【单选题】
Which security principle has been violated if data is altered in an unauthorized manner?___
A. accountability
B. confidentiality
C. availability
D. integrity
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
D
解析
暂无解析
相关试题
【单选题】
Which IKE Phase 1 parameter can you use to require the site-to-site VPN to use a pre-shared ?___
A. encryption
B. authentication
C. group
【单选题】
Which command successfully creates an administrative user with a password of "cisco"on a Cisco router?___
A. username Operator privilege 7 password cisco
B. username Operator privilege 1 password cisco
C. username Operator privilege 15 password cisco
D. username Operator password cisco privilege 15
【单选题】
Which EAP method authenticates a client against Active Directory without the use of client-side 802.1X certificates?___
A. EAP-TLS
B. EAP-MSCHAPv2
C. EAP-PEAP
D.
E. AP-GTC
【单选题】
What is a limitation of network-based IPS?___
A. It must be in dividually configured to support every operating system on the network.
B. It is most effective at the in dividual host level
C. It is unable to monitor attacks across the entire netw ork
D. Large installations require numerous sensors to fully protect the network
【单选题】
When would you configure the ip dhcp snooping trust command on a sw itch?___
A. when the switch is connected to a DHCP server
B. when the switch is working in an edge capacit
C. when the switch is connected to a client system
D. when the switch is serving as an aggregator
【单选题】
How does the 802. 1x supplicant communicate with the authentication server?___
A. The supplicant creates EAP packets and sends them to the authenticator, which encapsulates them into RADIUS and forwards them to the authentication server.
B. The supplicant creates RADIUS packets and sends them to the authe nticator, which encapsulates the m into EAP and forwards them to the a uthentication server.
C. The supplicant creates RADIUS packets and sends them to the authenticator, which translates them into eap and forwards them to the a ut hentication server
D. The supplicant creates
E. AP packets and sends them to the authe nticator, which translates them into radius and forwards them to the authentication server.
【单选题】
Which command do you enter to verify the phase I status of a VPN connection?___
A. sh crypto se ssion
B. debug crypto isakmp
C. sh crypto isakmp sa
D. sh crypto ipsec sa
【单选题】
Refer to the exhibit. what is the e ffect of the given configuration?___
A. It enables authentication,
B. It prevents keychain authentication.
C. The two routers receive normal updates from one another.
D. The two device s are able to pass the message digest to one another.
【单选题】
Which command can you enter to configure OSPF to use hashing to authenticate routing updates?___
A. ip ospf aut hentication message-digest
B. neighbor 192 168.0 112 cost md5
C. ip ospf priority 1
D. ip ospf aut hentication-key
【单选题】
Which command can you enter to verify the status of Cisco lOS Resilient Configuration on a Cisco router?___
A. show secure bootset
B. secure boot-image
C. show binary file
D. ure boot-config
【单选题】
A user on your network inadvertently activates a botnet program that was received as an emai attachment. Which type of mechanism does Cisco Firepower use to detect and block only the botnet attack?___
A. network-based access control rule
B. reputation-based
C. user-ba sed access control rule
D. botnet traffic filter
【单选题】
What does the policy map do in CoPP?___
A. defines service parameters
B. defines packet selection parameters
C. defines the packet filter
D. define s the action to be performed
【单选题】
How is management traffic isolated on a Cisco ASR 1002?___
A. Traffic isolation is done on the vlan level
B. There is no management traffic isolation on a Cisco ASR 1002
C. Traffic is isolated based upon how you configure routing on the device
D. The management interface is configured in a special vRF that provides traffic isolation from the default routing table
【单选题】
Which statement about NaT table evaluation in the asa is true?___
A. After-auto NAT polices are appl d first
B. Manual NAT policies are applied first
C. the asa uses the most specific match
D. Auto NAT policies are applied first
【单选题】
Which information can you display by executing the show crypto ipsec sa command?___
A. ISAKMP SAs that are established between two peers
B. recent changes to the IP address of a peer router
C. proxy infor mation for the connection between two peers
D. IPsec SAs established between two peers
【单选题】
How can you prevent NAT rules from sending traffic to incorrect interfaces?___
A. Assign the output interface in the NAT statement
B. Add the no-proxy-arp command to the nat line.
C. Configure twice NAT instead o bject NAT. 5
D. Use packet-tracer rules to reroute misrouted NAT entries.
【单选题】
What term can be defined as the securing, control, and identification of digital data?___
A. cryptography
B. crypto key
C. cryptoanalysis
D. cryptology
【单选题】
Which feature in the dNS security module provide on and off network DNS protection?___
A. Data Loss Prevention
B. Umbrella
C. Real-time sandboxing
D. Layer-4 monitoring
【单选题】
Which a dverse consequence can occur on a network without BPDu guard ?___
A. The olde st switch can be elected as the root bridge
B. Unauthorized switches that are connected to the network can cause spanning-tree loops
C.
D. ouble tagging can cause the switches to experience CAM table overload.
【单选题】
What configuration is required for multitenancy ?___
A. shared infrastructure
B. multiple carriers
C. co-located resources
D. multiple separate zones
【单选题】
Why does ISE require its own certificate issued by a trusted CA?___
A. ISEs certificate allows guest devices to validate it as a trusted network device
B. It generates certificates for guest devices ba sed on its own certificate
C. It requests certificates for guest devices from the Ca server based on its own certificate.
D. ISE's certificate allows it to join the network security framework
【单选题】
which attack involves large numbers of ICMP packets with a spoofed source IP address?___
A. smurf attack
B. Teardrop attack
C. Nuke attack
D. SYN Flood attack
【单选题】
Which statement about interface and global access rules is true?___
A. Interface access rules are processed before global access rules.
B. Global access rules apply only to outbound traffic, but interface access rules can be applied in either direction
C. The implicit allow is proce ssed after both the global and interface access rules
D. If an interface access rule is applied, the global access rule is ignored
【单选题】
Which type of malicious software can create a back-door into a device or network?___
A. bot
B. worm
C. virus
D. Trojan
【单选题】
Which security term refers to the like lihood that a weakness will be exploited to cause damage to an asset?___
A. threat
B. risk
C. countermeasure
D. vulnerability
【单选题】
Which IPS detection method examines network traffic for preconfigured patterns?___
A. signature-based detection
B. honey-pot detection
C. anomaly-based detection
D. policy-based detection
【单选题】
What is an advantage of split tunneling ?___
A. It allows users with a VpN connection to a corporate network to access the internet with sending traffic across the cor porate network.
B. It allows users with a vpn connection to a corporate network to access the internet by using the vPN for security.
C. It protects traffic on the private network from users on the public network
D. It enables the VPN server to filter traffic more efficiently
【单选题】
Which IDS/IPS state misidentifies acceptable behavior as an attack ?___
A. false negative
B. true positive NEKA G
C. true negative
D. false positive
【单选题】
What is the maximum num ber of methods that a single method list can contain?___
A. 4
B. 3
C. 2
D. 5
【单选题】
Which command enables authentication at the oSPFv2 routing process level?___
A. ip ospf authentication message-digest
B. area 0 authentication message-digest
C. ip ospf message-digest-key 1 mds Cisco
D. area 0 authentication ipsec spi 500 md5 1234567890ABCDEF1234567890ABCDEF
【单选题】
Which type of firewall monitors a nd protects a specific system?___
A. firewall
B. application firewall
C. stateless firewall wvp
D. personal firewall
【单选题】
On an ASA, which maps are used to identify traffic?___
A. Route maps
B. Policy maps
C. Class maps
D. Service maps
【单选题】
Which type of social engineering attack targets top executives?___
A. whaling
B. vishin
C. spear phishing ng
D. baiting
【单选题】
What is the minimum Cisco lOS version that supports zone-based firewalls?___
A. 12.1T
B. 15.1
C. 15.0
D. 124
【单选题】
In which type of attack does an attacker overwrite an entry in the CAM table to divert traffic destined to a legitimate host?___
A. DHCP spoofing
B. ARP spoofing
C. CAM table overflow
D. MAC spoofing
【多选题】
Which two attack types can be prevented with the impleme ntation of a Cisco IPS solution?___
A. DDos
B. man-in-the-middle
C. worms
D. ARP spoofing
E. VLAN hopping
【多选题】
choose four___
A. DHCP snooping ——————————blocks DHCP messages
B. Dynamic ARP inspection——————verifies IP-to-MAC traffic on untrusted ports
C. IP sources guard ——————————provides layer 2 interface security with ports ACLs
D. Port security————————————mitigates MAC-address spoofing at the access interface
【多选题】
choose four___
A. Step1————————run the system setup wizard
B. Step2————————add an authentication realm
C. Step3————————configure identity management
D. Step4————————configure directory group
【多选题】
What are two advanced features of the Cisco AMp solution for endpoints ___
A. contemplation
B. foresight
C. sandboxing
D. reputation
E. reflection
【多选题】
Which two characteristics of RADIUS are true?___
A. It encrypts only the password between user and server.
B. It uses TCP ports 1812/1813
C. It uses UDP ports 1812/1813.
D. It uses UDP port 49
E. It uses TCP port 49
推荐试题
【单选题】
酸性气燃烧炉配风与什么因素有关。___
A. 流量
B. 组成
C. 压力
D. 温度
【单选题】
硫磺着火最好采用___。
A. 隔离法
B. 窒息法
C. 冷却法
D. 保护法
【单选题】
空气冷却器的换热管安装翅片可以( )换热管两侧的传热效果。___
A. 降低
B. 提高
C. 没有影响
D. 无法确定
【单选题】
液体硫磺温度( )时,变成非常粘稠的液体,流动性很差。___
A. 119℃
B. 250℃
C. 300℃
D. 445℃
【单选题】
克劳斯催化剂形成硫酸盐的原因是___。
A. 原料带烃
B. 原料带氨
C. 过程气氧过剩
D. 原料带水
【单选题】
克劳斯催化剂表面的氮化物是( )形成的。___
A. 原料带烃
B. 原料带氨
C. 过程气氧过剩
D. 原料带水
【单选题】
克劳斯部分停工吹扫主要目的是___。
A. 将系统内液硫吹扫干净
B. 将系统内硫化氢吹扫干净
C. 将系统内二氧化硫吹扫干净
D. 置换系统内氧气
【单选题】
蒸汽发生器停用后,当热源到( )以下时,汽包停止给水。___
A. 150℃
B. 125℃
C. 100℃
D. 50℃
【单选题】
蒸汽发生器停水前汽包要维持( )水位。___
A. 低
B. 中
C. 高
D. 任意
【单选题】
如果安全阀泄漏,则安全阀温度___。
A. 升高
B. 不变
C. 降低
D. 无影响
【单选题】
过程气管线伴热主要作用正确的是___。
A. 增加管内流动速度
B. 增加管内气化率
C. 防止过程气中水蒸汽冷凝
D. 防止过程气中硫蒸汽的冷却凝固
【单选题】
外操在巡检过程中发现氨泄漏,如果可做紧急处理,立即通知班长进行___。
A. 佩戴滤毒罐
B. 报警
C. 切断泄漏点相关阀门
D. 佩戴空气呼吸器
【单选题】
硫磺回收装置正常运行时主要的污染是___。
A. 废气
B. 废水
C. 废渣
D. 噪声
【单选题】
装置引蒸汽时防止“水击”的方法___。
A. 迅速开启蒸汽阀
B. 先开放空阀放尽冷凝水;再缓慢开启蒸汽阀
C. 开蒸汽阀时关闭放空阀
D. 先开蒸汽阀再打开末端放空阀
【单选题】
正常情况下,固体硫磺的颜色是___。
A. 黄褐色
B. 亮黄色
C. 红色
D. 白色
【单选题】
Claus转化反应加热器使用( )加热的。___
A. 过热高压蒸汽
B. 饱和高压蒸汽
C. 1.0MPa中压蒸汽
D. 0.35MPa蒸汽
【单选题】
蒸汽发生器的蒸汽出口阀___。
A. 一开始就打开
B. 汽包压力升起时打开
C. 汽包压力高于操作管网压力时打开
D. 随时可打开
【单选题】
液硫脱气的目的以下不正确。___
A. 去除NH3​
B. 去除H2S​
C. 去除H2O​
D. 去除SO2
【单选题】
蒸汽发生器停用后,应停止向管网送汽,汽包蒸汽___。
A. 备用
B. 保持压力
C. 改放空
D. 增加压力
【单选题】
氨法脱硫最终产品为___。
A. 硫酸铵
B. 亚硫酸铵
C. 硫氢化氨
D. 单质硫加氨水
【单选题】
汽提的酸性气中对硫磺回收生产影响较大的是。___
A. 二氧化碳
B. 氨
C. 胺
D. 烃
【单选题】
氨法脱硫脱硫剂所用的液氨浓度要求是___。
A. 99.9%液氨
B. 99.6%液氨
C. 99.7%液氨
D. 99.8%液氨
【单选题】
本装置硫酸氨产品氮含量___。
A. ≥21%
B. ≥20.5%
C. ≥21.5%
D. ≥20.1%
【单选题】
氨法脱硫最终产品为___。
A. 硫酸铵
B. 亚硫酸铵
C. 硫氢化氨
D. 单质硫加氨水
【单选题】
硫磺装置尾气排放标准___。
A. 400 mg/m3
B. 800 mg/m3
C. 100 mg/m3
D. 300mg/m3
【单选题】
烟气事故降温所用的工艺介质是___。
A. 非净化风
B. 除盐水
C. 氮气
D. 消防水
【单选题】
硫铵溶液从蒸发分离室出来后得到的硫铵溶液含固约___
A. 5%
B. 10%
C. 15%
D. 20%
【单选题】
硫酸铵浆液经过离心机分离出来后得到( )硫铵湿料。___
A. 6%
B. 3%
C. 4%
D. 5%
【单选题】
装置中用燃料气的设备为___
A. 燃烧炉及焚烧炉
B. 燃烧炉
C. 焚烧炉
D. 捕集器
【单选题】
贫液过滤器为何种连接方式___
A. 并联
B. 串联
C. 串并联
D. 以上都不对
【单选题】
安装时不需要注意方向管件有___。
A. 闸阀
B. 截止阀
C. 疏水器
D. 单向阀
【单选题】
三套硫磺回收装置中捕集器是___。
A. 泡罩式捕集器
B. 波纹式捕集器
C. 网状捕集器
D. 其它形式
【单选题】
燃烧炉温度控制应不大于( )℃。___
A. 1200
B. 1260
C. 1400
D. 1350℃
【单选题】
孔板流量计属于( )流量计。___
A. 速度式
B. 差压式
C. 容积式
D. 其它
【单选题】
水压试验时,容器内部压力可由装在( )上压力读出。___
A. 容器
B. 水泵出口
C. 安全阀
D. 其它
【单选题】
进入设备容器作业时,设备内含氧量应达( )以上。___
A. 15%
B. 20%
C. 21.5%
D. 18%
【单选题】
泵在启动前,其润滑油的液位应在油标或油杯的___
A. 中间
B. 上、下红线
C. 底部
D. 顶部
【单选题】
炼油厂中流体输送设备有___。
A. 风机
B. 加热炉
C. 换热器
D. 反应器
【单选题】
装置开工时,硫磺线及设备用风吹扫以后,即可作气密性试验,压力为 ___。
A. 操作压力
B. 二倍于操作压力
C. 1.5倍于操作压力
D. 2倍操作压力
【单选题】
设备在正常操作条件下允许的波动范围叫___。
A. 正常波动
B. 负荷上下限
C. 操作弹性
D. 操作条件