单选题For a router to obtain a certificate from a CA, what is the first stepof the certificate enrollment process?()Athe router generates a certificate request and forwards it tothe CABthe router generates an RSA key pairCthe router sends its public key to t

题目
单选题
For a router to obtain a certificate from a CA, what is the first stepof the certificate enrollment process?()
A

 the router generates a certificate request and forwards it tothe CA

B

 the router generates an RSA key pair

C

 the router sends its public key to the CA

D

 the CA sends its public key to the router

E

 the CA verifies the identity of the router

F

 the CA generates a certificate request and forwards it to the router


相似考题
更多“单选题For a router to obtain a certificate from a CA, what is the first stepof the certificate enrollment process?()A  the router generates a certificate request and forwards it tothe CAB  the router generates an RSA key pairC  the router sends its public ke”相关问题
  • 第1题:

    For the accompanying router output, which of the following statements describes the stat e that neighbor 172.16.254.3 is in?()

    A. The router will not accept connections from the peer.

    B. BGP can exchange routing information in this state.

    C. The router is listening on its server port for connection requests from the peer.

    D. The router ha s sent out an active TCP connection request to the peer.


    参考答案:C

  • 第2题:

    Host 1 has just started up and requests a web page from web server 2. Which two statements describe steps in the process Host 1 uses to send the request to web server 2 (choose two)()。

    A.Host 1 addresses the frames to the MAC address of router R1

    B.Host 1 looks in its ARP cache for the MAC address of router R1

    C.Host 1 addresses the frames to the MAC address of web server 2

    D.Host 1 sends the packets to router R1 to be forwarded to web server 2

    E.Host 1 sends a broadcast ARP request to obtain the MAC address of webserver2


    参考答案:C, E

  • 第3题:

    For a router to obtain a certificate from a CA, what is the first stepof the certificate enrollment process?()

    • A、 the router generates a certificate request and forwards it tothe CA
    • B、 the router generates an RSA key pair
    • C、 the router sends its public key to the CA
    • D、 the CA sends its public key to the router
    • E、 the CA verifies the identity of the router
    • F、 the CA generates a certificate request and forwards it to the router

    正确答案:B

  • 第4题:

    The router receives a login request from a PPP over ATM client and examines the domain map for the client's domain. The router finds no entries currently configured within the domain map. What does the router do with the login request?()

    • A、The router rejects it.
    • B、The router tunnels it via L2TP.
    • C、The router authenticates it locally.
    • D、The default virtual router authenticates it.

    正确答案:D

  • 第5题:

    A router receives a packet from a neighbor with an MPLS shim header value of 0.What does the router do with this packet?()

    • A、It performs a label pop operation and an IP lookup.
    • B、It performs a label swap operation and an IP lookup.
    • C、It sends an error message toward the egress router.
    • D、It sends an error message toward the ingress router.

    正确答案:A

  • 第6题:

    Which process occurs first during the Ethernet Discovery Stage process for a PPPoE service offering?()

    • A、The ERX router sends an Active Discovery Off ermessage.
    • B、The ERX router sendsan Active Discovery Initiation message.
    • C、The customer device sends an Active Discovery Offer message.
    • D、The customer device sends an Active Discovery Initiation message.

    正确答案:D

  • 第7题:

    There are three routers on a Gigabit Ethernet LAN: Router A, Router B, and Router C. Router A is the Designated Intermediate System (DIS) at Level 1 for that LAN. Router A's DIS priority is 64. The LAN is a Level 1-only link. Router D has just been powered up on that same LAN and its DIS priority is 80. Which statement is true?()

    • A、Router A remains the DIS and generates a new pseudonode LSP for that LAN
    • B、Router A remains the DIS and NO new pseudonode LSP is generated for that LAN
    • C、Router D becomes the new DIS, generates a new pseudonode LSP for that LAN, and purges the old pseudonode LSP generated by Router A
    • D、Router D becomes the new DIS, does NOT generate a new pseudonode LSP for that LAN, and does NOT purge the old pseudonode LSP generated by Router A

    正确答案:C

  • 第8题:

    单选题
    What is a requirement to enable Cisco IOS IPS with 5.x signature?()
    A

    disable Zone-Based Firewall as the two features are not compatible

    B

    disable Cisco Express Forwarding as the two features are not compatible

    C

    generate a certificate and export on Cisco.com to receive a signature update

    D

    import the public RSA key from the Cisco IPS team that allows the router to verify that a signatureupdate (which was signed by this key) comes from Cisco


    正确答案: C
    解析: 暂无解析

  • 第9题:

    单选题
    What is IPv6 router solicitation?()
    A

    a request made by a node to join a specified multicast group

    B

    a request made by a node for its IP address

    C

    a request made by a node for the IP address of the DHCP server

    D

    a request made by a node for the IP address of the local router


    正确答案: D
    解析: 暂无解析

  • 第10题:

    单选题
    Your company uses a Windows 2008 Enterprise certificate authority (CA) to issue certificates. You need to implement key archival. What should you do()
    A

    Archive the private key on the server.

    B

    Apply the Hisecdc security template to the domain controllers.

    C

    Configure the certificate for automatic enrollment for the computers that store encrypted files.

    D

    Install an Enterprise Subordinate CA and issue a user certificate to users of the encrypted files.


    正确答案: C
    解析: 暂无解析

  • 第11题:

    单选题
    For a router to obtain a certificate from a CA, what is the first stepof the certificate enrollment process?()
    A

     the router generates a certificate request and forwards it tothe CA

    B

     the router generates an RSA key pair

    C

     the router sends its public key to the CA

    D

     the CA sends its public key to the router

    E

     the CA verifies the identity of the router

    F

     the CA generates a certificate request and forwards it to the router


    正确答案: B
    解析: 暂无解析

  • 第12题:

    单选题
    What is the difference between a CSU/DSU and a modem?()
    A

    A CSU/DSU converts analog signals from a router to a leased line; a modem converts analog signals from a router to a leased line.

    B

    A CSU/DSU converts analog signals from a router to a phone line; a modem converts digital signals from a router to a leased line.

    C

    A CSU/DSU converts digital signals from a router to a phone line; a modem converts analog signals from a router to a phone line.

    D

    A CSU/DSU converts digital signals from a router to a leased line; a modem converts digital signals from a router to a phone line.


    正确答案: B
    解析: 暂无解析

  • 第13题:

    Refer to the exhibit. For what two reasons has the router loaded its IOS image from the location that is shown? ()

    A.Router1 has specific boot system command that instruct it to load IOS from TFTP server.

    B.Router1 is acting as a TFTP server for other routers.

    C.Router1 cannot locate a valid IOS image in flash memory.

    D.Router1 defaulted to ROMMON mode and loaded the IOS image from a TFTP server.

    E.Cisco routers will first attempt to load a image from TFTP for management purposes.


    参考答案:A, C

  • 第14题:

    What is IPv6 router solicitation?()

    • A、a request made by a node to join a specified multicast group
    • B、a request made by a node for its IP address
    • C、a request made by a node for the IP address of the DHCP server
    • D、a request made by a node for the IP address of the local router

    正确答案:D

  • 第15题:

    What is a requirement to enable Cisco IOS IPS with 5.x signature?()

    • A、disable Zone-Based Firewall as the two features are not compatible
    • B、disable Cisco Express Forwarding as the two features are not compatible
    • C、generate a certificate and export on Cisco.com to receive a signature update
    • D、import the public RSA key from the Cisco IPS team that allows the router to verify that a signatureupdate (which was signed by this key) comes from Cisco

    正确答案:D

  • 第16题:

    A router receives an IPv6 packet which is 2000 bytes in length. The MTU of the outgoing interface is 1500 bytes. What action will the router take?()

    • A、forwards the packet
    • B、fragments the packet
    • C、drops the packet silently
    • D、drops the packet and sends an ICMP message

    正确答案:D

  • 第17题:

    Why is NTP an important component when implementing IPSec VPN in a PKI environment?()

    • A、 To ensure the router has the correct time when generating its private/public key pairs.
    • B、 To ensure the router has the correct time when checking certificate validity from the remote peers
    • C、 To ensure the router time is sync with the remote peers for encryption keys generation
    • D、 To ensure the router time is sync with the remote peers during theDH exchange
    • E、 To ensure the router time is sync with the remote peers when generating the cookies during IKE phase 1

    正确答案:B

  • 第18题:

    Which process occurs first during the Ethernet Discovery Stage process for a PPPoE service offering?()

    • A、The ERX router sends an Active Discovery Offer message.
    • B、The ERX router sends an Active Discovery Initiation message.
    • C、The customer device sends an Active Discovery Offer message.
    • D、The customer device sends an Active Discovery Initiation message

    正确答案:D

  • 第19题:

    What is the first step in BGP route selection?()

    • A、The local router prefers the route with the shortest as-path.
    • B、The router first verifies that it has a route to the bgp Next Hop IP address.
    • C、The local router prefers the route from the peer with the lowest peer id address.
    • D、The local router prefers the route learned from an ebgp peer over a route learned from an ibgp peer.

    正确答案:B

  • 第20题:

    单选题
    The router receives a login request from a PPP over ATM client and examines the domain map for the client's domain. The router finds no entries currently configured within the domain map. What does the router do with the login request?()
    A

    The router rejects it.

    B

    The router tunnels it via L2TP.

    C

    The router authenticates it locally.

    D

    The default virtual router authenticates it.


    正确答案: A
    解析: 暂无解析

  • 第21题:

    单选题
    There are three routers on a Gigabit Ethernet LAN: Router A, Router B, and Router C. Router A is the Designated Intermediate System (DIS) at Level 1 for that LAN. Router A's DIS priority is 64. The LAN is a Level 1-only link. Router D has just been powered up on that same LAN and its DIS priority is 80. Which statement is true?()
    A

    Router A remains the DIS and generates a new pseudonode LSP for that LAN

    B

    Router A remains the DIS and NO new pseudonode LSP is generated for that LAN

    C

    Router D becomes the new DIS, generates a new pseudonode LSP for that LAN, and purges the old pseudonode LSP generated by Router A

    D

    Router D becomes the new DIS, does NOT generate a new pseudonode LSP for that LAN, and does NOT purge the old pseudonode LSP generated by Router A


    正确答案: A
    解析: 暂无解析

  • 第22题:

    单选题
    Which process occurs first during the Ethernet Discovery Stage process for a PPPoE service offering?()
    A

    The ERX router sends an Active Discovery Offer message.

    B

    The ERX router sends an Active Discovery Initiation message.

    C

    The customer device sends an Active Discovery Offer message.

    D

    The customer device sends an Active Discovery Initiation message


    正确答案: D
    解析: 暂无解析

  • 第23题:

    单选题
    Why is NTP an important component when implementing IPSec VPN in a PKI environment?()
    A

     To ensure the router has the correct time when generating its private/public key pairs.

    B

     To ensure the router has the correct time when checking certificate validity from the remote peers

    C

     To ensure the router time is sync with the remote peers for encryption keys generation

    D

     To ensure the router time is sync with the remote peers during theDH exchange

    E

     To ensure the router time is sync with the remote peers when generating the cookies during IKE phase 1


    正确答案: B
    解析: 暂无解析

  • 第24题:

    单选题
    A router receives a packet from a neighbor with an MPLS shim header value of 0.What does the router do with this packet?()
    A

    It performs a label pop operation and an IP lookup.

    B

    It performs a label swap operation and an IP lookup.

    C

    It sends an error message toward the egress router.

    D

    It sends an error message toward the ingress router.


    正确答案: C
    解析: 暂无解析