A.to the zone-pair
B.to the zone
C.to the interface
D.to the global service policy
您可能感兴趣的试卷
你可能感兴趣的试题
A.when using the established keyword,a location close to the destination point to ensure that return trafficis allowed
B.an intermediate location to filter as much traffic as possible ActualTests.com
C.a location as close to the source traffic as possible
D.a location as close to the destination traffic as possible
A.MIB
B.FIB
C.LDAP
D.CEF
A.Configuration interceptor
B.Network interceptor
C.File system interceptor
D.Execution space interceptor
A.Routinely apply patches to operating systems and applications
B.Disable unneeded services and ports on hosts
C.Deploy HIPS software on all end-user workstations
D.Require strong passwords and enable password expiration
A.Cisco IOS router
B.Cisco PIX 500 series security appliance
C.Cisco 4200 series IPS appliance
D.Cisco ASA 5500 series security appliance
A.Two secret keys
B.Two nonsecret keys
C.Two secret numbers
D.Two nonsecret numbers
Based on the username global configuration mode command displayed in the exhibit. What does the optionsecret 5 indicate about the enable secret password?()
A.It is hashed using MD5
B.It is encrypted using a proprietary Cisco encryption algorithm
C.It is hashed using SHA
D.It is encrypted using DH group 5
A.reflexive ACL
B.dynamic ACL
C.queuing
D.netflow
E.state
A.The enable password is present for backward compatibility.
B.Because the enable secret password is a hash, it cannot be decrypted. Therefore, the enable password is used to match the password that was entered, and the enable secret is used to verify that the enablepassword has not been modified since the hash was generated.
C.The enable password is considered to be a router’s public key, whereas the enable secret password is considered to be a router’s private key.
D.The enable password is used for IKE Phase I, whereas the enable secret password is used for IKE Phase II.
Which statement best describes the relationships between AAA function and TACACS+, RADIUS based onthe exhibit shown?()
A.TACACS+ - P4S1 and P4S4RADIUS - P4S2 and P4S3
B.TACACS+ - P4S2 and P4S4RADIUS - P4S1 and P4S3
C.TACACS+ - P4S1 and P4S3Actual RADIUS - P4S2 and P4S4
D.TACACS+ - P4S2 and P4S3RADIUS - P4S1 and P4S4
最新试题
Which VoIP components can permit or deny a call attempt on the basis of a network’s available bandwidth?()
Which type of intrusion prevention technology will be primarily used by the Cisco IPS security appliances?()
Which type of MAC address is dynamically learned by a switch port and then added to the switch’s runningconfiguration?()
Which one of the Cisco IOS commands can be used to verify that either the Cisco IOS image, theconfiguration files,or both have been properly backed up and secured?()
When using the Cisco SDM Quick Setup Siteto-Site VPN wizard, which three parameters do you configure?()
Refer to the exhibit. Which statement is correct based on the show login command output shown?()
Which option ensures that data is not modified in transit?()
Regarding constructing a good encryption algorithm, what does creating an avalanche effect indicate?()
Please choose the correct description about Cisco Self-Defending Network characteristics.()
Refer to the exhibit. You are the network security administrator responsible for router security.Your networkuses internal IP addressing according to RFC 1918 specifications.From the default rules shown,whichaccess control list would prevent IP address spoofing of these internal networks?()