单选题EAP-FAST provides a secure tunnel during Phase One to protect the user’s authentication credentials. Which of these entities initializes the secure tunnel?()A x.509 certificateB generic token cardC preshared keyD Protected Access Credential

题目
单选题
EAP-FAST provides a secure tunnel during Phase One to protect the user’s authentication credentials. Which of these entities initializes the secure tunnel?()
A

x.509 certificate

B

generic token card

C

preshared key

D

Protected Access Credential


相似考题
更多“EAP-FAST provides a secure tunnel during Phase One to protec”相关问题
  • 第1题:

    Many of the activities performed during the preliminary investigation are still being conducted in ( ), but in much greater depth than before.

    A.analysis phase
    B.design phase
    C.implementation phase
    D.maintenance phase

    答案:A
    解析:
    翻译:在初步调研时完成的许多活动在分析阶段还要继续进行,只是比以前更深入地去做。
    A.分析阶段 B.设计阶段 C.实施阶段 D.维护阶段

  • 第2题:

    When configuring a multipoint GRE (mGRE) tunnel interface, which one of the following is NOT a valid configuration option:()

    • A、 tunnel source
    • B、 tunnel destination
    • C、 tunnel key
    • D、 ip address
    • E、 tunnelvrf

    正确答案:B

  • 第3题:

    Which of the following statements that describe Diffie Hellman Key exchange are correct? ()

    • A、 A DH key exchange is an algorithm that utilizes asymmetric cryptographic keys.
    • B、 The DH key exchange is used to establish a shared secret over an insecure medium during an IPSec phase 1 exchange.
    • C、 The DH exchange is susceptible to man-in-the-middle attacks.
    • D、 The DH exchange is used to authenticate the peer device duringan IPSec phase 1 exchange.
    • E、A DH exchange provides Perfect Forward Secrecy (PFS).

    正确答案:A,B,C,E

  • 第4题:

    To implement the optional phase zero when using EAP-FAST for authentication, which of the following parameters must be set on the Cisco Secure ACS?()

    • A、EAP-FAST master server
    • B、Allow automatic PAC provisioning
    • C、client initial message
    • D、authority ID info

    正确答案:B

  • 第5题:

    EAP-FAST provides a secure tunnel during Phase One to protect the user’s authentication credentials. Which of these entities initializes the secure tunnel?()

    • A、x.509 certificate
    • B、generic token card
    • C、preshared key
    • D、Protected Access Credential

    正确答案:D

  • 第6题:

    Which two items best describe a Cisco IOS IP SLA responder?()

    • A、required at the destination to implement Cisco IOS IP SLA services
    • B、improves measurement accuracy
    • C、required for VoIP jitter measurements
    • D、provides security on Cisco IOS IP SLA messages via LEAP or EAP-FAST authentication
    • E、responds to one Cisco IOS IP SLA operation per port
    • F、stores the resulting test statistics

    正确答案:B,C

  • 第7题:

    You want to dynamically assign users to an 802.1Q VLAN as a result of their authentication.  Inorder to accomplish this, which two IETF RADIUS attributes should you configure on the Cisco Secure ACS?()

    • A、083 Tunnel-Preference
    • B、066 Tunnel-Client-Endpoint
    • C、064 Tunnel-Type
    • D、082 Tunnel-Assignment-ID
    • E、081 Tunnel-Private-Group-ID
    • F、067 Tunnel-Server-Endpoint

    正确答案:C,E

  • 第8题:

    During which phase of the boot process is the rootvg volume group varied on and the root file system (hd4) checked?()  

    • A、Boot phase 1
    • B、Boot phase 2
    • C、Boot phase 3
    • D、Boot phase 4

    正确答案:B

  • 第9题:

    单选题
    Which protocol does the RADIUS server use inside the secure tunnel of EAP-FAST to authenticate the client when one-time passwords are in use?()
    A

    MS-CHAP v2

    B

    PAP

    C

    GTC

    D

    MD5


    正确答案: C
    解析: 暂无解析

  • 第10题:

    单选题
    During the Easy VPN Remote connection process,which phase involves pushing the IP address, Domain Name System (DNS),and split tunnel attributes to the client?()
    A

    mode configuration

    B

    the VPN client establishment of an ISAKMP SA

    C

    IPsec quick mode completion of the connection

    D

    VPN client initiation of the IKE phase 1 process


    正确答案: D
    解析: 暂无解析

  • 第11题:

    单选题
    When configuring a multipoint GRE (mGRE) tunnel interface, which one of the following is NOT a valid configuration option:()
    A

     tunnel source

    B

     tunnel destination

    C

     tunnel key

    D

     ip address

    E

     tunnelvrf


    正确答案: D
    解析: 暂无解析

  • 第12题:

    单选题
    For IKE phase 1 negotiations, when is aggressive mode typically used?()
    A

    when one of the tunnel peers has a dynamic IP address

    B

    when one of the tunnel peers wants to force main mode to be used

    C

    when fragmentation of the IKE packet is required between the two peers

    D

    when one of the tunnel peers wants to specify a different phase 1 proposal


    正确答案: D
    解析: 暂无解析

  • 第13题:

    During the Easy VPN Remote connection process,which phase involves pushing the IP address, Domain Name System (DNS),and split tunnel attributes to the client?()

    • A、mode configuration
    • B、the VPN client establishment of an ISAKMP SA
    • C、IPsec quick mode completion of the connection
    • D、VPN client initiation of the IKE phase 1 process

    正确答案:A

  • 第14题:

    Cisco provides two enhancements to 802.11 security which protect a WEP key from exploits. Which two technologies provide these security enhancements? ()

    • A、802.1X
    • B、Cisco Temporal Key Integrity Protocol (CKIP)
    • C、Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST)
    • D、Cisco Message Integrity Check (CMIC)
    • E、One-Time Passwords (OTP)
    • F、Advanced Encryption Standard (AES)

    正确答案:B,D

  • 第15题:

    Which two configuration elements are required for a policy-based VPN?()

    • A、IKE gateway
    • B、secure tunnel interface
    • C、security policy to permit the IKE traffic
    • D、security policy referencing the IPsec VPN tunnel

    正确答案:A,D

  • 第16题:

    Eap-fast provides a secure tunnel during phase one to protect the user’s authentication credentials. Which of these entities initializes the secure tunnel?()

    • A、x.509 certificate
    • B、generic token card
    • C、pre shared key
    • D、protected access credential

    正确答案:D

  • 第17题:

    For the following items ,which one can be used to authenticate the IPsec peers during IKE Phase 1?()

    • A、pre-shared key
    • B、integrity check value
    • C、XAUTH
    • D、Diffie-Hellman Nonce

    正确答案:A

  • 第18题:

    Which protocol does the RADIUS server use inside the secure tunnel of EAP-FAST to authenticatethe client when one-time passwords are in use?()

    • A、MS-CHAP v2
    • B、PAP
    • C、GTC
    • D、MD5

    正确答案:C

  • 第19题:

    Which protocol does the radius server use inside the secure tunnel of eap-fast to authenticate the client when one-time passwords are in use?()

    • A、gtc
    • B、md5
    • C、ms-chap v2
    • D、pap

    正确答案:A

  • 第20题:

    During which boot phase is the rootvg first activated()

    • A、Phase 1
    • B、Phase 2
    • C、Phase 3
    • D、POST Phase

    正确答案:B

  • 第21题:

    单选题
    EAP-FAST provides a secure tunnel during Phase One to protect the user’s authenticationcredentials. Which of these entities initializes the secure tunnel?()
    A

    x.509 certificate

    B

    generic token card

    C

    preshared key

    D

    Protected Access Credential


    正确答案: C
    解析: 暂无解析

  • 第22题:

    多选题
    Which two statements are true about L2TP tunnel switching?()
    A

    Requires only one tunnel switching license.

    B

    Requires two licenses,one for inbound and one for outbound sessions.

    C

    Enabled automatically when the BSR is configured as an LAC and LNS.

    D

    Aids in L2TP tunnel scaling


    正确答案: A,C
    解析: 暂无解析

  • 第23题:

    单选题
    To implement the optional phase zero when using eap-fast for authentication, which of the following parameters must be set on the cisco secure acs?()
    A

    eap-fast master server

    B

    allow automatic pac provisioning

    C

    client initial message

    D

    authority id info


    正确答案: C
    解析: 暂无解析

  • 第24题:

    多选题
    Cisco provides two enhancements to 802.11 security which protect a WEP key from exploits. Which two technologies provide these security enhancements? ()
    A

    802.1X

    B

    Cisco Temporal Key Integrity Protocol (CKIP)

    C

    Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST)

    D

    Cisco Message Integrity Check (CMIC)

    E

    One-Time Passwords (OTP)

    F

    Advanced Encryption Standard (AES)


    正确答案: D,C
    解析: 暂无解析