【多选题】
Which two are valid types of vLans using PVLANS ?___
A. Community VLAN
B. Backup VLAN
C. Secondary VLAN
D. Isolated VLAN
E. Isolated VLAN
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
AD
解析
暂无解析
相关试题
【多选题】
Which two commands are used to implement Resilient lOS Configuration ___
A. Secure boot-config
B. copy running-config tftp
C. copy flash:ios bin tftp
D. copy running-config startup-config
E. secure boot-image
【多选题】
Which two types of firewalls work at layer 4 and above ?___
A. Stateful inspection
B. Network Address Translation
C. Circuit-Level gateway
D. Static packet filter
E. Application Level firewall
【多选题】
Which two default settings for port security are true ?___
A. Violation is Protect
B. Violation is Restrict
C. Violation is Shutdown
D. Maximum number of MAC addresses is 2
E. Maximum number of MAC addresses is 1
【多选题】
Which two are characteristics of RADIUS?___
A. Uses UDP ports 1812 /1813
B. Uses TCP port 49
C. Uses UDP port 49
D.
E. ncrypts only the password between user and server
【多选题】
When setting up a site-to-site VPN with PSK authentication on a Cisco router, which two elements must be configured under crypto map?___
A. pfs
B. nat
C. reverse route
D. peer
E. transform-set
【多选题】
When using the Adaptive Security Device Manager(ASDM), which two options are available to add a new root certificate?___
A. Install from SFTP server
B. Usehttps
C. Install from a file
D. Use LDAP
E. Use SCEP
【多选题】
Which two SNMPv3 services support its capabilities as a secure networ k manage protocol? ___
A. access control
B. the shared secret key
C. authentication
D. authorization
E. accounting
【多选题】
Which two statements about routed firewall mode are true ?___
A. The firewall acts as a routed hop in the network
B. This mode conceals the presence of the firewall
C. The firewall requires a unique iP address for each interface
D. This mode allows the firewall to be added to an existing networ k with minimal additional configuration By default, this mode permits most traffic to pass throug
【多选题】
Which two statements describe DHCP spoofing attacks?___
A. They are used to perform man-in- the-middle attacks
B. They can access most network devices
C. They can modify the flow of traffic in transit. LNGKAIG
D. They protect the identity of ti attacker by masking the DHCP address
E. They can physically modify the network gateway
【多选题】
Which two types of VLANs using PVLANs are valid?___
A. isolated
B. promiscuous
C. backup
D. secondary
E. community
【多选题】
What are two limitations of the self-zone policies on a zone-based firewall?___
A. They are unable to block Https traffic
B. They restrict SNMP traffic.
C. They are unable to support Https traffic
D. They are unable to implement application inspection
E. They are unable to perform rate limiting
【多选题】
Which two descriptions of TACACS+ are true? ___
A. The TACACS+ header is unencrypted
B. It combines a uthentication and authorization
C. It uses TCP as its transport protocol
D. Only the password is encrypted.
E. It uses UDP as its transport protocol.
【多选题】
Which two actions does an IPS perform? ___
A. it spans the traffic
B. it reflects the traffic back to the sender
C. it encrypts the traffic
D. it terminates the user session or connection of the attacker
E. it reconfigures a device to block the traffic
【多选题】
In which form of fraud does an attacker try to learn information such as login credenti account information by ma squerading as a reputable entity or person in email, IM or communication channels ?___
A. phishing
B. Smurfit
C. Hacking
D. Identity Spoofing
【多选题】
Which two ESA services are available for incoming and outgoing mails ?___
A. anti-DoS
B. reputation filter
C. antispam
D. content filter
E. DLP
【多选题】
What are two reasons to recommend SNMPv 3 over SNMPv2?___
A. SNMPv3 is secure because you can configure authe ntication and privacy
B. SNMPv3 is insecure because it send in formation in clear text
C. SNMPv2 is insecure because it send information in clear text
D. SNMPv3 is a Cisco proprietary protocol
E. SNMPv2 is secure because you can configure authentication and privacy
【多选题】
Which two actions can a zone- based firewall apply to a packet as it transits a zone pair?___
A. drop
B. inspect
C. queue
D. quarantine
【单选题】
Which security principle has been violated if data is altered in an unauthorized manner?___
A. accountability
B. confidentiality
C. availability
D. integrity
【单选题】
Which IKE Phase 1 parameter can you use to require the site-to-site VPN to use a pre-shared ?___
A. encryption
B. authentication
C. group
【单选题】
Which command successfully creates an administrative user with a password of "cisco"on a Cisco router?___
A. username Operator privilege 7 password cisco
B. username Operator privilege 1 password cisco
C. username Operator privilege 15 password cisco
D. username Operator password cisco privilege 15
【单选题】
Which EAP method authenticates a client against Active Directory without the use of client-side 802.1X certificates?___
A. EAP-TLS
B. EAP-MSCHAPv2
C. EAP-PEAP
D.
E. AP-GTC
【单选题】
What is a limitation of network-based IPS?___
A. It must be in dividually configured to support every operating system on the network.
B. It is most effective at the in dividual host level
C. It is unable to monitor attacks across the entire netw ork
D. Large installations require numerous sensors to fully protect the network
【单选题】
When would you configure the ip dhcp snooping trust command on a sw itch?___
A. when the switch is connected to a DHCP server
B. when the switch is working in an edge capacit
C. when the switch is connected to a client system
D. when the switch is serving as an aggregator
【单选题】
How does the 802. 1x supplicant communicate with the authentication server?___
A. The supplicant creates EAP packets and sends them to the authenticator, which encapsulates them into RADIUS and forwards them to the authentication server.
B. The supplicant creates RADIUS packets and sends them to the authe nticator, which encapsulates the m into EAP and forwards them to the a uthentication server.
C. The supplicant creates RADIUS packets and sends them to the authenticator, which translates them into eap and forwards them to the a ut hentication server
D. The supplicant creates
E. AP packets and sends them to the authe nticator, which translates them into radius and forwards them to the authentication server.
【单选题】
Which command do you enter to verify the phase I status of a VPN connection?___
A. sh crypto se ssion
B. debug crypto isakmp
C. sh crypto isakmp sa
D. sh crypto ipsec sa
【单选题】
Refer to the exhibit. what is the e ffect of the given configuration?___
A. It enables authentication,
B. It prevents keychain authentication.
C. The two routers receive normal updates from one another.
D. The two device s are able to pass the message digest to one another.
【单选题】
Which command can you enter to configure OSPF to use hashing to authenticate routing updates?___
A. ip ospf aut hentication message-digest
B. neighbor 192 168.0 112 cost md5
C. ip ospf priority 1
D. ip ospf aut hentication-key
【单选题】
Which command can you enter to verify the status of Cisco lOS Resilient Configuration on a Cisco router?___
A. show secure bootset
B. secure boot-image
C. show binary file
D. ure boot-config
【单选题】
A user on your network inadvertently activates a botnet program that was received as an emai attachment. Which type of mechanism does Cisco Firepower use to detect and block only the botnet attack?___
A. network-based access control rule
B. reputation-based
C. user-ba sed access control rule
D. botnet traffic filter
【单选题】
What does the policy map do in CoPP?___
A. defines service parameters
B. defines packet selection parameters
C. defines the packet filter
D. define s the action to be performed
【单选题】
How is management traffic isolated on a Cisco ASR 1002?___
A. Traffic isolation is done on the vlan level
B. There is no management traffic isolation on a Cisco ASR 1002
C. Traffic is isolated based upon how you configure routing on the device
D. The management interface is configured in a special vRF that provides traffic isolation from the default routing table
【单选题】
Which statement about NaT table evaluation in the asa is true?___
A. After-auto NAT polices are appl d first
B. Manual NAT policies are applied first
C. the asa uses the most specific match
D. Auto NAT policies are applied first
【单选题】
Which information can you display by executing the show crypto ipsec sa command?___
A. ISAKMP SAs that are established between two peers
B. recent changes to the IP address of a peer router
C. proxy infor mation for the connection between two peers
D. IPsec SAs established between two peers
【单选题】
How can you prevent NAT rules from sending traffic to incorrect interfaces?___
A. Assign the output interface in the NAT statement
B. Add the no-proxy-arp command to the nat line.
C. Configure twice NAT instead o bject NAT. 5
D. Use packet-tracer rules to reroute misrouted NAT entries.
【单选题】
What term can be defined as the securing, control, and identification of digital data?___
A. cryptography
B. crypto key
C. cryptoanalysis
D. cryptology
【单选题】
Which feature in the dNS security module provide on and off network DNS protection?___
A. Data Loss Prevention
B. Umbrella
C. Real-time sandboxing
D. Layer-4 monitoring
【单选题】
Which a dverse consequence can occur on a network without BPDu guard ?___
A. The olde st switch can be elected as the root bridge
B. Unauthorized switches that are connected to the network can cause spanning-tree loops
C.
D. ouble tagging can cause the switches to experience CAM table overload.
【单选题】
What configuration is required for multitenancy ?___
A. shared infrastructure
B. multiple carriers
C. co-located resources
D. multiple separate zones
【单选题】
Why does ISE require its own certificate issued by a trusted CA?___
A. ISEs certificate allows guest devices to validate it as a trusted network device
B. It generates certificates for guest devices ba sed on its own certificate
C. It requests certificates for guest devices from the Ca server based on its own certificate.
D. ISE's certificate allows it to join the network security framework
【单选题】
which attack involves large numbers of ICMP packets with a spoofed source IP address?___
A. smurf attack
B. Teardrop attack
C. Nuke attack
D. SYN Flood attack
推荐试题
【判断题】
273股东大会审议提案时,不得对提案进行修改,否则,有关变更应当被视为一个新的提案,在本次股东大会上进行表决
A. 对
B. 错
【判断题】
274同一表决权只能选择现场、网络或其他表决方式中的一种。同一表决权出现重复表决的以最后一次投票结果为准
A. 对
B. 错
【判断题】
275公司为公司股东或者实际控制人提供担保的,必须经董事会决议
A. 对
B. 错
【判断题】
276董事会会议,应由董事本人出席;董事因故不能出席,可以口头委托其他董事代其出席
A. 对
B. 错
【判断题】
277监事会应当包括股东代表和适当比例的公司职工代表,其中职工代表的比例不得低于二分之一,具体比例由公司章程规定
A. 对
B. 错
【判断题】
278上市公司董事与董事会会议决议事项所涉及的企业有关联关系的,不得对该项决议行使表决权,可以代理其他董事行使表决权
A. 对
B. 错
【判断题】
279股东大会可以采取记名或者不记名方式投票表决
A. 对
B. 错
【判断题】
280股东大会对提案进行表决前,应当推举两名股东代表参加计票和监票。审议事项与股东有利害关系的相关股东及代理人不得参加计票、监票
A. 对
B. 错
【判断题】
281董事连续两次未能亲自出席,也不委托其他董事出席董事会会议,视为不能履行职责,董事会应当建议股东大会予以撤换
A. 对
B. 错
【判断题】
282禁止以有偿或者变相有偿的方式征集股东投票权。公司可以对征集投票权提出最低持股比例限制
A. 对
B. 错
【判断题】
283监事可以列席董事会会议,并对董事会决议事项提出质询或者建议
A. 对
B. 错
【判断题】
284公司从税后利润中提取法定公积金后,经股东大会决议,还可以从税后利润中提取任意公积金
A. 对
B. 错
【判断题】
285公司聘用会计师事务所必须由董事会决定
A. 对
B. 错
【判断题】
286股东大会由董事长主持。董事长不能履行职务或不履行职务时,由副董事长主持,副董事长不能履行职务或不履行职务时,由半数以上董事共同推举的一名董事主持
A. 对
B. 错
【判断题】
287在年度股东大会上,董事会、监事会应当就其过去一年的工作向股东大会作出报告。每名独立董事也应作出述职报告
A. 对
B. 错
【判断题】
288公司董事、监事、高级管理人员、持有本公司股份5%以上的股东,将其持有的本公司股票在买入后6个月内卖出,或者在卖出后6个月内又买入,由此所得收益归本公司所有
A. 对
B. 错
【判断题】
289公司股东大会、董事会决议内容违反法律、行政法规的,股东有权请求人民法院认定无效
A. 对
B. 错
【判断题】
290公司收购本公司股份用于奖励职工,用于收购的资金应从公司的税前利润中支出
A. 对
B. 错
【判断题】
291公司可以接受本公司的股票作为质押权的标的
A. 对
B. 错
【判断题】
292有限责任公司股东对股东会职权范围内的事项以书面形式一直表示同意的,可以不召开股东会会议直接作出决定
A. 对
B. 错
【判断题】
293有限责任公司董事任期由公司章程规定,但每届任期不得超过三年。董事任期届满,可以连选连任
A. 对
B. 错
【判断题】
294有限责任公司设立监事会的,其成员不得少于三人
A. 对
B. 错
【判断题】
295如果债权人主张一人有限责任公司的股东对公司债务承担连带责任,债权人必须证明该一人有限责任公司的财产并不独立于其股东自己的财产
A. 对
B. 错
【判断题】
296只要有限责任公司连续五年不向股东分配利润,则对股东会决议投反对票的股东可以请求公司按照合理的价格收购其股权
A. 对
B. 错
【判断题】
297发行股份的股款缴足后,发起人在三十日内未召开创立大会的,认股人可以按照所缴股款并加算银行同期存款利息,要求发起人返还
A. 对
B. 错
【判断题】
298证券交易以现货方式进行,但国务院证券监督管理机构可以对证券交易的其他方式做出规定
A. 对
B. 错
【判断题】
299证券交易所应当公开证券交易的收费项目、收费标准和收费办法,并且可以根据需要自主调整具体的收费标准
A. 对
B. 错
【判断题】
300某上市公司董事将其持有的公司股票在买入后三个月内即卖出,公司的一名小股东得知公司董事会没有收回该懂事买卖所得收益,则可以为了公司的利益以自己的名义直接向人民法院提起诉讼
A. 对
B. 错
【判断题】
301证券交易所可以制定高于《证券法》规定的上市条件,但必须报国务院证券管理机构批准
A. 对
B. 错
【判断题】
302股份有限公司申请上市的股票应当是依法公开发行的股票
A. 对
B. 错
【判断题】
303上市公司保荐人的资格及其管理办法由国务院证券监督管理机构会同证券交易所共同规定
A. 对
B. 错
【判断题】
304公司违反《证券法》规定擅自改变公开发行公司债券所募资金的用途,不得再次公开发行公司债券,公司债券已经上市的,证券交易所可直接终止其上市交易
A. 对
B. 错
【判断题】
305公司有重大违法行为和最近二年连续亏损是公司的股票、公司债券暂停上市的共同原因
A. 对
B. 错
【判断题】
306如果发行人公告的股票上市的有关文件中披露了董事、监事和高级管理人员的简历,但没有说明他们持有本公司股票、债券的情况,则投资者可以根据《证券法》向发行人提出质疑
A. 对
B. 错
【判断题】
307控股股东及其下属机构可以向上市公司及其下属机构下达有关上市公司经营的计划和指令
A. 对
B. 错
【判断题】
308《公司法》规定,股份有限公司不得直接或者通过子公司向董事、监事、高级管理人员提供借款
A. 对
B. 错
【判断题】
309证券的发行及其交易活动,必须实行公开、公平、公正的原则
A. 对
B. 错
【判断题】
310发生可能对上市公司股票交易价格产生较大影响的重大事件,投资者尚未得知时,上市公司应当立即将有关该重大事件的情况向国务院证券监督管理机构和证券交易所报送临时报告,并予公告,说明事件的起因、目前的状态和可能产生的法律后果
A. 对
B. 错
【判断题】
311股份有限公司的股东可不亲自出席股东大会会议而委托代理人出席
A. 对
B. 错
【判断题】
312根据《公司法》,公司的实际控制人包括虽不是公司的股东,但通过投资关系、协议或者其他安排,能够实际支配公司行为的人
A. 对
B. 错