多项选择题Which two statements are correct about the aaa authentication login default grouptacacs+ localglobal configuration command? ()

A. this login authenticationmethod list is automaticallyapplied to all lines except those that have a named method list explicitly defined
B. If the user fails the TACACS+ authentication then the local database on the router will be used to authenticatethe user
C. if the tacacs+ server fails to respond then the local database on the router will be used to authenticate the user 
D. "login" is the name of the method list being configured
E. if the tacacs+ server is unavailable, authentication will succeed automaticallyby default


您可能感兴趣的试卷

你可能感兴趣的试题

1.单项选择题Which Cisco security software product mitigates Day Zero attacks on desktops and servers - stopping known and unknown attacks without requiring reconfigurations or updates on the endpoints?()

A. Cisco Secure Desktop (CSD)
B. NAC Appliance Agent (NAA)
C. Cisco SecurityAgent (CSA)
D. SSLVPN Client (SVC)
E. Cisco TrustAgent (CTA)

2.多项选择题TACACS+ authentication uses whichthree packet types? ()

A. ACCESS REQUEST
B. ACCESS ACCEPT
C. CONTINUE
D. CHALLENGE
E. REPLY
F. START

3.单项选择题Which should be the key driver for a company security policy’s creation, implementation and enforcement?()

A. the business knowledge of the IT staff
B. the technical knowledge of the IT staff
C. the company’s business objectives
D. the company’s network topology
E. the IT future directions

4.单项选择题Which IOS QoS mechanism is used strictly to rate limit traffic destinedto the router itself?()

A. Class-Based Policing
B. Control Plane Policing
C. Dual-Rate Policier
D. Single-Rate Policier
E. Class-BasedTraffic Shaper

5.单项选择题In an L2TP voluntary tunneling scenario, the VPDN tunnel is terminated between:()

A. The client and the NAS.
B. The NAS andthe LNS.
C. The NAS and the LAC.
D. The client and the LNS.

6.单项选择题Which one of the following is NOT a supported IKE attribute?()

A. PFS group.
B. Encryption algorithm.
C. Hashing Algorithm.
D. Authenticationmethod.
E. Lifetime duration.

7.单项选择题With PGP, which of the following entity signs a users’s public key?()

A. The sender of the message.
B. The receipient of the message.
C. The sender’s administrator who provides the sender with the PGP program.
D. A third party that belongs to what’s often known as "web of trust", that can verify the relationship between the user and the key.
E. The vendor of the PGP program.

8.单项选择题When configuring a multipoint GRE (mGRE) tunnel interface, which one of the following is NOT a valid configuration option:()

A. tunnel source
B. tunnel destination
C. tunnel key
D. ip address
E. tunnelvrf

9.多项选择题Which of the following statements that describe Diffie Hellman Key exchange are correct? ()

A. A DH key exchange is an algorithm that utilizes asymmetric cryptographic keys.
B. The DH key exchange is used to establish a shared secret over an insecure medium during an IPSec phase 1 exchange.
C. The DH exchange is susceptible to man-in-the-middle attacks.
D. The DH exchange is used to authenticate the peer device duringan IPSec phase 1 exchange.
E.A DH exchange provides Perfect Forward Secrecy (PFS).

10.多项选择题Select the two correctstatements from the list below that describe DES and 3DES: ()

A. 3DES is muchmore secure than DES.
B. Both DES and 3DES are stream ciphers.
C. DES uses 64 bitkeys, although the effective key lengthis only 56bits.
D. The decryption operation for both DES and 3DES is the same as the encryption operation.
E. DES can only be used for encryption, whereas 3DES can also be used for authentication.