【单选题】
Which command enables authentication at the oSPFv2 routing process level?___
A. ip ospf authentication message-digest
B. area 0 authentication message-digest
C. ip ospf message-digest-key 1 mds Cisco
D. area 0 authentication ipsec spi 500 md5 1234567890ABCDEF1234567890ABCDEF
查看试卷,进入试卷练习
微信扫一扫,开始刷题
答案
B
解析
暂无解析
相关试题
【单选题】
Which type of firewall monitors a nd protects a specific system?___
A. firewall
B. application firewall
C. stateless firewall wvp
D. personal firewall
【单选题】
On an ASA, which maps are used to identify traffic?___
A. Route maps
B. Policy maps
C. Class maps
D. Service maps
【单选题】
Which type of social engineering attack targets top executives?___
A. whaling
B. vishin
C. spear phishing ng
D. baiting
【单选题】
What is the minimum Cisco lOS version that supports zone-based firewalls?___
A. 12.1T
B. 15.1
C. 15.0
D. 124
【单选题】
In which type of attack does an attacker overwrite an entry in the CAM table to divert traffic destined to a legitimate host?___
A. DHCP spoofing
B. ARP spoofing
C. CAM table overflow
D. MAC spoofing
【多选题】
Which two attack types can be prevented with the impleme ntation of a Cisco IPS solution?___
A. DDos
B. man-in-the-middle
C. worms
D. ARP spoofing
E. VLAN hopping
【多选题】
choose four___
A. DHCP snooping ——————————blocks DHCP messages
B. Dynamic ARP inspection——————verifies IP-to-MAC traffic on untrusted ports
C. IP sources guard ——————————provides layer 2 interface security with ports ACLs
D. Port security————————————mitigates MAC-address spoofing at the access interface
【多选题】
choose four___
A. Step1————————run the system setup wizard
B. Step2————————add an authentication realm
C. Step3————————configure identity management
D. Step4————————configure directory group
【多选题】
What are two advanced features of the Cisco AMp solution for endpoints ___
A. contemplation
B. foresight
C. sandboxing
D. reputation
E. reflection
【多选题】
Which two characteristics of RADIUS are true?___
A. It encrypts only the password between user and server.
B. It uses TCP ports 1812/1813
C. It uses UDP ports 1812/1813.
D. It uses UDP port 49
E. It uses TCP port 49
【多选题】
What are two challenges of using a network-based IPS? ___
A. It is unable to determine whether a detected attack was successful
B. It requires additional storage and proce ssor capacity on syslog servers
C. As the network expands, it requires you to add more sensors.
D. It is unable to detect attacks across the entire network
E. It must support multiple operating systems.
【多选题】
What are two default be haviors of the traffic on a zone-based firewall?___
A. Traffic within the self -zone uses an im plicit deny all.
B. All traffic between zones is implicitly blocked
C. Communication is allowed between interfadAss that are members of the same zone
D. Communication is blocked between interfaces that are members of the same zone
E. The CBAC rules that are configured on router interfaces apply to zone interfaces
【多选题】
Which two advantages does the on-premise model for MDM deployment have over the cloud-based model?___
A. The on-premise model is easier and faster to de ploy than the cloud-based model
B. The on-premise model is more scalable than the cloud-based model
C. The on-premise model is generally less expensive than the cloud-based model
D. The on-premise model generally has less latency than the cloud- based model.
E. The on-premise model provides more control of the MDM solution than the cloud
【多选题】
Which two actions can an end usts take to manage a lost or stolen device in Cisco ISE? ___
A. Activate Cisco ISE End point Protection Services to quarantine the device.
B. Add the mac address of the device to a list of blacklisted devices
C. Force the device to be locked with a PIN
D. Request revocation of the digital certificate of the device.
E. Reinstate a device that the user previously marked as lost or stolen
【多选题】
Which two problems can arise when a proxy firewall serves as the gateway between networks?___
A. It can prevent content caching
B. It can limit application support
C. It is unable to prevent direct connections to other networks
D. It can cause reduced throughput.
E. It is unable to provide antivirus protection
【多选题】
When using the Adaptive Security Device Manager(ASDM), which two methods are available to add a new root certificate?___
A. Use sCep
B. Install from SFTP server
C. Install from a file
D. Use Https
E. Use LDAP
【多选题】
Which two are considered basic security principles?___
A. Accountability
B. Redundancy
C. High Availabilit
D. Integrity
E. Confidentiality
【多选题】
Which two roles of the Cisco WSA are true?___
A. IPS
B. firewall
C. antispam
D. web proxy
E. URL filter
【单选题】
Which next-generation encryption algorithm supports four variants?___
A. SHA-2
B. SHA-1
C. MD5
D. HMAC
【单选题】
What aims to remove the abil ity to deny an action?___
A. Non-Repudiation
B. Accountability
C. Integrity
D. Deniability
【单选题】
Which statements about the native VLAN is true ?___
A. It is susceptible to VLAN hopping attacks.
B. It is the Cisco recommended VLAN for switch-management traffic
C. It is most secure when it is a ssigned to vLAn 1.
D. It is the cisco-recomme nded vlan for user traffic
【单选题】
There are two versions of IKE:IKEv1 and IKEv2. Both IKEv1 and IKEv2 protocols operate in phases IKEv1 operates in two phases. IKEv2 operates in how many phases?___
A. 2
B. 3
C. 4
D. 5
【单选题】
What does the dh group refer to?___
A. length of key for hashing C
B. length of key for encryption
C. tunnel lifetime key
D. length of key for key exchange
E. length of key for authentication
【单选题】
Which path do you follow to enable aaa through the SDM ?___
A. Configure Tasks > AAA
B. Configure > Addition Authentication > AAA
C. Configure > AAA
D. Configure > Additional Tasks > AAA
E. Configure Authentication > AAA
【单选题】
which technology cloud be used on top of an MPLS VPN to add confidentiality ?___
A. IPsec
B. 3DES
C. AES
D. SSL
【单选题】
Which term is most closely aligned with the basic purpose of a SIEM solution? ___
A. Non-Repudiation
B. Accountability
C. Causality
D. Repudiation
【单选题】
You have just deployed SNMPv3 in your environment, Your manager asks you to make sure that our SNMP agents can only talk to the SNMP Manager. What would you configure on your SNMI agents to satisfy this request?___
A. A SNMP View containing the SNMP managers
B. Routing Filter with the SNMP managers in it applied outbound
C. A standard ACL containing the SNMP managers applied to the SNMP configuration
D. A SNMP Group containing the SNMP managers
【单选题】
Which feature prevents loops by moving a nontrunking port into an errdisable state when a BPDU is received on that port?___
A. BPDU filte
B. DHCP snooping
C. BPDU guard
D. Port Fast
【单选题】
Which command enables port security to use sticky MAC addresses on a switch?___
A. switchport port-security violation restrict
B. switchport port-security mac-address sticky
C. switchport port-security violation protect
D. switchport port-security
【单选题】
When you edit an IPS subsignature, what is the effect on the parent signature and the family of subsignatures?___
A. The change applies to the parent signature and the entire family of subsignatures
B. The change applies to the parent signature and the subsignature that you edit
C. The change applies only to subsignatures that are numbered sequentially after the subsignature that you edit
D. Other signatures are unaffected, the change applies only to the subsignature that you dit
【单选题】
Which type of mechanism does Cisco FirePOWER de ploy to protect ag detected moving across other networks?___
A. antivirus scanning
B. policy-based
C. reputation-based
D. signature-based
【单选题】
What action must you take on the ise to blacklist a wired device?___
A. Locate the switch through which the device is connected and push an a cl restricting all access by the device
B. Issue a CoA request for the de vice's mac address to each access switch in the network
C. Revoke the device's certificate so it is unable to authenticate to the network
D. Add the device's MAc address to a list of black listed devices
【单选题】
Which type of firewall can perform deep packet inspection?___
A. packet-filtering firewall
B. stateless firewall
C. application firewall
D. personal firewall
【单选题】
What is the main purpose of Control Plane Policing?___
A. to prevent exhaustion of route-proce ssor resources
B. to organize the egress packet queues
C. to define traffic classes
D. to maintain the policy map
【单选题】
Which attack can be prevented by OSPF authentication?___
A. smurf attack
B. IP spoofing attack
C. denial of service attack
D. buffer overflow attack
【单选题】
What is the best definition of hairpinning?___
A. ingress traffic that traverses the outbound interface on a device
B. traffic that enters one interface on a device and that exits through another interface
C. traffic that enters and exits a device through the same interface
D. traffic that tunnels through a device interface
【单选题】
Which SNMPv3 security level provides authentication using HMAC with MD5, but does not use encryption?___
A. authPriv
B. authNo Priv
C. noAuthNoPriv
D. NoauthPriv
【单选题】
You have implemented a dynamic blacklist, using security intelligence to block illicit network activity. However, the blacklist contains several approved connections that users must access for usiness pur poses. Which action can you take to retain the blacklist while allowing users to access the approve d sites?___
A. Create a whitelist and manually add the approved addresses.
B. Disable the dynamic blacklist and deny the specif ic address on a whitelist while permitting the others
C. Edit the dynamic blacklist to remove the approved addresses
D. Disable the dynamic blacklist and create a static blacklist in its place
【单选题】
When connecting to an external resource,you must change a source IP address to use one IP address from a range of 207.165.201.1 to 207.165.1.30. Which option do you implement ?___
A. dynamic source NAT that uses an IP ad dress as a mapped source
B. static destination NAT that uses a subnet as a real de stination
C. dynamic source NAT that uses a range as a mapped source
D. static destination NAT that uses a subnet as a real source
【单选题】
Refer to the exhibit. 【nat(ins,any)dynamic interface】Which ty pe of NaT is configured on a Cisco ASA?___
A. dynamic NAT
B. source identity NAT
C. dynamic PAT
D. identity twice NAT
推荐试题
【单选题】
脂肪的吸收,错误的是___
A. 水解为脂肪酸、 甘油一酯和甘油后才能吸收
B. 吸收过程需要胆盐协助
C. 进入肠上皮细胞的脂肪水解产物绝大部分在细胞内又合成为甘油三酯
D. 长链脂肪酸可直接扩散入血液
E. 中、短链三酰甘油水解产物直接入血
【单选题】
有关铁的吸收的叙述,错误的是___
A. 吸收部位主要 在小肠下部
B. 亚铁比高铁容易被吸收
C. 铁在酸性环境容易而被吸收
D. 维生素C可促进铁的吸收
E. 胃大部分切除的患者可伴有缺铁性贫血
【单选题】
关于Ca2在小肠被吸收的叙述,错误的是___
A. 维生素D可促进Ca2+的吸收
B. 只有 离子状态的Ca2+才能被吸收
C. 草酸盐、磷酸盐、植酸抑制Ca2*的吸收
D. 胃酸及维生素 C抑制Ca2t的吸收
E. 十二指肠是跨上皮细胞主动吸收Ca’的主要部位
【单选题】
在消化实验中,电刺激免膈下迷走神经时,不会出现___
A. 胃平滑肌收缩
B. 肠道平滑肌收缩
C. 胰液分泌增加
D. 胃液分 泌增加
E. 胃肠道括约肌收缩
【单选题】
动物实验显示,口服葡萄糖比静脉注射相同剂量葡萄糖引起的胰岛素分泌更多,这是由于口服可引起哪种具有很强刺激胰岛素分泌的胃肠激素释放___
A. 促胃液素
B. 抑胃肽
C. 缩胆囊素
D. 胰高血糖素
E. 促胰液素
【单选题】
胃大部分切除的患者出现严重贫血,表现为外周巨幼红细胞增多,其主要 原因是下列哪项减少上___
A. HCI
B. 粘液
C. 胃蛋白酶原
D. HCO3
E. 内因子
【单选题】
胃黏膜处于高酸和胃蛋白酶环境中,却不被消化是由于存在着自我保护机制,这种机制主要是___
A. 黏液屏障
B. 碳酸氢盐屏障
C. 黏液-碳酸氢盐屏障
D. 黏液细胞保护
E. 粘液凝胶层保护
【单选题】
幽门梗阻患者出现严重呕吐,可导致___
A. 代谢性碱中毒
B. 呼吸性碱中毒
C. 代谢性酸中毒
D. 混合性酸中毒
E. 呼吸性酸中毒
【单选题】
在动物实验中,将蛋白质类食物通过胃痿直接放入胃内,引起胃液分泌的特点是___
A. 量大、酸度高,消化力较强
B. 量大、 酸度高,消化力较弱
C. 量大、酸度低,消化力较强
D. 量大、酸度低,消化力较弱
E. 量小、酸度低,消化力较强
【单选题】
使切除也不能超过50%,为什么? ___
A. 小肠回盲瓣的功能
B. 小肠具有移行性复 合运动
C. 小肠是食物消化和吸收的重要部位
D. 小肠液含有胰液和胆汁
E. 十二指肠和小肠 腺是重要的消化腺
【单选题】
在做胆囊造影时,为检查胆囊的收缩功能,让受试者进食油煎荷包蛋是为了促进___
A. 胆盐的合成
B. 胆固醇的合成
C. 迷走神经的兴奋
D. 缩胆囊素的分泌
E. 促胃液素的分泌
【单选题】
下列各项中,不属于神经纤维兴奋传导特征的是___
A. 完整性
B. 绝缘性
C. 双向性
D. 衰减性
E. 相对不疲劳性
【单选题】
神经干中许多纤维同时传导兴奋时互不干扰的主要原因是___
A. 髓鞘的绝缘作用
B. 细胞膜电阻很大
C. 细胞外液的短路作用
D. 跨膜电流很小
E. 不同纤维传导速度不等
【单选题】
神经纤维 外包裹髓鞘的主要作用是___
A. 起保护作用
B. 起绝缘作用
C. 提高传导速度
D. 增加膜电阻
E. 增加膜电容
【单选题】
顺向快速轴浆运输主要运送的物质是___
A. 具有膜结构的细胞器
B. 递质合成酶
C. 微丝和微管
D. 神经营养因子
E. 神经递质
【单选题】
脊髓灰质 炎患者发生肢体肌肉萎缩的主要原因是___
A. 病毒的直接侵害
B. 患肢肌肉 血供减少
C. 失去神经营养性作用
D. 患肢长期废用
E. 脊髓失去高位中枢控制
【单选题】
下列关于神经胶质细胞的描述,正确的是___
A. 有树突和轴突之分
B. 细胞间能形成化学性突触
C. 膜电位随[K*]改交而改变
D. 能产生动作电位
E. 发育成熟后 不再分裂增殖
【单选题】
在中枢神经系统内形成髓鞘的神经胶质细胞是___
A. 原浆型星形胶质细胞
B. 纤维型星形胶质细胞
C. 小胶质细胞
D. 少突胶质细胞
E. 放射状胶质细胞
【单选题】
电突触传递的一般特点是___
A. 单向,低电阻,快速
B. 单向,高电阻,慢速
C. 双向,低电阻,快速
D. 双向,高电阻,慢速
E. 单向,高电阻,慢速
【单选题】
突触传递中,影响神经末梢递质释放量的关键因素是___
A. 末梢膜钠通道密度
B. 进入末梢的Ca2+量
C. 末梢内囊泡数量
D. 囊泡内递质含量
E. 活化区面积大小
【单选题】
中枢神经系统内的非定向突触传递多见于___
A. 胆碱能纤维末梢
B. 单胺类纤维末梢
C. 肽能纤维末梢
D. 嘌呤类纤维末梢
E. 氨基酸类纤维末梢
【单选题】
下列关于兴奋性突触后电位的叙述,正确的是___
A. 是由突触前神经元释放抑制性递质而引起
B. 性质上属于动作电位,但幅度较小
C. 重复刺激可发生时间总和
D. 通过突触后膜 K+通道开放而产生
E. 突触后神经元受刺激兴奋
【单选题】
产生抑制性突触后电位(IPSP)的主要机制是___
A. 突触前末梢递质释放减少
B. 突触后膜Ca2+电导降低
C. 突触后膜 Na+电导降低
D. 由中间神经元受抑制
E. 突触后膜发生超极化
【单选题】
若干EPSP总和后足以达到阔电位水平神经元上首先爆发动作电位的部位是___
A. 树突
B. 胞体
C. 轴突始段
D. 轴突末稍
E. 轴突中段
【单选题】
下列关于神经递质的描述,正确的是___
A. 指凡能与受体结合的各种物质
B. 起调节突触传递效率的作用
C. 一个神经元只释放一种递质
D. 一种递质只作用于一种受体
E. 与受体结合生效后很快被消除
【单选题】
下列关于神经递质受体的描述,正确的是___
A. 仅分布于细胞膜上
B. 与相应配体结合后定能生效
C. 有多种亚型,可产生多种效应
D. 突触前受体是突触双向传递的基础
E. 在递质释放过多时常发生上调
【单选题】
在周围神经系统中,属于胆碱能神经纤维的是___
A. 所有自主神经节前纤维
B. 所有副交感节后纤维
C. 所有舒血管神经纤维
D. 支配胰腺的所有交感节后纤维
E. 支配所有汗腺的交感节后纤维
【单选题】
在周围神经系统,毒蕈碱受体分布于___
A. 自主神经节
B. 骨骼肌终板膜
C. 多数副交感神经支配的效应器
D. 多数交感神经支配的效应器
E. 消化道壁内神经从所有的神经元
【单选题】
具有缓解胃肠痉挛作用的自主神经递质受体阻断剂是___
A. 阿替洛尔
B. 阿托品
C. 酚妥拉明
D. 育亨宾
E. 简箭毒碱
【单选题】
在骨骼肌标本浸液中加入筒箭毒碱后.刺激支配该肌的运动神经纤维,肌细胞终板电位的变化是___
A. 去极化加大
B. 维持原水平
C. 去极化减小
D. 爆发动作电位
E. 发生超极化
【单选题】
下列神经递质中,未见于周围神经系统中的是___
A. 多巴胺
B. 肾上腺素
C. 腺苷
D. ATP
E. 5-羟色胺
【单选题】
下列神经纤维中,属于肾上腺素能纤维的是___
A. 支配肾上腺髓质的神经
B. 骨骼肌交感舒血管神经
C. 交感缩血管神经
D. 骨骼肌运动神经
E. 支配多数小汗腺的神经
【单选题】
由α受体介导的生理效应是___
A. 瞳孔扩大
B. 心率加快
C. 支气管扩张
D. 糖酵解加强
E. 脂肪分解加强
【单选题】
去甲肾上腺素与α受体结合后引起舒张效应的平滑肌是___
A. 血管平滑肌
B. 子宫平滑肌
C. 虹膜辐射状肌
D. 胃肠括约肌
E. 小肠平滑肌
【单选题】
由β受体介导的生理效应是___
A. 骨骼肌血管收缩
B. 胃肠括约肌收缩
C. 膀胱逼尿肌收缩
D. 竖毛肌收缩
E. 糖酵解加强
【单选题】
去甲肾上腺素与β受体结合后引起收缩或收缩加强的肌组织是___
A. 心房肌
B. 子宫平滑肌
C. 小肠平滑肌
D. 血管平滑肌
E. 支气管平滑肌
【单选题】
下列各项中,属于条件反射的是___
A. 咀嚼、吞咽食物引起胃液分泌
B. 异物接触眼球引起眼睑闭合
C. 叩击股四头肌腱引起小腿前伸
D. 强光刺激视网膜引起瞳孔缩小
E. 闻到食物香味引起唾液分泌
【单选题】
完成一个反射所需时间的长短主要取决于___
A. 传入与传出纤维的传导速度
B. 刺激的强弱和性质
C. 经过中枢突触的多少
D. 感受器的敏感性
E. 效应器的敏感性
【单选题】
下列中枢神经元联联系方式中,能产生后发放效应的是___
A. 辐散式联系
B. 聚合式联系
C. 链锁式联系
D. 环式联系
E. 单线式联系
【单选题】
下列关于化学性突触传递特征的叙述,正确的是___
A. 双向传播
B. 不衰减传递
C. 兴奋节律不变
D. 对内环境变化敏感
E. 不易疲劳