单选题Which attribute is used to pass the user role back to the Nexus when remote AAA is enabled?()A Cisco AV-pairB TACACS+ or RADIUS ack frame role attributeC DH-CHAP challenge attributeD privilege level attribute

单选题
Which attribute is used to pass the user role back to the Nexus when remote AAA is enabled?()
A

 Cisco AV-pair

B

 TACACS+ or RADIUS ack frame role attribute

C

 DH-CHAP challenge attribute

D

 privilege level attribute


参考解析

解析: 暂无解析

相关考题:

Consider the Mysql Enterprise Audit plugin. Which statement is true when you identify a connection event that has used external authentication?() A.The attribute STATUS is set to the string EXTERNAL_AUTHB.The attribute PRIV_USER contains the usernameC.The event type that is given in the attribute NAME is EXTERNAL_AUTHD.There is no differentiation between native and external authentication eventsE.External authentication is managed through external auditing logsF.The PROXY_PRIV user shows a username if external authentication is used

You are the administrator of a Junos Pulse Access Control Service implementation. You must restrict authenticated users connected from the branch offices to a few specific resources within the data center. However, when the authenticated users are connected at the corporate office, they are allowed more access to the data center resources.You have created two roles with different levels of access and are trying to determine the best way of controlling when a user is mapped to a specific role. Having the user prompted to manually select their role is possible, but you want to automate the process.Which configuration solves this problem?()A. Implement a RADIUS request attribute policy to assist with realm selection and create different role-mapping rules for the user in each realm.B. Implement a directory/attribute server on the realm and set up this server to determine by group membership the proper role to which a user should be mapped.C. Reorder the role-mapping rules to allow for the more open role to be mapped first and then enable the stop processing rules when this rule matches function on this role.D. Implement a Host Checker policy on the realm that determines the geographic location of the device and restricts the user based on the results of the policy.

Click the Exhibit button.A customer configures the Junos Pulse Access Control Service with a Contractor role, an Employee role, and a Remediation role. A user logs in and is assigned the Remediation role. Referring to the exhibit, to which RADIUS Return Attributes Policy will the user be assigned?()A. CorporateVLANB. EmployeeVLANC. RemediationVLAND. GuestVLAN

When the BGP path selection process is being performed on a Cisco router, which BGP attribute is used first when determining the best path?() A. local preferenceB. MEDC. weightD. or iginE. next - hopF. AS - path

Which three statements about the Cisco Easy VPN feature are true?()A、If the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.B、The Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.C、The VPN client initiates aggressive mode (AM) if a pre-shared key is used for authentication during the IKE phase 1 process.D、The VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.E、The VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series concentrators.F、When connecting with a VPN client,the VPN server must be configured for ISAKMP group 1,2 or 5.

Which two are benefits of using remote AAA services for Cisco Nexus products? ()A、 They make it easier to manage user logins and passwords across devices.B、 They enable automated configuration backup for devices.C、 They centrally manage user attributes and permissions.D、 Local console access is never included in AAA and can be used for access when the AAA servers are down.

You are enabling AAA RADIUS/TACACS+ on a UCS which attribute must be added to the User account?()A、Encryption algorithmB、Shared Secret KeyC、Security policyD、CiscoAvPair

Which one of the following commands can be used to enable AAA authentication to determine if a user canaccess the privilege command level?()A、aaa authentication enable method defaultB、aaa authentication enable defaultC、aaa authentication enable levelD、aaa authentication enable default local

When creating a role in a Cisco Nexus 7000 Series Switch, rules are used to define the type of operations that a role will allow the user to perform.  Which two of these parameters cannot be applied as a rule? () A、 port-profileB、 commandC、 access-listD、 feature-groupE、 OID

When the BGP path selection process is being performed on a Cisco router, which BGP attribute is used first when determining the best path?()A、local preferenceB、MEDC、weightD、or iginE、next - hopF、AS - path

Which of the following is true about RADIUSV end or Specific Attribute? ()A、 The RADIUSVendor Specific Attribute type is decimal 26.B、 A radius server that does not understandthevendor-specific information sent by a clientmust reject the authentication request.C、 A vendor can freely choose theVendor-ID it wants to use when implementing Vendor Specific Attributes as long as the same Vendor-ID is used on all of its products.D、 Vendor Specific AttributeMUST include the Length field.E、 In Cisco’s Vendor Specific Attribute implementation, vendor-ID of 1 is commonly referred to as Cisco AV(Attribute Value) pairs.F、 Vendor Specific Attributes use a RADIUS attribute type between 127 and 255.

Which attribute is used to pass the user role back to the Nexus when remote AAA is enabled?()A、 Cisco AV-pairB、 TACACS+ or RADIUS ack frame role attributeC、 DH-CHAP challenge attributeD、 privilege level attribute

Within a BGP confederation how are routing loops avoided?()A、split horizonB、the AS-path attributeC、the BGP cluster ID attributeD、the BGP originator ID attribute

What should be enabled before any user views can be created during role-based CLI configuration ?()A、aaa new-model commandB、secret password for the root userC、usernames and passwordsD、multiple privilege levels

During role-based CLI configuration, what must be enabled before any user views can be created?()A、multiple privilege levelsB、usernames and passwordsC、aaa new-model commandD、secret password for the root userE、HTTP and/or HTTPS server

what’s the role of community attribute in the bgp route?

Consider the Mysql Enterprise Audit plugin. Which statement is true when you identify a connection event that has used external authentication?()A、The attribute "STATUS" is set to the string EXTERNAL_AUTHB、The attribute "PRIV_USER" contains the usernameC、The event type that is given in the attribute "NAME" is EXTERNAL_AUTHD、There is no differentiation between native and external authentication eventsE、External authentication is managed through external auditing logsF、The "PROXY_PRIV" user shows a username if external authentication is used

单选题When adding a new user and assigning a role, which user role has "read only" rights to theconfiguration and operational states? ()AuserBread_onlyCtarget_operatorDsecurity_operator

多选题When creating a role in a Cisco Nexus 7000 Series Switch, rules are used to define the type of operations that a role will allow the user to perform.  Which two of these parameters cannot be applied as a rule? ()Aport-profileBcommandCaccess-listDfeature-groupEOID

多选题Which two are benefits of using remote AAA services for Cisco Nexus products? ()AThey make it easier to manage user logins and passwords across devices.BThey enable automated configuration backup for devices.CThey centrally manage user attributes and permissions.DLocal console access is never included in AAA and can be used for access when the AAA servers are down.

单选题When configuring role-based CLI on a Cisco router,which action will be taken first ?()ACreate a parser view called root view.BLog in to the router as the root user.CEnable the root view on the router.DEnable role-based CLI globally on the router using the privileged EXEC mode Cisco IOS command.

单选题Which attribute is used to pass the user role back to the Nexus when remote AAA is enabled?()A Cisco AV-pairB TACACS+ or RADIUS ack frame role attributeC DH-CHAP challenge attributeD privilege level attribute

多选题Which three statements about the Cisco Easy VPN feature are true?()AIf the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.BThe Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.CThe VPN client initiates aggressive mode (AM) if a pre-shared key is used for authentication during the IKE phase 1 process.DThe VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.EThe VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series concentrators.FWhen connecting with a VPN client,the VPN server must be configured for ISAKMP group 1,2 or 5.

单选题You are enabling AAA RADIUS/TACACS+ on a UCS which attribute must be added to the User account?()AEncryption algorithmBShared Secret KeyCSecurity policyDCiscoAvPair

单选题You are the administrator of a Junos Pulse Access Control Service implementation. You must restrict authenticated users connected from the branch offices to a few specific resources within the data center. However, when the authenticated users are connected at the corporate office, they are allowed more access to the data center resources. You have created two roles with different levels of access and are trying to determine the best way of controlling when a user is mapped to a specific role. Having the user prompted to manually select their role is possible, but you want to automate the process. Which configuration solves this problem?()AImplement a RADIUS request attribute policy to assist with realm selection and create different role-mapping rules for the user in each realm.BImplement a directory/attribute server on the realm and set up this server to determine by group membership the proper role to which a user should be mapped.CReorder the role-mapping rules to allow for the more open role to be mapped first and then enable the stop processing rules when this rule matches function on this role.DImplement a Host Checker policy on the realm that determines the geographic location of the device and restricts the user based on the results of the policy.

单选题When the BGP path selection process is being performed on a Cisco router, which BGP attribute is used first when determining the best path?()Alocal preferenceBMEDCweightDor iginEnext - hopFAS - path

单选题Consider the Mysql Enterprise Audit plugin. Which statement is true when you identify a connection event that has used external authentication?()AThe attribute STATUS is set to the string EXTERNAL_AUTHBThe attribute PRIV_USER contains the usernameCThe event type that is given in the attribute NAME is EXTERNAL_AUTHDThere is no differentiation between native and external authentication eventsEExternal authentication is managed through external auditing logsFThe PROXY_PRIV user shows a username if external authentication is used

多选题Which of the following high level menus are available when a user with the Seller role is using WebSphere Commerce Accelerator to manage a B2B store?()AApprovalsBLogisticsCMerchandiseDOperationsEProductsFSales