【单选题】
Which command should beused to ena ble AAA Authentication to determine if a user can access the privilege command level?___
A. aaa authentication enable local
B. aaa authentication enable level=
C. aaa authentication enable method de fault
D. aaa authentication enable defa ult local
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
D
解析
暂无解析
相关试题
【单选题】
On an ASA, the policy indicates that traffic should not be translated is often referred to as which of the following?___
A. NAT zero
B. NAT forward
C. NAT nul
D. NAT allow
【单选题】
Which protocol offers data Integrity encryption, authentication, and anti-replay functions for IPSec VPN?___
A. ESP protocol
B. IKEv3 Protocol
C. AH protoco
D. IKEv1 Protocol
【单选题】
Which component offers a variety of security Solution, including firwall, IF Antivirus and antiphishing features?___
A. Cisco loS router
B. Cisco ASA 5500 Ser ies security appliance
C. Cisco ASA 5500 X series Next Gen Security appliance
D. Cisco 4200 series IPS appliance
【单选题】
Refer to the exhibit, A Network Secur ity administrator check the ASa firewall NAT policy table rith show nat command, which statement is fails?___
A. There are only reverse translation matches for the REAL SERvER object
B. First policy in the Section 1 is a dynamic nat entry defined in the object configuration
C. NAT policy in section 2 is static entry de fined in the object configuration
D. Translation in Section 3 used when a connection does not matches any entries in first two sections
【单选题】
What is true of an aSa in transparent mode ?___
A. It supports OSPF
B. It requires an IP address for each interface
C. It requires a management IP address
D. It allows the use of dynamic NaT
【单选题】
What is the effect of the ip scp server enable command?___
A. It references an access list that allows specific SCP servers
B. It allows the router to initiate requests to an SCP server
C. It allows the router to become an SCP server
D. It adds SCP to the list of allowed copy functions
【单选题】
How can you mitigate attacks in which the attacker attaches more than one vLan tag to a packet?___
A. Assign an access VLAN to every active port on the switch
B. Disable Ether Channel on the switch
C. Explicitly identity each VLAN allowed across the trunk
D.
E. nable transparent VTP on the switch
【单选题】
Which technology can you implement to centrally mitigate potential threats when users on your network download files that might be malicious?___
A. Enable file-reputation services to inspect all files that traverse the company network and block files with low reputation scores
B. Verify that the compa ny IpS blocks all known malicious website
C. Verity that antivirus software is installed and up to date for all users on your network
D. Implement URL filtering on the perimeter firewall
【单选题】
What is the most common implementation of PaT in a standard networked environment?___
A. configuring multiple external hosts to join the self zo ne and to communicate with one another
B. configuring multiple internal hosts to communicate outside of the network using the outside interface IP address
C. configuring multiple internal hosts to communicate outside of the network by using the inside interface IP address
D. configuring an any any rule to enable external hosts to communicate inside the network
【单选题】
Which component of a bYod architecture provides aAa services for endpoint access ?___
A. Integrated Services Router
B. access point
C. ASA
D. Identity Services
E. ngine
【单选题】
You are configuring a NAT rule on a Cisco ASA ,Which description of a mapped interface is true?___
A. It is mandatory for all firewall modes
B. It is optional in routed mode
C. It is optional in transparent mode
D. It is mandatory for ide ntity NAT only
【单选题】
Which description of the use of a private key is true ?___
A. The sender signs a message using the receivers private key
B. The sender signs a message using their private key
C. The sender encrypts a message using the receivers private key
D. The receiver decrypts a n15ssage using the sender's private key
【单选题】
Which mechanism does the FireAMP Connector use to avoid conflicts with other security applications such as antivirus products ?___
A. Virtualization
B. Containers
C. Sandboxing
D.
E. xclusions
【单选题】
Which network to pology de scribes multiple LANS in a gec? ___
A. SOHO
B. MAN
C. pan
D. CAN
【单选题】
Which statement represents a difference between an access list on an aSa versus an access list on a router?___
A. The asa does not support number access lists
B. The aSa does not support standard access list
C. The asa does not ever use a wildcard mask
D. The asa does not support extended access lists
【单选题】
Which command do you enter to verify the status and settings of an iKE Phase 1 tunnel?___
A. show crypto ipsec as output
B. show crypto isakmp
C. show crypto isakmp policy
D. show crypto ipsec transform
【单选题】
Which feature can help a router or switch maintain packet forwarding and protocol states despite an attack or heavy traffic load on the router or switch?___
A. service Policy
B. Control Plane Policing
C. Policy Map
D. Cisco
E. xpress
F. orwarding
【单选题】
Which STP feature can prevent an attacker from becoming the root bridge by immediately shutting down the interface when it receives a BPDU?___
A. root guard
B. Port Fast
C. BPDU guard
D. BPDU filtering
【单选题】
Which technology can best protect data at rest on a user system?___
A. full-disk encryption
B. IPsec tunnel
C. router ACL
D. network IPS
【多选题】
Which two primary security concerns can you mitigate with a BYOD solution ?___
A. schedule for patching the device
B. securing access to a trusted corporate network
C. compliance with applicable policies
D. connections to public Wi-Fi networks
E. device tagging and invento
【多选题】
choose five___
A. MD5————————inserure
B. DES————————insercure
C. SDES———————legacy
D. SHA-1———————legacy
E. HMAC-MD5—————legacy
【多选题】
Which two characteristics of symmetric encryption are true?___
A. It uses digital certificates
B. It requires more resources than asymmetric ancryption
C. It uses the same key to enctypt and decrupt traffic
D. It uses a public key and a pricate key to encrypt and decrypt traffic.
E. It is faster than asymmetric encryption
【多选题】
which two characteristics of PVLAN are true?___
A. Promiscuous porta can communicate with PVLAN ports.
B. Isolated ports cannot communicate with other ports on the same VLAN
C. Community ports have to be a part of the trunk.
D. They require VTP to be enabled in server mode
E. PVLAN ports can be configured as Ether Channel ports
【多选题】
What are two options for running Cisco SDM?___
A. Running SDM from a mobile device
B. Running SDM from within CiscoWorks
C. Running SDM from a router's flash
D. Running SDM from the Cisco web porta
E. Running SDM from a PC
【多选题】
Which two options are the primary deployment modeles for mobile device management?___
A. multisite
B. cloud-based
C. on premises
D. hybrid cloud basedo
E. single site
【多选题】
Drag the recommendation on the left to the Cryptographic algorithms on the right, Options will be used more than once.___
A. Avoid——————————————DES,MD5
B. Legacy——————————————SDES,SHA1,HMAC-MD5
【多选题】
Which two are valid types of vLans using PVLANS ?___
A. Community VLAN
B. Backup VLAN
C. Secondary VLAN
D. Isolated VLAN
E. Isolated VLAN
【多选题】
Which two commands are used to implement Resilient lOS Configuration ___
A. Secure boot-config
B. copy running-config tftp
C. copy flash:ios bin tftp
D. copy running-config startup-config
E. secure boot-image
【多选题】
Which two types of firewalls work at layer 4 and above ?___
A. Stateful inspection
B. Network Address Translation
C. Circuit-Level gateway
D. Static packet filter
E. Application Level firewall
【多选题】
Which two default settings for port security are true ?___
A. Violation is Protect
B. Violation is Restrict
C. Violation is Shutdown
D. Maximum number of MAC addresses is 2
E. Maximum number of MAC addresses is 1
【多选题】
Which two are characteristics of RADIUS?___
A. Uses UDP ports 1812 /1813
B. Uses TCP port 49
C. Uses UDP port 49
D.
E. ncrypts only the password between user and server
【多选题】
When setting up a site-to-site VPN with PSK authentication on a Cisco router, which two elements must be configured under crypto map?___
A. pfs
B. nat
C. reverse route
D. peer
E. transform-set
【多选题】
When using the Adaptive Security Device Manager(ASDM), which two options are available to add a new root certificate?___
A. Install from SFTP server
B. Usehttps
C. Install from a file
D. Use LDAP
E. Use SCEP
【多选题】
Which two SNMPv3 services support its capabilities as a secure networ k manage protocol? ___
A. access control
B. the shared secret key
C. authentication
D. authorization
E. accounting
【多选题】
Which two statements about routed firewall mode are true ?___
A. The firewall acts as a routed hop in the network
B. This mode conceals the presence of the firewall
C. The firewall requires a unique iP address for each interface
D. This mode allows the firewall to be added to an existing networ k with minimal additional configuration By default, this mode permits most traffic to pass throug
【多选题】
Which two statements describe DHCP spoofing attacks?___
A. They are used to perform man-in- the-middle attacks
B. They can access most network devices
C. They can modify the flow of traffic in transit. LNGKAIG
D. They protect the identity of ti attacker by masking the DHCP address
E. They can physically modify the network gateway
【多选题】
Which two types of VLANs using PVLANs are valid?___
A. isolated
B. promiscuous
C. backup
D. secondary
E. community
【多选题】
What are two limitations of the self-zone policies on a zone-based firewall?___
A. They are unable to block Https traffic
B. They restrict SNMP traffic.
C. They are unable to support Https traffic
D. They are unable to implement application inspection
E. They are unable to perform rate limiting
【多选题】
Which two descriptions of TACACS+ are true? ___
A. The TACACS+ header is unencrypted
B. It combines a uthentication and authorization
C. It uses TCP as its transport protocol
D. Only the password is encrypted.
E. It uses UDP as its transport protocol.
【多选题】
Which two actions does an IPS perform? ___
A. it spans the traffic
B. it reflects the traffic back to the sender
C. it encrypts the traffic
D. it terminates the user session or connection of the attacker
E. it reconfigures a device to block the traffic
推荐试题
【单选题】
(5)以下_是仿真的手段。___
A. 系统
B. 建模
C. 实验
D. 模型
【单选题】
(7)_即仿真时钟慢于实际时钟,也就是模型仿真的速度慢于实际系统运行的速度。___
A. 实时仿真
B. 亚实时仿真
C. 超实时仿真
D. 在线仿真
【单选题】
(9)半实物仿真又称___
A. 数学
B. 物理仿真
C. 半实物仿真
D. 物理一数学仿真
【单选题】
(1)状态的变化及其间隔具备某种不确定性的系统称为_。___
A. 确定性系统
B. 随机系统
C. 离散系统
D. 连续系统
【单选题】
(3)_可以用泊松分布刻画。___
A. 路口通过的车辆数目
B. 很多个随机变量的总和
C. 设备的使用寿命
D. 部件的故障时间
【单选题】
(5)随机变量的生成就是一个获得_的随机数的过程。___
A. 均匀分布
B. 特定分布
C. 正态分布
D. 泊松分布
【单选题】
(7)由两个或更多个独立随机变量的和形成的概率分布称为原始变量的_。___
A. 伯努利分布
B. 卷积分布
C. 正态分布
D. 泊松分布
【单选题】
(9)当随机数序列有规律地出现大数、小数或者大数和小数交替出现,说明这个随机数列中不同的数字之间可能存在某些___
A. 均匀性
B. 相关性
C. 独立性
D. 随机性
【单选题】
(1)在系统中的数量保持稳定的实体是—。___
A. 临时实体
B. 主动实体
C. 活动实体
D. 永久实体
【单选题】
(3)以下哪项属于临时实体?____
A. 理发店中的理发员
B. 生产线上的加工装配的机械
C. 交通路口的红绿灯
D. 驶入地下停车场的汽车
【单选题】
(5)_属于活动周期图建模实体的状态。___
A. 静寂
B. 静态
C. 动态
D. 周期
【单选题】
(7)_即状态元素,它表示一个场所,而且在该场所存放了一定的资源。___
A. 库所
B. 条件
C. 变迁
D. 资源
【单选题】
(1)在运用数学语言进行建模时,用微分方程来描述—系统。___
A. 连续
B. 离散
C. 混合
D. 任何
【单选题】
(3)以下哪种方法不是建立微分方程的常用方法?____
A. 按照事物变化规律列出方程
B. 微元分析法
C. 模拟近似法
D. 有限元法
【单选题】
(5)分布参数系统是指系统的_的函数。___
A. 时间
B. 空间
C. 时间和空间
D. 状态
【单选题】
的动态特征。___
A. 零点
B. 极点
C. 增益
D. 增益和极点
【单选题】
(1)对系统性能测度的估计通常包括点估计和___
A. 置信度估计
B. 置信水平估计
C. 区间估计
D. 仿真结果估计
【单选题】
(3)稳态型仿真结果分析常用方法,不包含___
A. 固定样本数量法
B. 批均值法
C. 再生法
D. 重复 一 删除法
【单选题】
(5)证实仿真系统是否准确地代表了开发者的概念描述和设计的过程是_。___
A. Validation
B. Verification
C. Accreditation
D. Certification
【单选题】
(7) VV的非正规方法中,不包含_。___
A. 过程审核
B. 概念执行
C. 图灵测试
D. 图形比较
【单选题】
(9)两个方案对比求解标准差时,所使用的方法中不包含—。___
A. 具有相等方差的独立采样
B. 稳态序贯法
C. 公共随机数法
D. 具有不相等方差的独立采样
【单选题】
(1)某加工机器输入一个零部件进行加工,加工结束可以输出多个零件,这种加工机器是___
A. Single
B. Batch
C. Assembly
D. Production
【单选题】
(3)在Index型输送链中对其所容纳的最大零部件数量进行设置需要在Conveyor详细设计对话框中的中进行设置。___
A. Length in parts
B. Index time
C. Maximum capacity
D. From
【单选题】
(5)在制作可食用的巧克力过程中有一道“捏揉”巧克力风味的精炼工序,该工序的原料为去脂后的可可粉,通过皮带输送线按照一定的速率运入精炼机。假设有一个巧克力“精炼机”容量为1000L,其捏揉过程是使用其装有的很重的滚子在可可粉混合物中前后来回地“犁”上20到40小时,这些滚子通过不同的速度来控制对混合物的搅动速度和部分物质的挥发程度,进而形成不同口味的巧克力。建模中选用Fluid模拟可可粉,则使用哪类元素模拟皮带输送线___
A. Pipe
B. Tank
C. Path
D. Conveyor
【单选题】
(7)对路径(Path)元素,如果需要对图形刷新频率进行设置,应在Path详细设计对话框中进行设置。___
A. Path traverse
B. Path update interval
C. Source element
D. Destination element
【单选题】
(1)以下_不属于影响生产物流的主要因素。___
A. 生产类型
B. 生产规模
C. 生产专业化水平
D. 生产设备
【单选题】
(3)以下不属于大量流水生产强调的生产过程特点的是_。___
A. 平衡性
B. 节奏性
C. 比例性
D. 连续性
【单选题】
(5)在设计流水线之前,要紧的准备工作是_。___
A. 提高柔性
B. 专业化原则生产
C. 产品零件分类
D. 采用专业化原则较高的设备
【单选题】
(7)不属于生产物流计划的主要目的的是_。___
A. 保证生产计划的顺利完成
B. 实现企业的均衡生产
C. 满足顾客需求
D. 缩短生产周期
【单选题】
(1)配送是一种特殊的综合物流活动,其本质是_。___
A. 储存
B. 送货
C. 包装
D. 加工
【单选题】
(3)以下_不属于配送的作用。___
A. 降低成本
B. 简化工作
C. 扩大企业规模
D. 完善体系
【单选题】
(5)以下_完成对货物的分割、分包、分装、配装等加工活动。___
A. 集货功能
B. 理货功能
C. 储存功能
D. 流通加工功能
【单选题】
(7)以下_不属于流通加工所进行的作业。___
A. 配送运输
B. 初级加工活动
C. 辅助性加工活动
D. 深加工活动
【单选题】
(9)以下_不属于Witness仿真软件的元素类型。___
A. Part
B. Buffer
C. Machine
D. Function
【单选题】
(1)配货作业的基本流程是_。___
A. 分货一配货检查一包装一选择配货形式
B. 配货检查一分货一包装一选择配货形式
C. 选择配货形式一分货一包装一配货检查
D. 选择配货形式一包装一分货一配货检查
【单选题】
(3)以下_不属于按单拣选的特点。___
A. 易于实施
B. 错误率较高
C. 利于简化工序
D. 用户数量不受限制
【单选题】
(5)“播种式”拣货方法属于_,其分拣过程是_。___
A. 按单拣取先拣选后分类
B. 按单拣取先分类后拣选
C. 批量拣取先拣选后分类
D. 批量拣取先分类后拣选
【单选题】
(7)分区是指将拣货作业场地进行区域划分,是分拣策略中的一个因素。主要的分区原则不包括___
A. 按拣货单位
B. 按订单数量
C. 按物流量
D. 按工作
【单选题】
(1)根据物品需求的重复程度,库存系统可以分为和___
A. 单期库存系统多期库存系统
B. 独立需求的库存系统相关需求的库存系统
C. 随机性库存系统确定性库存系统
D. 在制品库存系统原材料库存系统
【单选题】
(3)下列_不属于经济批量模型的拓展。___
A. 有限生产能力的EOQ模型
B. 有数量折扣的EOQ模型
C. 允许缺货的EOQ模型
D. 单周期报童模型