多項(xiàng)選擇題The RiskRating for an IPS signatureis calculatedusing four primary components. Select the four components below.   ()

A. SignatureFidelity Rating
B. Alert Severity Rating
C. Exploit Probability Rating
D. Target Value Rating
E. Attack Relevancy Rating


您可能感興趣的試卷

你可能感興趣的試題

1.多項(xiàng)選擇題An IPS sensor with3 sniffing interfaces can be configuredas:  ()

A. 3 promiscuous sensors
B. 3 inline sensors
C. 1 inline sensor, 1 promiscuous sensor
D. 2 inline sensors, 1 promiscuous sensors

2.多項(xiàng)選擇題Given the topology of a server (with IP 209.165.202.150) protected behind the inside interface of an ASA/PIX,and the Internet on the outside interface. Users on the Internet need to access the server at any time, but the firewall administrator does not want to NAT the address of the server - since itis currentlya public address. Which of the following commands can be used to accomplish this? ()

A. nat (inside) 0 209.165.202.150 255.255.255.255
B. access-list no-nat permit ip host209.165.202.150 anynat(inside) 0 access-list no-nat
C. static(inside,outside) 209.165.202.150 209.165.202.150 netmask 255.255.255.255
D. no nat-control
E. nat (inside) 1 209.165.202.150 255.255.255.255

4.單項(xiàng)選擇題Select thebest answer to this qestion. ASA/PIX Active/Active failover can be used toload-balance:()

A. All traffic passing through theappliance
B. Traffic from internal networks on a per IP basis
C. Based on protocol only.
D. On a per-context basis only.

5.單項(xiàng)選擇題The number of packets (or flows) dropped because they do not conform to the ASA/PIX security policy can be viewed using what command? ()

A. show asp drop
B. show counters drop
C. show security-policy
D. show policy-map

6.單項(xiàng)選擇題ASA/PIXversion 7.0 introduced ModularPolicyFramework (MPF) as anextensible wayto classify traffic,and then apply policies (or actions) to that traffic. MPF at aminimum requires which three commands?()

A. http-map, tcp-map, class-map
B. class-map, tcp-map, policy-map
C. class-map, policy-map, service-map
D. class-map, service-policy, policy-map

8.多項(xiàng)選擇題Which two are correct functions of the Cisco Anomaly Guard and Detector for preventing DDOS attacks? ()

A. uses Netflow data for anomaly detections
B. builds baseline profilesof normal operating conditions, enablingrapid identification of unusual activity that indicates an attack
C. accept events inputs from different network devicesvia syslog, SDEE and SNMP
D. dynamic diversion redirects and cleans only traffic destined for targeted devices, allowing unaffectedtraffic toflow freely and ensuring business continuity
E. pushes ACLs to network devices to only block the malicious traffic
F. using topology and configuration awareness, events from different devices are correlatedand attacks mitgitations are performed at the optimal location

9.單項(xiàng)選擇題Birthday attacks are used against which of the following?()

A. digital signatures
B. symmetric ciphering
C. hashalgoritms
D. asymmetric ciphering
E. digital certificates

10.單項(xiàng)選擇題Which of the following statements is correct regarding a hybridcrypto system?()

A. uses symmetric crypto for keys distribution
B. uses symmetric crypto for proof of origin
C. uses symmetric crypto for fast encrypted/decryption
D. uses asymmetric crypto for message confidentiality
E. uses symmetric crypto to transmit the asymmetric keys that is thenused to encrypt a session

最新試題

What technologies are included inAnti-X? ()

題型:多項(xiàng)選擇題

Which one of the following is NOT a supported IKE attribute?()

題型:?jiǎn)雾?xiàng)選擇題

Select the two correctstatements from the list below that describe DES and 3DES: ()

題型:多項(xiàng)選擇題

Since HTTP is one of the most common protocols used in the internet, what should be done at a firewall level to ensure thatthe protocol is being used correctly? ()

題型:?jiǎn)雾?xiàng)選擇題

Cisco Clean Access ensures that computers connecting to your network have which of the following?()

題型:?jiǎn)雾?xiàng)選擇題

CS-MARS works with which IOS feature to accomplish anomaly detection?()

題型:?jiǎn)雾?xiàng)選擇題

When implementing best practices for IP Source Address Spoofing and Defeating Denial of Service Attacks with IP SourceAddress Spoofing, what RFC is commonly usedto protect your network?()

題型:?jiǎn)雾?xiàng)選擇題

CSA protects your host by: ()

題型:?jiǎn)雾?xiàng)選擇題

When configuring a multipoint GRE (mGRE) tunnel interface, which one of the following is NOT a valid configuration option:()

題型:?jiǎn)雾?xiàng)選擇題

What Cisco technology protects against Spanning-Tree Protocol manipulation?()

題型:?jiǎn)雾?xiàng)選擇題