单项选择题To enable TCP Port Forwarding applications using IOS WebVPN, what needs tobe downloaded to the client?()

A. Cisco SecurityAgent (CSA)
B. CiscoTrustAgent (CTA)
C. Cisco Secure Desktop (CSD)
D. A small Java Applet
E. SSLVPN Client (SVC)
F. SSLVPN Client (SVC) and Cisco Secure Desktop (CSD)


您可能感兴趣的试卷

你可能感兴趣的试题

1.单项选择题Why is NTP an important component when implementing IPSec VPN in a PKI environment?()

A. To ensure the router has the correct time when generating its private/public key pairs.
B. To ensure the router has the correct time when checking certificate validity from the remote peers
C. To ensure the router time is sync with the remote peers for encryption keys generation
D. To ensure the router time is sync with the remote peers during theDH exchange
E. To ensure the router time is sync with the remote peers when generating the cookies during IKE phase 1

2.单项选择题Using FTP passive mode, after the client opens thecommand channel (port 21) to the FTP server and requests passive mode, what will be the next step? ()

A. The FTP server sends back an acknowledgment (ACK) to the client
B. The FTP server allocates a port touse for the data channel and transmit that port number to the client
C. The FTP server opens the data channel to the client using the port number indicated by the client
D. The FTP client opens the data channel to the FTP server on Port 20
E. The FTP client opens the datachannel to the FTP server on Port 21

3.多项选择题Which of the following statements are true? ()

A. RC4 is a stream cipher
B. Stream ciphers require padding
C. AES is a block cipher
D. DES and 3DES are stream ciphers
E. AES is a stream cipher
F. AES, DES, and 3DES can be used as HMAC algorithms

4.多项选择题Which of the following statements are true regardinghashing? ()

A. MD5 produces a 160-bit result.
B. SHA-256 is an extension to SHA-1 with a longer output.
C. MD5 takes more CPU cycles to compute than SHA-1.
D. Changing1 bit of the input to SHA-1 changes 1 bit of the output.
E. SHA-1 is stronger than MD5 because it can be used with a key to prevent modification.

5.多项选择题Which two steps does a receiver perform to validate a message using HMAC? ()  

A. decrypts the received MAC using a secret key
B. compares the computed MAC vs. the MAC received
C. authenticate the receivedmessage using the sender’s public key
D. look up the sender’s public key
E. extracts the MAC from the receivedmessage thenencrypts the received message with a secret keyto producethe MAC
F. Computes the MAC using the receivedmessage and a secret key as inputs to the hash function

6.单项选择题Which of the following best describes a hash function?()

A.An irreversible fast encryption method
B.A reversible fast encryption method
C.A reversible value computed from a piece of data and used to detect modifications
D.An irreversible value computed froma piece of data and used to detect modifications
E.A table inwhich values are stored for efficient retrieval.

7.单项选择题What does qos pre-classify provides inregardto implementing QoS over GRE/IPSec VPN tunnels?()

A. enables IOS to copy the ToS field from the inner (original) IPheader to theouter tunnel IP header
B. enables IOS to make a copy of the inner (original) IP header and to run a QoS classification before encryption, based on fields in the inner IP header.
C. enables IOS to classify packets based on the ToS field in the inner (original) IP header
D. enables IOS to classify packets based on the ToS field in the outer tunnel IP header
E. enables the IOS classification engine to only see a single encrypted and tunneledflow to reduce classification complexity

8.多项选择题Asymmetric and symmetric ciphers differ in which of the following way(s)? () 

A.Asymmetric ciphers use pre-shared keys
B.Symmetric ciphers are faster to compute
C.Asymmetric ciphers are faster to compute
D.Asymmetric ciphers use public and private

9.单项选择题Which of the following is the most effective technique to prevent source IPAddress spoofing?()

A. policy based routing (PBR)
B. unicast reverse path forwarding (uRPF)
C. lock and keyACL
D. RFC 1918filtering
E. IP source routing

10.单项选择题Which type of attacks can be monitored and mitigated by CS-MARS using NetFlow data?()

A. Man-in-themiddle attack
B. Spoof attack
C. Land.C attack
D. Buffer Overflow
E. Day zero attack
F. Trojan Horse

最新试题

When configuring a multipoint GRE (mGRE) tunnel interface, which one of the following is NOT a valid configuration option:()

题型:单项选择题

What group in Cisco IOS does 1536-bit Diffie-Hellman prime modulus equivalent too?()

题型:单项选择题

Since HTTP is one of the most common protocols used in the internet, what should be done at a firewall level to ensure thatthe protocol is being used correctly? ()

题型:单项选择题

Which is a benefit of implementing RFC 2827?()

题型:单项选择题

What Cisco technology protects against Spanning-Tree Protocol manipulation?()

题型:单项选择题

With PGP, which of the following entity signs a users’s public key?()

题型:单项选择题

When implementing best practices for IP Source Address Spoofing and Defeating Denial of Service Attacks with IP SourceAddress Spoofing, what RFC is commonly usedto protect your network?()

题型:单项选择题

When implementing internet standards you are required to follow RFC’s processes and procedures based onwhat RFC?()

题型:单项选择题

Which two statements are correct about the aaa authentication login default grouptacacs+ localglobal configuration command? ()

题型:多项选择题

What are the header sizes for point-to-point and multi-point GRE(also known asmGRE) with tunnel key?()

题型:单项选择题