题目详情
当前位置:首页 > 职业培训考试
题目详情:
发布时间:2023-12-21 05:54:42

[多项选择]An IPsec tunnel is established on an SRX Series Gateway on an interface whose IP address was obtained using DHCP.Which two statements are true? ()(Choose two.)
A. Only main mode can be used for IKE negotiation
B. A local-identity must be defined
C. It must be the initiator for IKE
D. A remote-identity must be defined

更多"An IPsec tunnel is established on a"的相关试题:

[多项选择] You administer a network containing SRX Series firewalls. New policy requires that you implement MAG Series devices to provide access control for end users. The policy requires that the SRX Series devices dynamically enforce security policy based on the source IP address of the user. The policy also requires that the users communicate with protected resources using encrypted traffic. Which two statements are true?()
A. The endpoints can use agentless access.
B. Encrypted traffic flows between the endpoint and the enforcer.
C. Encrypted traffic flows between the endpoint and the protected resource
D. The endpoints can use the Odyssey Access Client.
[多项选择]Which three actions can a branch SRX Series device perform on a spam e-mail message?() (Choose three.)
A. It can drop the connection at the IP address level
B. It can block the e-mail based upon the sender ID
C. It can allow the e-mail and bypass all UTM inspection
D. It can allow the e-mail to be forwarded, but change the intended recipient to a new e-mail address
E. It can allow the e-mail to be forwarded to the destination, but tag it with a custom value in the subject line
[单项选择]You have an SRX Series Layer 2 enforcer providing 802.1X authentication for connected endpoints. Your security policy requires that users who fail their authentication be placed in a specific VLAN.On the Layer 2 enforcer, at the [edit protocols dot1x authenticator interface] hierarchy for each participating interface, what provides this functionality?()
A. guest-vlan
B. auth-fail-vlan
C. server-reject-vlan
D. server-fail-vlan
[单项选择]When an SRX series device receives an ESP packet, what happens?()
A. If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, it will
B. If the destination IP address in the outer IP header of ESP does not match the IP address of the ingress interface, it will
C. If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, based packet.
D. If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, based of inner header, it will decrypt the packet.
[多项选择]IPSec通过IPSec框架提供()基本安全功能
A. 机密性
B. 完整性
C. 认证
D. 安全密钥交换
[多项选择]IPSec的优点有()
A. 数据机密性(Confidentiality)
B. 数据完整性(Data Integrity)
C. 抗DDoS(Distributed Deny of Service)
D. 身份验证(Data Authentication)
[多项选择]IPSec框架包括了()
A. IPSec协议
B. 加密算法
C. 完整性
D. 如何建立共享密钥
[单项选择]Which antivirus solution integrated on branch SRX Series devices do you use to ensure maximum virus coverage for network traffic?()
A. express AV
B. full AV
C. desktop AV
D. ICAP
[单项选择]IPsec认证头协议(IPsecAH)是IPsec体系结构中的一种主要协议,AH协议无法提供哪种安全属性。()
A. 保密性
B. 完整性
C. 数据源认证
D. 避免重发(playback)攻击
[单项选择]IPSec技术通过对数据加密、认证、完整性检查来保证数据传输的可靠性、私有性和保密性。IPSec技术是目前应用广泛的()技术之一。
A. VPN
B. NGN
C. NAT
D. PBX
[单项选择]IPSec不可以做到()。
A. 认证
B. 完整性检查
C. 加密
D. 签发证书
[单项选择]You are configuring captive portal on your SRX Series device for guest user access.When would you use the redirect-traffic all command?()
A. When you want all unauthenticated traffic to be redirected
B. When you want all clear text traffic to be redirected.
C. When you want all authenticated traffic to be redirected.
D. When you want all encrypted traffic to be redirected.
[单项选择]The SRX device receives a packet and determines that it does not match an existing session.After SCREEN options are evaluated, what is evaluated next?()
A. source NAT
B. destination NAT
C. route lookup
D. zone lookup
[单项选择]IPSec不能提供( )服务。
A. 流量保密
B. 数据源认证
C. 拒绝重放包
D. 文件加密
[单项选择]IPSec不能提供以下哪种服务
A. 流量保密
B. 数据源论证
C. 拒绝重放包
D. 文件加密
[单项选择]IPSec是()VPN协议标准。
A. 第一层
B. 第二层
C. 第三层
D. 第四层
[多项选择]Which two parameters are configured in IPsec policy? ()(Choose two.)
A. mode
B. IKE gateway
C. security proposal
D. Perfect Forward Secrecy
[多项选择]IPSec协议族包含()协议。
A. PKI
B. AH
C. ESP
D. PPP
[单项选择]Which IPsec security protocol should be used when confidentiality is required?()
A. AH
B. MB5
C. PSK
D. ESP

我来回答:

购买搜题卡查看答案
[会员特权] 开通VIP, 查看 全部题目答案
[会员特权] 享免全部广告特权
推荐91天
¥36.8
¥80元
31天
¥20.8
¥40元
365天
¥88.8
¥188元
请选择支付方式
  • 微信支付
  • 支付宝支付
点击支付即表示同意并接受了《购买须知》
立即支付 系统将自动为您注册账号
请使用微信扫码支付

订单号:

截图扫码使用小程序[完全免费查看答案]
请不要关闭本页面,支付完成后请点击【支付完成】按钮
恭喜您,购买搜题卡成功
重要提示:请拍照或截图保存账号密码!
我要搜题网官网:https://www.woyaosouti.com
我已记住账号密码