【单选题】
Referencing the ClA model, in which scenario is a hash- only function most appropriate ?___
A. securing data at rest
B. securing real-time traffic
C. securing data in files
D. securing wireless transmissions
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
B
解析
暂无解析
相关试题
【单选题】
Which ports must be open between a aaa server and a microsoft server to permit Active Directory authentications?___
A. 445 and 389
B. 888 and 3389
C. 636 and 4445
D. 363 and 983
【单选题】
Refer to the exhibit for which reason is the tunnel unable to pass traffic___
A. the tunnel is failing to receive traffic from the remote peer
B. the local peer is unable to encrypt the traffic
C. the ip address of the remote peer is incorrect
D. UDP port 500 is blocked
【单选题】
Which type of attack can exploit design flaws in the implementation of an application without___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
How can you protect CDP from reconnaissance attacks?___
A. Enable dynamic ARP inspection on all untrusted ports.
B. Enable dot1x on all ports that are connected to other switches.
C.
D. isable CDP on ports connected to endpoints.
【单选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which option is a key security compone nt of and MDM deployment ?___
A. using network-specific installer packages
B. using an application tunnel by default
C. using self-signed certificates to validate the server
D. using MS-CHAPv2 as the primary
E. AP method
【单选题】
Which Firepower Management Center feature detects and block exploits and hack attempts?___
A. Content blocker
B. file control
C. intrusion prevention
D. advanced malware protection
【单选题】
hich description of the nonsecret numbers that are used to start a Diffie- Hellman exchange is ture?___
A. They are preconfigured prime integers.
B. They are large pseudorandom numbers.
C. They are very small numbers chosen from a table of known valuses
D. They are numeric values extracted from ha shed system hostnames
【多选题】
Which two characteristics of an application layer firewall are true?___
A. provides stateful firewal functionality
B. has low processor usage
C. provides protection for multiple applications
D. provides rever se proxy services
E. is immune to URL manipulation
【多选题】
Which two devices are components of the BYOD architectural framework?___
A. Nexus 7010 switch
B. Cisco 3945 Router
C. Identify Services Engine
D. Wireless Access oints
E. Prime Infrastructure
【多选题】
Which two actions can a zone based firewall take when looking at traffic? ___
A. forward
B. inspect
C. drop
D. broadcast
E. filter
【多选题】
n which two situations should you use in-band management?___
A. when management applications need concurrent access to the device
B. when you require administrator access from multiple locations
C. when a network device fails to forward packets
D. when you require ROMMON access
E. when the control plane fails to respond
【多选题】
What are two ways to prevent eavesdropping when you perform device management tasks?___
A. Use an SSH connection.
B. Use SNMPv3
C. Use out-of-band management
D. Use SNMP
E. Use in-band management
【多选题】
Which two features are commonly used CoPP and CPPr to protect the control plane? ___
A. QoS
B. traffic classification
C. access lists
D. policy maps
E. class maps
F. Cisco Express Forwarding
【多选题】
Which four tunne ling prot ocols are enabled in the Dfit GrpPolicy group policy ?___
A. Clientless SSL VPN
B. SSL VPN Client
C. PPTP
D. L2TP/IPsec
E. IPsec IKEv1
F. IPsec IKEv2
【多选题】
Which two statements regarding the aSA VPN configurations are correct?___
A. The asa has a certificate issued by an external certificate authority associated to the ASDM TrustPoint1
B. The Default WEBVPNGroup Connection Profile is using the aaa with RADIUS server method
C. The Inside-srvbook mark references the https://192.168.1.2url
D. Only Clientless SSL VPN access is allowed with the Sales group policy
E. Any Connect, IPSec IKEv1, and IPSec IKEv2 VPN access is enabled on the outside interface
F. The Inside -SRV bookmark has not been applied to the Sales group policy
【多选题】
Which three ESP fields can be encrypted during transmission?___
A. Security Parameter Index
B. Sequence Number
C. MAC Address
D. Padding
E. Pad length
F. Next Header
【多选题】
.Which three statements de scribe DHCP spoofing attacks?___
A. They can modify traffic in transit.
B. They are used to perform man- in-the-middle attacks
C. They use ARP poisoning
D. They can access most network devices
E. They protect the ide ntity of the attacker by masking the DHCP address.
F. They are can physically modify the network gateway.
【多选题】
Which statement about the communication between interfaces on the same security level is true?___
A. Interfaces on the same security level require additional configuration to permit interinterface communication
B. Configuring interfaces on the same security level can cause asymmetric routing
C. All traffic is allowed by default between interfaces on the same security level
D. You can configure only one interface on a n individual security level
【多选题】
In which two situations should you use in band management? ___
A. when the control plane fails to respond
B. when you require administrator access from multiple locations
C. when you require ROMMON access.
D. where a network device fails to forward packets
E. when multiple ma nagement applications need concument access to the device.
【多选题】
Which two features are supported in a VRF-aware softwar infrastructure before VRF-lite?___
A. multicast
B. fair queuing
C. WCCP
D.
E. IGRP
【多选题】
.Which loS command do you enter to test authentication again a AAA server?___
A. dialer aaa suffix <suffix> password <password>
B. ppp authentication chap pap test
C. test aaa-server authentication dialer group user name <user> password <password>
D. aaa authentication enable default test group tacases
【多选题】
Which two statements about the self zone on a cisco Xone based policy firewall are true?___
A. Multiple interfaces can be assigned to the self zone
B. it supports stateful inspections for multicast traffic
C. zone pairs that include the self zone apply to traffic transiting the device.
D. it can be either the source zone or the destination zone
E. traffic entering the self zone must match a rule
【多选题】
Which type of attack can exploit design flaws in the implementation of an application without ?___
A. DHCP starvation attacks
B. low-rate dos attacks
C. application DDos flood attacks
D. application DDoS flood attacks
E. volume-based DDoS attacks
【单选题】
Which type of firewall can server as the interme diary between a client and a server ?___
A. Stateless firewall
B. application firewall
C. proxy firewall
D. personal firewall
【单选题】
What is the highest security level that can be configured for an interface on an ASA?___
A. 0
B. 50
C. 10
D. 200
【单选题】
Which term refers to the electromagnetic interference that can radiate from network cables?___
A. Gaussian distributions
B. Doppler waves
C. emanations
D. multimode distortion
【单选题】
How does a zone pair handle traffic if the policy de fination of the zone pair is missing?___
A. It inspects all traffic.
B. It drops all traffic.
C. It permits all traffic wihtout logging
D. It permits and logs all traffic
【单选题】
default how does a zone based firewall handle traffic to add from the self zone?___
A. It permits all traffic without inspection
B. It inspects all traffic to determine how it is handled
C. It permits all traffic after inspection
D. It frops all traffic
【单选题】
Which command should beused to ena ble AAA Authentication to determine if a user can access the privilege command level?___
A. aaa authentication enable local
B. aaa authentication enable level=
C. aaa authentication enable method de fault
D. aaa authentication enable defa ult local
【单选题】
On an ASA, the policy indicates that traffic should not be translated is often referred to as which of the following?___
A. NAT zero
B. NAT forward
C. NAT nul
D. NAT allow
【单选题】
Which protocol offers data Integrity encryption, authentication, and anti-replay functions for IPSec VPN?___
A. ESP protocol
B. IKEv3 Protocol
C. AH protoco
D. IKEv1 Protocol
【单选题】
Which component offers a variety of security Solution, including firwall, IF Antivirus and antiphishing features?___
A. Cisco loS router
B. Cisco ASA 5500 Ser ies security appliance
C. Cisco ASA 5500 X series Next Gen Security appliance
D. Cisco 4200 series IPS appliance
【单选题】
Refer to the exhibit, A Network Secur ity administrator check the ASa firewall NAT policy table rith show nat command, which statement is fails?___
A. There are only reverse translation matches for the REAL SERvER object
B. First policy in the Section 1 is a dynamic nat entry defined in the object configuration
C. NAT policy in section 2 is static entry de fined in the object configuration
D. Translation in Section 3 used when a connection does not matches any entries in first two sections
【单选题】
What is true of an aSa in transparent mode ?___
A. It supports OSPF
B. It requires an IP address for each interface
C. It requires a management IP address
D. It allows the use of dynamic NaT
【单选题】
What is the effect of the ip scp server enable command?___
A. It references an access list that allows specific SCP servers
B. It allows the router to initiate requests to an SCP server
C. It allows the router to become an SCP server
D. It adds SCP to the list of allowed copy functions
【单选题】
How can you mitigate attacks in which the attacker attaches more than one vLan tag to a packet?___
A. Assign an access VLAN to every active port on the switch
B. Disable Ether Channel on the switch
C. Explicitly identity each VLAN allowed across the trunk
D.
E. nable transparent VTP on the switch
【单选题】
Which technology can you implement to centrally mitigate potential threats when users on your network download files that might be malicious?___
A. Enable file-reputation services to inspect all files that traverse the company network and block files with low reputation scores
B. Verify that the compa ny IpS blocks all known malicious website
C. Verity that antivirus software is installed and up to date for all users on your network
D. Implement URL filtering on the perimeter firewall
【单选题】
What is the most common implementation of PaT in a standard networked environment?___
A. configuring multiple external hosts to join the self zo ne and to communicate with one another
B. configuring multiple internal hosts to communicate outside of the network using the outside interface IP address
C. configuring multiple internal hosts to communicate outside of the network by using the inside interface IP address
D. configuring an any any rule to enable external hosts to communicate inside the network
【单选题】
Which component of a bYod architecture provides aAa services for endpoint access ?___
A. Integrated Services Router
B. access point
C. ASA
D. Identity Services
E. ngine
推荐试题
【单选题】
违规使用学生卡如出闸时发现,依照武汉轨道交通管理条例第65条:无车票或持无效车票乘车的,轨道交通运营单位可按照单程总票价补收票款,情节严重的,处___倍票价以下的罚款。
A. 2
B. 3
C. 5
D. 10
【单选题】
闸机登录___次输入用户名字密码错误后,设备会报警,同时会有用户名或密码错误的提示,需要重新关闭维护门再开启,以重新登录。
A. 1
B. 3
C. 5
D. 10
【单选题】
如维修人员需要借用票箱钥匙、纸币钱箱钥匙、HOPPER补币箱钥匙、硬币回收箱钥匙等,由AFC专业人员与___办理钥匙借用手续。
A. AFC维修人员
B. 站区长
C. 车站行车值班员
D. 车站值班站长
【单选题】
紧急模式所影响的车票,乘客在___内再次使用时,闸机自动判断车票的售出日期或进闸时间是否符合条件(设备根据保存的此紧急模式所发生历史数据对车票发售日期、地点、进闸情况进行检查),符合条件的车票可在任何车站进闸使用。
A. 7日
B. 当日
C. 本月
D. 次日
【单选题】
紧急模式设置决策人___
A. 部门经理
B. 站区长
C. 综合技术室票务工作负责人
D. 车站值班站长及以上人员
【单选题】
1号线线路分为正线、___、车辆段(车场)线AA
A. 负线
B. 倒线
C. 侧线
D. 辅助线
【单选题】
下列不属于辅助线的是___。
A. 存车线
B. 检修线
C. 折返线
D. 出入段线
【单选题】
下列不属于轨道组成部分的是___
A. 道床和轨枕
B. 钢轨和联结零件
C. 信号机和感应环线
D. 道岔和防爬设备
【单选题】
临时加开回空列车的班次号为___
A. 001-099
B. 901-909
C. 910-919
D. 920-929
【单选题】
《武汉市轨道交通管理条例》中规定,“在建和运营的轨道交通安全保护区”设置是正确的是___
A. 地下车站与隧道外边线外侧三十米内;
B. 地面和高架车站以及线路轨道外边线外侧五十米内;
C. 出入口、通风亭、变电站等建(构)筑物外边线外侧十米内;
D. 水底隧道结构外边线外侧一百米内。
【单选题】
系统处于ATC模式允许列车越过时,信号灯显示为___
A. 绿灯
B. 黄灯
C. 绿黄灯
D. 蓝灯
【单选题】
下列哪个站不是联锁控制站___。
A. 大智路站
B. 武汉商务区站
C. 古田二路站
D. 惠济二路站
【单选题】
普通储值票余值最大金额为___元。
A. 100
B. 200
C. 500
D. 1000
【单选题】
当乘客持赠票进站时___,出站时___。
A. 撕下存根 回收车票
B. 撕下副券 检票放行
C. 检查存根 撕下存根
D. 检查副券 撕下副券
【单选题】
当车站自动售票机不能满足需求时,应___
A. 人工发售预赋值票
B. 设置进出站免检模式
C. 直接发售纸票
D. 关闭出入口
【单选题】
下列哪些情况,值班站长不可发放赠票。___
A. 列车已经延误15分钟。
B. 乘客购票后未赶上末班车。
C. 其他需要使用赠票的情况,必须得到部门经理的批准
D. 乘客已刷卡(单程票)进站但未赶上末班车。
【单选题】
二氧化碳灭火器一是检查喷嘴和喷射管道是否堵塞、腐蚀和损坏;二是刚性连接式喷嘴是否能绕其轴线回转,并可停留在任何位置,这样的检查___一次。
A. 每日
B. 每月
C. 半年
D. 一年
【单选题】
关于火灾的类型下列说法错误的是___。
A. A 类是含碳固体可燃物如木材、棉、毛、麻、纸张等燃烧的火灾。
B. B 类是甲乙丙类液体如汽油、煤油、柴油、甲醇、乙醚、丙酮等燃烧的火灾。
C. C 类是可燃金属如钾、钠、镁、钛、锆、锂、铝、镁合金等燃烧的火灾。
D. E 类是电器火灾(一般带电设备所引起的火灾)。
【单选题】
《武汉市轨道交通运营安全管理办法》中关于轨道交通运营线路安全保护区的具体范围说法正确的是___
A. 地下车站与隧道外边线外侧 150 米内;
B. 地面和高架车站以及线路轨道外边线外侧 30 米内;
C. 出入口、通风亭、变电站等建(构)筑物外边线外侧200 米内;
D. 水底隧道结构外边线外侧15 米内。
【单选题】
车站客运服务人员不包括___
A. 值班站长
B. 站务员
C. 见习实习人员
D. AFC人员
【单选题】
接听电话时,一般以铃响___声时接听最佳。
A. 1
B. 2
C. 3
D. 4
【单选题】
下列哪些车站LSMC 工作站具备排列进路、操纵道岔、开闭信号等功能。___
A. 古田三路
B. 三阳路
C. 东风公司
D. 双墩
【单选题】
1/3号线站间自动闭塞时,列车采用___驾驶,行车凭证为_。
A. 非限制人工模式、 信号机的进行显示
B. 非限制人工模式、目标点和速度码
C. 保护人工模式、目标点和速度码
D. 保护人工模式、信号机的进行显示
【单选题】
下列哪种车票不属于地铁公司发行的车票___
A. 单程票
B. 武汉通纪念卡
C. 定期票
D. 纸票
【单选题】
下列不属于武汉轨道交通储值票票面损坏标准的是___
A. 由于磨擦导致票面刮花、保护膜脱落、表面图案磨损面积超过票面总面积的 1/5以下的;
B. 票面有高温、火烧留下的烙印;
C. 车票已扭曲不在同一平面 ;
D. 票面有孔;
【单选题】
下列不符合使用专用通道的情况是___
A. 车站的闸机全部故障。
B. 公司批准的施工计划且通过车站请点确认许可进入的施工人员。
C. 发生大客流等情况需要快速疏散。
D. 乘客闸门误用。
【单选题】
二氧化碳灭火器一是检查喷嘴和喷射管道是否堵塞、腐蚀和损坏;二是刚性连接式喷嘴是否能绕其轴线回转,并可停留在任何位置,这样的检查___一次。
A. 每日
B. 每月
C. 半年
D. 一年
【单选题】
当车站售票机不能满足需求(平均每台售票机排队人数达到___人且排队时间超过___分钟)时,应进行人工售票。
A. 20 15
B. 10 15
C. 20 10
D. 10 10
【单选题】
站台岗负责监控上下行站台情况,保证乘客候车和上下车安全,并负责监控区间、线路及___、悬挂设备的安全。
A. 引导标识
B. 悬挂电视
C. 屏蔽门
D. 广告设施
【单选题】
客运服务的“四好”标准是___
A. 安全运营好、窗口服务好、设施使用好、社会评价好
B. 安全运营好、文明服务好、设备使用好、社会评价好
C. 安全运营好、窗口服务好、设施使用好、媒体评价好
D. 高效运营好、窗口服务好、设施使用好、社会评价好
【单选题】
1号线、2号线一期工程、3号线一期工程和4号线客车均采用___型车。
A. A型车
B. B型车
C. C型车
D. D型车
【单选题】
下列哪一项不属于“微笑服务” 二类不达标事件___。
A. 为乘客提供服务时,态度冷漠,对乘客使用服务忌语;
B. 在岗时做与工作无关的事情;
C. 未按规定执行首问责任制;
D. 乘客服务工作中未使用普通话,未使用服务规范用语。
【单选题】
中、小学生(具有武汉市学籍的普通中小学、中等职业学校学生)持武汉通学生卡持武汉通学生卡享受___扣值优惠。
A. 7折
B. 8折
C. 9折
D. 不打折
【单选题】
通过手信号的显示为___
A. 展开的黄色信号旗。
B. 展开的绿色信号旗。
C. 展开的红色信号旗。
D. 拢起的黄色信号旗。
【单选题】
PSL是下列哪项的英文缩写。 ___
A. 屏蔽门系统就地控制盘
B. 站台屏蔽门
C. 环境与设备监控系统
D. 紧急停车按钮
【单选题】
残疾人证编号倒数第二位为4代表___
A. 视力残疾
B. 多重残疾
C. 肢体残疾
D. 听力残疾
【单选题】
下列哪一项不是厅巡岗服务技巧___。
A. 多看、多巡、多引导
B. 受到乘客的责骂,以理服人
C. 高峰期应佩戴扩音器,不得拿广播对着乘客喊话
D. 引导车票有问题的乘客到客服中心处理
【单选题】
禁止在轨道交通车站、车厢、通道、出入口以及出入口周围_米范围内擅自停放车辆、堆放杂物,摆摊设点、兜售及派发印刷品。
A. 2
B. 3
C. 4
D. 5
【单选题】
普通储值票、免费票有效期为___
A. 100天
B. 300天
C. 500天
D. 600天
【单选题】
在哪种票卡刷卡时,闸机提示音为长嘟1声并闪黄灯___
A. 武汉通学生票
B. 各种类型的员工票
C. 地铁免费票
D. 武汉通老人票