单项选择题In an L2TP voluntary tunneling scenario, the VPDN tunnel is terminated between:()

A. The client and the NAS.
B. The NAS andthe LNS.
C. The NAS and the LAC.
D. The client and the LNS.


您可能感兴趣的试卷

你可能感兴趣的试题

1.单项选择题Which one of the following is NOT a supported IKE attribute?()

A. PFS group.
B. Encryption algorithm.
C. Hashing Algorithm.
D. Authenticationmethod.
E. Lifetime duration.

2.单项选择题With PGP, which of the following entity signs a users’s public key?()

A. The sender of the message.
B. The receipient of the message.
C. The sender’s administrator who provides the sender with the PGP program.
D. A third party that belongs to what’s often known as "web of trust", that can verify the relationship between the user and the key.
E. The vendor of the PGP program.

3.单项选择题When configuring a multipoint GRE (mGRE) tunnel interface, which one of the following is NOT a valid configuration option:()

A. tunnel source
B. tunnel destination
C. tunnel key
D. ip address
E. tunnelvrf

4.多项选择题Which of the following statements that describe Diffie Hellman Key exchange are correct? ()

A. A DH key exchange is an algorithm that utilizes asymmetric cryptographic keys.
B. The DH key exchange is used to establish a shared secret over an insecure medium during an IPSec phase 1 exchange.
C. The DH exchange is susceptible to man-in-the-middle attacks.
D. The DH exchange is used to authenticate the peer device duringan IPSec phase 1 exchange.
E.A DH exchange provides Perfect Forward Secrecy (PFS).

5.多项选择题Select the two correctstatements from the list below that describe DES and 3DES: ()

A. 3DES is muchmore secure than DES.
B. Both DES and 3DES are stream ciphers.
C. DES uses 64 bitkeys, although the effective key lengthis only 56bits.
D. The decryption operation for both DES and 3DES is the same as the encryption operation.
E. DES can only be used for encryption, whereas 3DES can also be used for authentication.

6.多项选择题Which of the following is true about RADIUSV end or Specific Attribute? ()

A. The RADIUSVendor Specific Attribute type is decimal 26.
B. A radius server that does not understandthevendor-specific information sent by a clientmust reject the authentication request.
C. A vendor can freely choose theVendor-ID it wants to use when implementing Vendor Specific Attributes as long as the same Vendor-ID is used on all of its products.
D. Vendor Specific AttributeMUST include the Length field.
E. In Cisco’s Vendor Specific Attribute implementation, vendor-ID of 1 is commonly referred to as Cisco AV(Attribute Value) pairs.
F. Vendor Specific Attributes use a RADIUS attribute type between 127 and 255.

7.单项选择题Which one of the following is NOT a valid RADIUS packet type?()

A. Access-reject
B. Access-response
C. Access-challenge
D. Access-reply
E. Access-accept

8.单项选择题Which is a benefit of implementing RFC 2827?()

A.Prevents DoS from legimate, non-hostile end systems
B.Prevents disruption of "special services", such as Mobile IP
C.Defeats DoS Attacks which employ IPSource Address Spoofing
D.Restricts directed broadcasts at the ingress router
E.Allows DHCP or BOOTP packets to reach the relay agents asappropriate

9.单项选择题When configuring a Cisco Adaptive Security Appliance in multiple context mode, which of the follow capabilities are supported?()

A. Multicastis supported
B. Dynamic routing protocols are supported
C. VPN configurations are supported
D. Static routes are supported

10.单项选择题When configuring system state conditions with the Cisco SecurityAgent, what is the resulting action when configuring more than one system state condition? ()

A.Any matching state condition will result with the state being triggered
B. Once a state condition ismet, the system ceases searching further conditions and will cause the state condition to trigger
C. All specified state conditions are used as part of the requirements tobe met to for the state to trigger
D. Once the state conditions are met, they become persistent and can only be removed using the Reset feature

最新试题

Which of these is the best way to provide sender non-repudiation?()

题型:单项选择题

In an L2TP voluntary tunneling scenario, the VPDN tunnel is terminated between:()

题型:单项选择题

Cisco Clean Access ensures that computers connecting to your network have which of the following?()

题型:单项选择题

When configuring a multipoint GRE (mGRE) tunnel interface, which one of the following is NOT a valid configuration option:()

题型:单项选择题

With PGP, which of the following entity signs a users’s public key?()

题型:单项选择题

CSA protects your host by: ()

题型:单项选择题

Since HTTP is one of the most common protocols used in the internet, what should be done at a firewall level to ensure thatthe protocol is being used correctly? ()

题型:单项选择题

When implementing internet standards you are required to follow RFC’s processes and procedures based onwhat RFC?()

题型:单项选择题

Which access methods can CS-MARS use toget configuration information from an Adaptive SecurityAppliance (ASA)? ()

题型:多项选择题

What Cisco Switch feature best protects against CAM table overflow attacks?()

题型:单项选择题