單項選擇題Which of the following is the most effective technique to prevent source IPAddress spoofing?()

A. policy based routing (PBR)
B. unicast reverse path forwarding (uRPF)
C. lock and keyACL
D. RFC 1918filtering
E. IP source routing


您可能感興趣的試卷

你可能感興趣的試題

1.單項選擇題Which type of attacks can be monitored and mitigated by CS-MARS using NetFlow data?()

A. Man-in-themiddle attack
B. Spoof attack
C. Land.C attack
D. Buffer Overflow
E. Day zero attack
F. Trojan Horse

2.單項選擇題Which best represents a typical attackthat takes advantage of RFC 792, ICMPType 3 messages?()

A. Blind connection-reset
B. Large packet echo request
C. Packet fragmentation offset
D. Broadcast-based echo request
E. Excessive bandwidth consumption

3.多項選擇題Cisco IOS IPS sends IPS alert messages using which two protocols? ()

A. SDEE
B. LDAP
C. SYSLOG
D. FTP
E. SNMP
F. SMTP

4.多項選擇題When implementing WLAN security, what are three benefits of using the Temporal Key Integrity Protocol (TKIP) instead of WEP? ()

A. TKIP uses an advanced encryption scheme based on AES
B. TKIP provides authentication and integrity checking using Cipher Block Chaining Message Authentication Code (CBC-MAC)
C. TKIP provides per-packet keyingand a rekeying mechanism
D. TKIP provides message integrity check
E. TKIP reduces WEP’s vulnerabilities byusing different hardware encryption chipset
F. TKIP uses a 48 bit InitializationVector

5.多項選擇題Which three statements regarding Cisco ASAmulticast routing support are correct? ()

A. ASA supports both stubmulticast routing and PIMmulticast routing. However, you cannot configure bothconcurrently on a single security appliance
B. When configured for stubmulticast routing, the ASA can act as the Rendezvous Point (RP)
C. If the ASAdetects IGMPversion1 routers, the ASAwill automatically switch to IGMP version 1 operations.
D. The ASA supports both PIM-SM and bi-directional PIM
E. Enabling multicast routing globally on the ASA automatically enables PIM and IGMP on all interfaces
F. The ASA can be configured for IGMP snooping toconstrain theflooding of multicast traffic by dynamically configuring themulticast traffic to be forwarded only those interfaces associated with hosts requesting themulticast group