. Running SDM from the Cisco web porta
E. Running SDM from a PC
【多选题】
Which two options are the primary deployment modeles for mobile device management?___
A. multisite
B. cloud-based
C. on premises
D. hybrid cloud basedo
E. single site
【多选题】
Drag the recommendation on the left to the Cryptographic algorithms on the right, Options will be used more than once.___
A. Avoid——————————————DES,MD5
B. Legacy——————————————SDES,SHA1,HMAC-MD5
【多选题】
Which two are valid types of vLans using PVLANS ?___
A. Community VLAN
B. Backup VLAN
C. Secondary VLAN
D. Isolated VLAN
E. Isolated VLAN
【多选题】
Which two commands are used to implement Resilient lOS Configuration ___
A. Secure boot-config
B. copy running-config tftp
C. copy flash:ios bin tftp
D. copy running-config startup-config
E. secure boot-image
【多选题】
Which two types of firewalls work at layer 4 and above ?___
A. Stateful inspection
B. Network Address Translation
C. Circuit-Level gateway
D. Static packet filter
E. Application Level firewall
【多选题】
Which two default settings for port security are true ?___
A. Violation is Protect
B. Violation is Restrict
C. Violation is Shutdown
D. Maximum number of MAC addresses is 2
E. Maximum number of MAC addresses is 1
【多选题】
Which two are characteristics of RADIUS?___
A. Uses UDP ports 1812 /1813
B. Uses TCP port 49
C. Uses UDP port 49
D.
E. ncrypts only the password between user and server
【多选题】
When setting up a site-to-site VPN with PSK authentication on a Cisco router, which two elements must be configured under crypto map?___
A. pfs
B. nat
C. reverse route
D. peer
E. transform-set
【多选题】
When using the Adaptive Security Device Manager(ASDM), which two options are available to add a new root certificate?___
A. Install from SFTP server
B. Usehttps
C. Install from a file
D. Use LDAP
E. Use SCEP
【多选题】
Which two SNMPv3 services support its capabilities as a secure networ k manage protocol? ___
A. access control
B. the shared secret key
C. authentication
D. authorization
E. accounting
【多选题】
Which two statements about routed firewall mode are true ?___
A. The firewall acts as a routed hop in the network
B. This mode conceals the presence of the firewall
C. The firewall requires a unique iP address for each interface
D. This mode allows the firewall to be added to an existing networ k with minimal additional configuration By default, this mode permits most traffic to pass throug
【多选题】
Which two statements describe DHCP spoofing attacks?___
A. They are used to perform man-in- the-middle attacks
B. They can access most network devices
C. They can modify the flow of traffic in transit. LNGKAIG
D. They protect the identity of ti attacker by masking the DHCP address
E. They can physically modify the network gateway
【多选题】
Which two types of VLANs using PVLANs are valid?___
A. isolated
B. promiscuous
C. backup
D. secondary
E. community
【多选题】
What are two limitations of the self-zone policies on a zone-based firewall?___
A. They are unable to block Https traffic
B. They restrict SNMP traffic.
C. They are unable to support Https traffic
D. They are unable to implement application inspection
E. They are unable to perform rate limiting
【多选题】
Which two descriptions of TACACS+ are true? ___
A. The TACACS+ header is unencrypted
B. It combines a uthentication and authorization
C. It uses TCP as its transport protocol
D. Only the password is encrypted.
E. It uses UDP as its transport protocol.
【多选题】
Which two actions does an IPS perform? ___
A. it spans the traffic
B. it reflects the traffic back to the sender
C. it encrypts the traffic
D. it terminates the user session or connection of the attacker
E. it reconfigures a device to block the traffic
推荐试题
【单选题】
同步计数器和异步计数器比较,同步计数器的显著优点是___。
A. 工作速度高
B. 触发器利用率高
C. 电路简单
D. 不受时钟CP控制。
【单选题】
把一个五进制计数器与一个四进制计数器串联可得到___进制计数器。
A. 4
B. 5
C. 9
D. 20
【单选题】
下列逻辑电路中为时序逻辑电路的是___ 。
A. 变量译码器
B. 加法器
C. 数码寄存器
D. 数据选择器
【单选题】
47N个触发器可以构成最大计数长度{进制数}为___ 的计数器。
A. N
B. 2N
C. N2
D. 2N
【单选题】
N个触发器可以构成能寄存___位二进制数码的寄存器。
A. N-1
B. N
C. N+1
D. 2N
【单选题】
49五个D触发器构成环形计数器,其计数长度为___。
A. 5
B. 10
C. 25
D. 32
【单选题】
同步时序电路和异步时序电路比较,其差异在于后者___。
A. 没有触发器
B. 没有统一的时钟脉冲控制
C. 没有稳定状态
D. 输出只与内部状态有关
【单选题】
一位8421BCD码计数器至少需要___个触发器。
A. 3
B. 4
C. 5
D. 10
【单选题】
某电视机水平-垂直扫描发生器需要一个分频器将31500HZ的脉冲转换为60HZ的脉冲,欲构成此分频器至少需要___个触发器。
A. 10
B. 60
C. 525
D. 31500
【单选题】
555定时器属于___
A. 时序逻辑电路
B. 组合逻辑电路
C. 模拟电子电路
【单选题】
54多谐振荡器可产生 ___
A. 正弦波
B. 矩形脉冲
C. 三角波
D. 锯齿波
【单选题】
脉冲整形电路有___。
A. 多谐振荡器
B. 施密特触发器
C. 555定时器
【单选题】
56石英晶体多谐振荡器的突出优点是___ 。
A. 速度高
B. 电路简单
C. 振荡频率稳定
D. 输出波形边沿陡峭
【单选题】
TTL单定时器型号的最后几位数字为___。
A. 555
B. 556
C. 7555
D. 7556
【单选题】
555定时器不可以组成___。
A. 多谐振荡器
B. 单稳态触发器
C. 施密特触发器
D. JK触发器
【单选题】
59以下各电路中,___可以产生脉冲定时。
A. 多谐振荡器
B. 单稳态触发器
C. 施密特触发器
D. 石英晶体多谐振荡器
【单选题】
555定时电路端不用时,应当___。
A. 接高电平
B. 接低电平
C. 通过0.01µF的电容接地
D. 通过小于500Ω的电阻接地
【单选题】
89S51的内部程序存储器与数据存储器容量各为多少?___
A. 64KB、128B
B. 4KB、64KB
C. 4KB、128B
D. 8KB、256B
【单选题】
89S51比89C51多出了哪个功能?___
A. 存储器加倍
B. 具有WDT工能
C. 多了一个8位输入/输出端口
D. 多了一个串行口
【单选题】
6在DIP40封装的8×51芯片里,复位RESET引脚的引脚编号是什么?___
A. 9
B. 19
C. 29
D. 39
【单选题】
7在DIP40封装的8×51芯片里,接地引脚与电源引脚的引脚编号是什么?___
A. 1、21
B. 11.31
C. 20、40
D. 19、39
【单选题】
9在12MHz始终脉冲的8051系统里,一个机器周期有多长?___
A. 1µs
B. 12µs
C. 1ms
D. 12ms
【单选题】
12下列哪个寄存器是8×51内的16位寄存器?___
A. CC
B. C
C. PC
D. R7
【单选题】
14在8×51的输入/输出端口里,哪个输入/输出端口执行在输出功能时没有内部上拉电阻?___
A. P0
B. P1
C. P2
D. P3
【单选题】
8×51的P0采用哪种电路结构?___
A. 集电极开路式输出
B. 基极开路式输出
C. 发射机开路式输出
D. 图腾柱输出
【单选题】
17在8×51里,若要扩展外部存储器时,数据总线连接哪个输入/输出端口?___
A. P0
B. P1
C. P2
D. P3
【单选题】
点亮一般的LED所耗用的电流约为多少?___
A. 1~5µA
B. 10~20µA
C. 1~5mA
D. 10~20mA
【单选题】
19一般地,蜂鸣器属于哪种负载?___
A. 电阻性负载
B. 电感性负载
C. 电容性负载
D. 不导电负载
【单选题】
7405/7406的输出采用哪种电路结构?___
A. 集电极开路式输出
B. 基极开路式输出
C. 发射机开路式输出
D. 图腾柱输出
【单选题】
21在继电器中,NO接点是一种什么接点?___
A. 不使用接点
B. 不存在接点
C. 激磁后即开路的接点
D. 常开接点
【单选题】
22所谓2P的继电器,代表什么意思?___
A. 只有2个接点
B. 两相的负载
C. 两组电源
D. 2组c接点
【单选题】
23共阳极七段数码管显示器的驱动信号有何特色?___
A. 低电平点亮
B. 低电平不亮
C. 高电平点亮
D. 以上皆非
【单选题】
24在8×51的程序里,若要将某个输入/输出端口设置成输入功能,应如何处理?___
A. 先输出高电平到该输入/输出端口
B. 先输出低电平到该输入/输出端口
C. 先读取该输入/输出端口的状态
D. 先保存该输入/输出端口的状态
【单选题】
8×51提供几个外部中断和定时器/计数器中断?___
A. 2,2
B. 3,6
C. 2,3
D. 3,7
【单选题】
8×51的IP缓存器的功能如何?___
A. 设置中断优先级
B. 启动中断功能
C. 设置中断触发信号
D. 定义CPU的网址
【单选题】
28若要让采用低电平触发,则应如何设置?___
A. EX0=0
B. EX0=1
C. IT0=0
D. IT0=1
【单选题】
29在Keil µVision3里进行调试/仿真时,在哪里操作才能触动程序中断?___
A. 在Interrupt System
B. 在Cotorl Box对话框里
C. 直接单击魔术棒按钮即可
D. 直接按0键
【单选题】
30在8×51所提供的中断功能里,下列哪个优先级比较高?___
A. T1
B. RI/TI
C. T0
D. INT0
【单选题】
31在TCON缓存里,IE1的功能是什么?___
A. 触发 IE1中断
B. 指示IE1中断的标志
C. 提高IE1优先等级
D. 取消IE1中断
【单选题】
32在Keil C里,中断子程序与函数又何不同?___
A. 中断子程序不必声明
B. 函数不必声明
C. 中断子程序必须有形式参数
D. 中断子程序一定会有返回值