Network security advanced training - May

Network security advanced training - May

KG - 12th Grade

5 Qs

quiz-placeholder

Similar activities

社交工程與資訊安全測驗

社交工程與資訊安全測驗

Professional Development

10 Qs

課堂小測驗--結構

課堂小測驗--結構

7th Grade

10 Qs

CH3 結構的設計與應用

CH3 結構的設計與應用

10th - 12th Grade

10 Qs

TMK 六年级

TMK 六年级

12th Grade

10 Qs

五年级设计与工艺:微控制器

五年级设计与工艺:微控制器

5th Grade

10 Qs

設計圖繪製 0-1認識製圖工具(Quiz)

設計圖繪製 0-1認識製圖工具(Quiz)

7th Grade

10 Qs

tello 座標練習

tello 座標練習

4th - 5th Grade

10 Qs

結構與機構─(2)種類與應用

結構與機構─(2)種類與應用

7th Grade

10 Qs

Network security advanced training - May

Network security advanced training - May

Assessment

Quiz

Instructional Technology

KG - 12th Grade

Hard

Created by

Chris Leung

Used 1+ times

FREE Resource

5 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

以下Firewall WAF(Web application protection)功能中描述正確的是:

網絡攻擊通常會用到Scanner進行漏洞探測,所以必須開啟漏洞防掃描功能 (Scanner Blocker)

AF Waf APP Firewall 中,可手動添加配置https(443) 識別ssl traffic,進行防禦

在開啟Application Hiding的情況下開啟bypass功能,仍能見到返回錯誤碼4xx,5xx的網頁被替換.

[Privilege]—[URL access]中 針對特定的url allow之後,任然會受其他WAF policy控制.

2.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

以下Firewall IPS(Intrusion Prevention)功能中描述錯誤的是:

針對internal Server Scenario template 中建議選擇” Server Protection” 和 ” Brute-Force attack” 兩個選項

針對Internet Access Scenario: template 中建議選擇” Endpoint Protection” 和 ” Malware” 兩個選項

客戶使用web業務為http 9999 port ,能自動識別

客戶使用web業務為http 8081 port ,能自動識別

3.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

以下Firewall WAF(Web application protection)功能中描述正確的是:

為了block http 業務的SQL injection ,必須要開啟SSL Decryption

Firewall要檢查XXE attack,無須開啟XML 解析(XML Parse)也能識別攻擊行為

File upload restriction 功能中,list 裡面的是允許upload 的文件類型

客戶Http Web Server通過Loadbalance 設備進行負載均衡,Firewall部署位置在SNAT後,需要配置Logging Options 中的Header Field.

4.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

Which of the following statements is wrong about IAG13.0.15?

If you need a POC license, need export profile(device information) to sangfor post-sale team

The entire network behaviour management realizes accurate asset identification through the analysis of protocol traffic such as tcp/dhcp/arp/http.

If License Expires, access control policy functions cannot be edited or configured, and the existing configurations cannot take effect

Ingress client audit license is free in version 13.0.15

5.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

Which of the follow regarding is wrong?

Endpoints can be controlled with more granular policies based on endpoint types.

Virtual IAM such as vmware vIAM and HCI vIAM not support upgrade to IAG13.0.15

IAM 12.0.44 not support upgrade to this version.

IAG13.0.15 can forward logs and report to Cyber command