单选题During the Easy VPN Remote connection process,which phase involves pushing the IP address, Domain Name System (DNS),and split tunnel attributes to the client?()A mode configurationB the VPN client establishment of an ISAKMP SAC IPsec quick mode complet

题目
单选题
During the Easy VPN Remote connection process,which phase involves pushing the IP address, Domain Name System (DNS),and split tunnel attributes to the client?()
A

mode configuration

B

the VPN client establishment of an ISAKMP SA

C

IPsec quick mode completion of the connection

D

VPN client initiation of the IKE phase 1 process


相似考题
参考答案和解析
正确答案: C
解析: 暂无解析
更多“单选题During the Easy VPN Remote connection process,which phase involves pushing the IP address, Domain Name System (DNS),and split tunnel attributes to the client?()A mode configurationB the VPN client establishment of an ISAKMP SAC IPsec quick mode complet”相关问题
  • 第1题:

    Which three statements about the Cisco Easy VPN feature are true?()

    • A、If the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.
    • B、The Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.
    • C、The VPN client initiates aggressive mode (AM) if a pre-shared key is used for authentication during the IKE phase 1 process.
    • D、The VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.
    • E、The VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series concentrators.
    • F、When connecting with a VPN client,the VPN server must be configured for ISAKMP group 1,2 or 5.

    正确答案:A,B,C

  • 第2题:

    During the Easy VPN Remote connection process,which phase involves pushing the IP address, Domain Name System (DNS),and split tunnel attributes to the client?()

    • A、mode configuration
    • B、the VPN client establishment of an ISAKMP SA
    • C、IPsec quick mode completion of the connection
    • D、VPN client initiation of the IKE phase 1 process

    正确答案:A

  • 第3题:

    Which command is needed to change this policy to a tunnel policy for a policy-based VPN?() [edit security policies from-zone trust to-zone untrust] user@host# show policy tunnel-traffic { match { source-address local-net; destination-address remote-net; application any; then { permit; } }

    • A、set policy tunnel-traffic then tunnel remote-vpn
    • B、set policy tunnel-traffic then permit tunnel remote-vpn
    • C、set policy tunnel-traffic then tunnel ipsec-vpn remote-vpn permit
    • D、set policy tunnel-traffic then permit tunnel ipsec-vpn remote-vpn

    正确答案:D

  • 第4题:

    An Enterprise customer wants to reduce the configuration effort for their Teleworker router deployments. What is one way to simplify the IPSec-related configuration in the remote routers?()

    • A、CiscoWorks VPN Manager 
    • B、deploy Linksys routers with menu-driven configuration
    • C、Easy VPN client mode 
    • D、disable 802.1x and Auth Proxy on the Teleworker router

    正确答案:C

  • 第5题:

    Which of the following protocols would MOST likely be used in the establishment of an IPSec VPN tunnel?()

    • A、AES
    • B、TKIP
    • C、802.1q
    • D、ISAKMP

    正确答案:A

  • 第6题:

    Which three security concerns can be addressed by a tunnel mode IPsec VPN secured by ESP?()

    • A、data integrity
    • B、data confidentiality
    • C、data authentication
    • D、outer IP header confidentiality
    • E、outer IP header authentication

    正确答案:A,B,C

  • 第7题:

    单选题
    You want to configure your Windows 2000 Professional computer to remotely access your company’s Windows 2000 routing and remote access server. You configure a VPN connection. For security purposes, you configure the VPN connection to use MS-CHAP v2 only and to require encryption. You also configure TCP/IP to obtain an IP address automatically, to enable IPSec, and to set IPSec to secure server. When you try to connect, you receive the following error message, “The encryption attempt failed because no valid certificate was found.” What should you do to connect to the server? ()
    A

    Enable the VPN connection to use MS-CHAP.

    B

    Change the data encryption setting to Optional Encryption.

    C

    Specify a TCP/IP address in the network properties.

    D

    Change the IPSec policy setting to Client.


    正确答案: D
    解析: 暂无解析

  • 第8题:

    多选题
    Which three security concerns can be addressed by a tunnel mode IPsec VPN secured by AH?() (Choose three.)
    A

    data integrity

    B

    data confidentiality

    C

    data authentication

    D

    outer IP header confidentiality

    E

    outer IP header authentication


    正确答案: A,B
    解析: 暂无解析

  • 第9题:

    多选题
    Which three security concerns can be addressed by a tunnel mode IPsec VPN secured by AH?()
    A

    data integrity

    B

    data confidentiality

    C

    data authentication

    D

    outer IP header confidentiality

    E

    outer IP header authentication


    正确答案: C,E
    解析: 暂无解析

  • 第10题:

    单选题
    What will an Easy VPN hardware client require in order to insert its protected network address when it connects using network extension mode?()
    A

     RADIUS or LDAP

    B

     an internal router running EIGRP

    C

     Reverse Route Injection and OSPF or RIPv2

    D

     the VPN appliance to be deployed in line with the firewall


    正确答案: A
    解析: 暂无解析

  • 第11题:

    单选题
    What will an Easy VPN hardware client require in order to insert its protected network address when it connects using network extension mode?()
    A

    RADIUS or LDAP

    B

    an internal router running EIGRP

    C

    Reverse Route Injection and OSPF or RIPv2

    D

    the VPN appliance to be deployed in line with the firewall


    正确答案: D
    解析: 暂无解析

  • 第12题:

    单选题
    Which statement describes Reverse Route Injection (RRI)?()
    A

    A static route that points towards the Cisco Easy VPN server is created on the remote client.

    B

    A static route is created on the Cisco Easy VPN server for the internal IP address of each VPN client.

    C

    A default route is injected into the route table of the remote client.

    D

    A default route is injected into the route table of the Cisco Easy VPN server.


    正确答案: A
    解析: 暂无解析

  • 第13题:

    What will an Easy VPN hardware client require in order to insert its protected network address when it connects using network extension mode?()

    • A、 RADIUS or LDAP
    • B、 an internal router running EIGRP
    • C、 Reverse Route Injection and OSPF or RIPv2
    • D、 the VPN appliance to be deployed in line with the firewall

    正确答案:C

  • 第14题:

    When using the Cisco SDM Quick Setup Siteto-Site VPN wizard, which three parameters do you configure?()

    • A、Source interface where encrypted traffic originates
    • B、IP address for the remote peer
    • C、Transform set for the IPsec tunnel
    • D、Interface for the VPN connection

    正确答案:A,B,D

  • 第15题:

    Which statement describes Reverse Route Injection (RRI)?()

    • A、A static route that points towards the Cisco Easy VPN server is created on the remote client.
    • B、A static route is created on the Cisco Easy VPN server for the internal IP address of each VPN client.
    • C、A default route is injected into the route table of the remote client.
    • D、A default route is injected into the route table of the Cisco Easy VPN server.

    正确答案:B

  • 第16题:

    Which of the following protocols would MOST likely be used in the establishment of an IPSec VPN tunnel?()

    • A、 AES 
    • B、 TKIP
    • C、 802.1q
    • D、 ISAKMP

    正确答案:D

  • 第17题:

    Which three security concerns can be addressed by a tunnel mode IPsec VPN secured by AH?() (Choose three.)

    • A、data integrity
    • B、data confidentiality
    • C、data authentication
    • D、outer IP header confidentiality
    • E、outer IP header authentication

    正确答案:A,C,E

  • 第18题:

    You want to configure your Windows 2000 Professional computer to remotely access your company’s Windows 2000 routing and remote access server. You configure a VPN connection. For security purposes, you configure the VPN connection to use MS-CHAP v2 only and to require encryption. You also configure TCP/IP to obtain an IP address automatically, to enable IPSec, and to set IPSec to secure server. When you try to connect, you receive the following error message, “The encryption attempt failed because no valid certificate was found.” What should you do to connect to the server? ()

    • A、Enable the VPN connection to use MS-CHAP.
    • B、Change the data encryption setting to Optional Encryption.
    • C、Specify a TCP/IP address in the network properties.
    • D、Change the IPSec policy setting to Client.

    正确答案:D

  • 第19题:

    多选题
    When using the Cisco SDM Quick Setup Siteto-Site VPN wizard, which three parameters do you configure?()
    A

    Source interface where encrypted traffic originates

    B

    IP address for the remote peer

    C

    Transform set for the IPsec tunnel

    D

    Interface for the VPN connection


    正确答案: D,C
    解析: 暂无解析

  • 第20题:

    单选题
    Which command is needed to change this policy to a tunnel policy for a policy-based VPN?() [edit security policies from-zone trust to-zone untrust] user@host# show policy tunnel-traffic { match { source-address local-net; destination-address remote-net; application any; then { permit; } }
    A

    set policy tunnel-traffic then tunnel remote-vpn

    B

    set policy tunnel-traffic then permit tunnel remote-vpn

    C

    set policy tunnel-traffic then tunnel ipsec-vpn remote-vpn permit

    D

    set policy tunnel-traffic then permit tunnel ipsec-vpn remote-vpn


    正确答案: A
    解析: 暂无解析

  • 第21题:

    单选题
    Which of the following protocols would MOST likely be used in the establishment of an IPSec VPN tunnel?()
    A

     AES 

    B

     TKIP

    C

     802.1q

    D

     ISAKMP


    正确答案: A
    解析: 暂无解析

  • 第22题:

    单选题
    What is the benefit of using the Cisco Easy VPN Server feature along with the Cisco software VPN client for implementing remote-access VPNs? ()
    A

     The Cisco Easy VPN Server feature and the Cisco software VPN client use the same GUI configuration tool to simplify remote-access VPN configurations.

    B

     The Cisco Easy VPN Server feature allows the Cisco software VPN client to receive its security policies from the central site VPN device. This minimizes the configuration requirements at the remote location for large remote access VPN deployments.

    C

     The Cisco Easy VPN Server feature and the Cisco software VPN client use hardware-based encryption to reduce the CPU overhead of the central site VPN router.

    D

     The Cisco Easy VPN Server feature and the Cisco software VPN client enable scalable remote-access VPNs deployment by using a thick client/thin server model where the central site VPN router can handle thousands of incoming VPN connections.


    正确答案: B
    解析: 暂无解析

  • 第23题:

    单选题
    An Enterprise customer wants to reduce the configuration effort for their Teleworker router deployments. What is one way to simplify the IPSec-related configuration in the remote routers?()
    A

    CiscoWorks VPN Manager 

    B

    deploy Linksys routers with menu-driven configuration

    C

    Easy VPN client mode 

    D

    disable 802.1x and Auth Proxy on the Teleworker router


    正确答案: C
    解析: 暂无解析