Which attribute is used to pass the user role back to the Nexus when remote AAA is enabled?()A、 Cisco AV-pairB、 TACACS+ or RADIUS ack frame role attributeC、 DH-CHAP challenge attributeD、 privilege level attribute

Which attribute is used to pass the user role back to the Nexus when remote AAA is enabled?()

  • A、 Cisco AV-pair
  • B、 TACACS+ or RADIUS ack frame role attribute
  • C、 DH-CHAP challenge attribute
  • D、 privilege level attribute

相关考题:

Consider the Mysql Enterprise Audit plugin. Which statement is true when you identify a connection event that has used external authentication?() A.The attribute STATUS is set to the string EXTERNAL_AUTHB.The attribute PRIV_USER contains the usernameC.The event type that is given in the attribute NAME is EXTERNAL_AUTHD.There is no differentiation between native and external authentication eventsE.External authentication is managed through external auditing logsF.The PROXY_PRIV user shows a username if external authentication is used

You are the administrator of a Junos Pulse Access Control Service implementation. You must restrict authenticated users connected from the branch offices to a few specific resources within the data center. However, when the authenticated users are connected at the corporate office, they are allowed more access to the data center resources.You have created two roles with different levels of access and are trying to determine the best way of controlling when a user is mapped to a specific role. Having the user prompted to manually select their role is possible, but you want to automate the process.Which configuration solves this problem?()A. Implement a RADIUS request attribute policy to assist with realm selection and create different role-mapping rules for the user in each realm.B. Implement a directory/attribute server on the realm and set up this server to determine by group membership the proper role to which a user should be mapped.C. Reorder the role-mapping rules to allow for the more open role to be mapped first and then enable the stop processing rules when this rule matches function on this role.D. Implement a Host Checker policy on the realm that determines the geographic location of the device and restricts the user based on the results of the policy.

Click the Exhibit button.A customer configures the Junos Pulse Access Control Service with a Contractor role, an Employee role, and a Remediation role. A user logs in and is assigned the Remediation role. Referring to the exhibit, to which RADIUS Return Attributes Policy will the user be assigned?()A. CorporateVLANB. EmployeeVLANC. RemediationVLAND. GuestVLAN

Within a BGP confederation how are routing loops avoided?() A. split horizonB. the AS-path attributeC. the BGP cluster ID attributeD. the BGP originator ID attribute

If Host Checker restrictions are applied at the role level and the "Allow access to the role if any ONE of the select policies is passed" option is unchecked, which two statements are true?() A. All roles are evaluated together.B. Each role is evaluated separately.C. Clients must pass all policies to access the role.D. Clients will pass as long as one policy is accepted.

When the BGP path selection process is being performed on a Cisco router, which BGP attribute is used first when determining the best path?() A. local preferenceB. MEDC. weightD. or iginE. next - hopF. AS - path

Which three statements about the Cisco Easy VPN feature are true?()A、If the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.B、The Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.C、The VPN client initiates aggressive mode (AM) if a pre-shared key is used for authentication during the IKE phase 1 process.D、The VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.E、The VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series concentrators.F、When connecting with a VPN client,the VPN server must be configured for ISAKMP group 1,2 or 5.

Which two are benefits of using remote AAA services for Cisco Nexus products? ()A、 They make it easier to manage user logins and passwords across devices.B、 They enable automated configuration backup for devices.C、 They centrally manage user attributes and permissions.D、 Local console access is never included in AAA and can be used for access when the AAA servers are down.

You are enabling AAA RADIUS/TACACS+ on a UCS which attribute must be added to the User account?()A、Encryption algorithmB、Shared Secret KeyC、Security policyD、CiscoAvPair

Which one of the following commands can be used to enable AAA authentication to determine if a user canaccess the privilege command level?()A、aaa authentication enable method defaultB、aaa authentication enable defaultC、aaa authentication enable levelD、aaa authentication enable default local

When creating a role in a Cisco Nexus 7000 Series Switch, rules are used to define the type of operations that a role will allow the user to perform.  Which two of these parameters cannot be applied as a rule? () A、 port-profileB、 commandC、 access-listD、 feature-groupE、 OID

All secure domain routers (SDRs) have shared attribute and resources. Which three resources are sharedall SDRs? ()A、privilege-level configurationB、fabric cardsC、SNMP trapsD、admin- level configurationE、exec- level configuration

Which three statements describe user authentication in Cisco DCNM-LAN? ()A、 Cisco DCNM-LAN server users are local to the Cisco DCNM-LAN server. Creating, changing, and removing Cisco DCNM-LAN server users has no effect on user accounts on managed devices.B、 A Cisco DCNM-LAN server user that has Administrator privileges can push out changes to managed devices even if the Cisco NX-OS role that is used on the discovered device has the network operator role.C、 Cisco DCNM-LAN user roles restrict the ability of users to make changes to Cisco DCNM-LAN server settings. Cisco NX-OS user roles enforce read/write privileges on the discovered devices.D、 Cisco DCNM-LAN allows you to configure unique credentials for each discovered device or use default credentials when you do not configure unique credentials for a device.E、 Cisco DCNM-LAN can use AAA servers to authenticate users. Only TACACS servers are supported.

When the BGP path selection process is being performed on a Cisco router, which BGP attribute is used first when determining the best path?()A、local preferenceB、MEDC、weightD、or iginE、next - hopF、AS - path

Which of the following is true about RADIUSV end or Specific Attribute? ()A、 The RADIUSVendor Specific Attribute type is decimal 26.B、 A radius server that does not understandthevendor-specific information sent by a clientmust reject the authentication request.C、 A vendor can freely choose theVendor-ID it wants to use when implementing Vendor Specific Attributes as long as the same Vendor-ID is used on all of its products.D、 Vendor Specific AttributeMUST include the Length field.E、 In Cisco’s Vendor Specific Attribute implementation, vendor-ID of 1 is commonly referred to as Cisco AV(Attribute Value) pairs.F、 Vendor Specific Attributes use a RADIUS attribute type between 127 and 255.

Within a BGP confederation how are routing loops avoided?()A、split horizonB、the AS-path attributeC、the BGP cluster ID attributeD、the BGP originator ID attribute

Which of the following high level menus are available when a user with the Seller role is using WebSphere Commerce Accelerator to manage a B2B store?()A、ApprovalsB、LogisticsC、MerchandiseD、OperationsE、ProductsF、Sales

What should be enabled before any user views can be created during role-based CLI configuration ?()A、aaa new-model commandB、secret password for the root userC、usernames and passwordsD、multiple privilege levels

During role-based CLI configuration, what must be enabled before any user views can be created?()A、multiple privilege levelsB、usernames and passwordsC、aaa new-model commandD、secret password for the root userE、HTTP and/or HTTPS server

what’s the role of community attribute in the bgp route?

Consider the Mysql Enterprise Audit plugin. Which statement is true when you identify a connection event that has used external authentication?()A、The attribute "STATUS" is set to the string EXTERNAL_AUTHB、The attribute "PRIV_USER" contains the usernameC、The event type that is given in the attribute "NAME" is EXTERNAL_AUTHD、There is no differentiation between native and external authentication eventsE、External authentication is managed through external auditing logsF、The "PROXY_PRIV" user shows a username if external authentication is used

Examine these statements: CREATE ROLE registrar GRANT UPDATE ON dtudent_grades TO registrar; GRANT registrar to user1, user2, user3; What does this set of SQL statements do?()A、The set of statements contains an error and does not work.B、It creates a role called REGISTRAR, adds the MODIFY privilege on the STUDENT_GRADES object to the role, and gives the REGISTRAR role to three users.C、It creates a role called REGISTRAR, adds the UPDATE privilege on the STUDENT_GRADES object to the role, and gives the REGISTRAR role to three users.D、It creates a role called REGISTRAR, adds the UPDATE privilege on the STUDENT_GRADES object to the role, and creates three users with the role.E、It creates a role called REGISTRAR, adds the UPDATE privilege on three users, and gives the REGISTRAR role to the STUDENT_GRADES object.F、It creates a role called STUDENT_GRADES, adds the UPDATE privilege on three users, and gives the UPDATE role to the registrar.

多选题When creating a role in a Cisco Nexus 7000 Series Switch, rules are used to define the type of operations that a role will allow the user to perform.  Which two of these parameters cannot be applied as a rule? ()Aport-profileBcommandCaccess-listDfeature-groupEOID

多选题Which two are benefits of using remote AAA services for Cisco Nexus products? ()AThey make it easier to manage user logins and passwords across devices.BThey enable automated configuration backup for devices.CThey centrally manage user attributes and permissions.DLocal console access is never included in AAA and can be used for access when the AAA servers are down.

单选题Which attribute is used to pass the user role back to the Nexus when remote AAA is enabled?()A Cisco AV-pairB TACACS+ or RADIUS ack frame role attributeC DH-CHAP challenge attributeD privilege level attribute

多选题Which three statements about the Cisco Easy VPN feature are true?()AIf the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.BThe Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.CThe VPN client initiates aggressive mode (AM) if a pre-shared key is used for authentication during the IKE phase 1 process.DThe VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.EThe VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series concentrators.FWhen connecting with a VPN client,the VPN server must be configured for ISAKMP group 1,2 or 5.

多选题Which of the following high level menus are available when a user with the Seller role is using WebSphere Commerce Accelerator to manage a B2B store?()AApprovalsBLogisticsCMerchandiseDOperationsEProductsFSales