填空题1. The ISR uses the identity certificate to ______ itself to remote clients. ISR使用身份证书向远程客户端来______自己。
填空题 When deploying PKI-enabled VPNs
填空题10. A ______ is essentially an electronic repository of keys and their respective shared secretand validity schedules. ______是保存密钥及其共享密钥与有效期的一种存储机制。
填空题24. The Cisco IOS IPS router can send IPS alerts through ______ and can have the ______ feature enabled at the same time. Cisco IOS IPS路由器具备同时通过______发送IPS告警并启用______的能力。
填空题9. The part of the network that typically connects to end users that all exist within similargeographic areas is defined in the ______ design blueprint. 用于连接某一地理区域内的终端用户的网络定义在______设计蓝图中。
填空题11. Politics within an organization can cause a lack of ______ within the security policies. 企业或组织内部的争斗倾轧可能导致安全策略缺乏______。
填空题16. ______ IP addressing is mandatory with DVTI tunnels. DVTI隧道必须采用______IP寻址方式。
填空题1. The control plane includes the group of processes that are run at the ______ level and control most high-level control IOS functions. 控制面包括运行在______并控制最高级IOS功能的进程组。
填空题8. The recommended hash algorithm to provide message authentication and integrity is ______. 用于提供消息认证和完整性的推荐散列算法是______。
填空题 When using the inspect type policy map
填空题4. Cisco GET VPN is considered to be a ______ encapsulation mode and therefore cannot be used on transport networks that cannot route internal VPN addresses. Cisco GET VPN是一种______封装模式,无法在不支持内部地址路由的传输网络中使用。
填空题25. GDOI is a standards-based ISAKMP group key management protocol meant to provide secure communication within a ______. GDOI是一个基于标准的Internet安全关联和密钥管理协议(ISAKMP)组密钥管理协议,它能够提供安全的______内通信。
填空题5. ______ allows the control plane to be considered like a separate entity with its own in put and output interface. ______将控制面视为一个拥有输入与输出接口的独立实体。
填空题10. The management design blueprint is defined to increase security through the use of the ______ security focuses. 管理设计蓝图采用______以提高网络的安全系数。
填空题 Beginning with ______ of Cisco IOS Software
填空题17. Configuring a basic Cisco ISR Easy VPN ______ consists of basic gateway configuration, group authentication, client configuration, and user authentication configuration. 配置基础的Cisco ISR EZVPN______,包括基础的网关配置、组认证、客户端配置及用户认证配置。
填空题19. You can enhance authentication by using ______ on remote clients and the Easy VPN Server. 你可以通过使用______来增强远程客户端与EZVPN服务器之间的认证。
填空题21. FPM is only able to inspect ______ unicast packets. FPM仅能检测______单播数据包。
填空题3. A VPN technology that starts with a hub-and-spoke topology but allows dynamically and automatically built VPNs between spoke sites is ______. 初始状态为中心辐射拓扑,且分支站点之间可以动态并自动构建VPN的技术称为______。
填空题21. ______ is an application from Cisco that can be used to deploy and manage security features on Cisco devices. ______是一种部署并管理Cisco设备安全功能的软件。
