x.509 certificate
generic token card
preshared key
Protected Access Credential
第1题:
第2题:
When configuring a multipoint GRE (mGRE) tunnel interface, which one of the following is NOT a valid configuration option:()
第3题:
Which of the following statements that describe Diffie Hellman Key exchange are correct? ()
第4题:
To implement the optional phase zero when using EAP-FAST for authentication, which of the following parameters must be set on the Cisco Secure ACS?()
第5题:
EAP-FAST provides a secure tunnel during Phase One to protect the user’s authentication credentials. Which of these entities initializes the secure tunnel?()
第6题:
Which two items best describe a Cisco IOS IP SLA responder?()
第7题:
You want to dynamically assign users to an 802.1Q VLAN as a result of their authentication. Inorder to accomplish this, which two IETF RADIUS attributes should you configure on the Cisco Secure ACS?()
第8题:
During which phase of the boot process is the rootvg volume group varied on and the root file system (hd4) checked?()
第9题:
MS-CHAP v2
PAP
GTC
MD5
第10题:
mode configuration
the VPN client establishment of an ISAKMP SA
IPsec quick mode completion of the connection
VPN client initiation of the IKE phase 1 process
第11题:
tunnel source
tunnel destination
tunnel key
ip address
tunnelvrf
第12题:
when one of the tunnel peers has a dynamic IP address
when one of the tunnel peers wants to force main mode to be used
when fragmentation of the IKE packet is required between the two peers
when one of the tunnel peers wants to specify a different phase 1 proposal
第13题:
During the Easy VPN Remote connection process,which phase involves pushing the IP address, Domain Name System (DNS),and split tunnel attributes to the client?()
第14题:
Cisco provides two enhancements to 802.11 security which protect a WEP key from exploits. Which two technologies provide these security enhancements? ()
第15题:
Which two configuration elements are required for a policy-based VPN?()
第16题:
Eap-fast provides a secure tunnel during phase one to protect the user’s authentication credentials. Which of these entities initializes the secure tunnel?()
第17题:
For the following items ,which one can be used to authenticate the IPsec peers during IKE Phase 1?()
第18题:
Which protocol does the RADIUS server use inside the secure tunnel of EAP-FAST to authenticatethe client when one-time passwords are in use?()
第19题:
Which protocol does the radius server use inside the secure tunnel of eap-fast to authenticate the client when one-time passwords are in use?()
第20题:
During which boot phase is the rootvg first activated()
第21题:
x.509 certificate
generic token card
preshared key
Protected Access Credential
第22题:
Requires only one tunnel switching license.
Requires two licenses,one for inbound and one for outbound sessions.
Enabled automatically when the BSR is configured as an LAC and LNS.
Aids in L2TP tunnel scaling
第23题:
eap-fast master server
allow automatic pac provisioning
client initial message
authority id info
第24题:
802.1X
Cisco Temporal Key Integrity Protocol (CKIP)
Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST)
Cisco Message Integrity Check (CMIC)
One-Time Passwords (OTP)
Advanced Encryption Standard (AES)