青草精品视频在线,国产白丝捆绑调教av网站,欧美一级毛片免费观看,国产999精品久久久久,a国产精品,亚洲精品午夜久久久久久久久久久,av视屏在线播放

專業(yè)信息安全工程師網站|服務平臺|服務商(信息安全工程師學習QQ群:327677606,客服QQ:800184589)

軟題庫 學習課程
當前位置:信管網 >> 信息安全工程師 >> 每日一練 >> 文章內容
信息安全工程師每日一練試題(2023/5/28)

信息安全工程師當天每日一練試題地址:www.njjt123.com/exam/ExamDay.aspx?t1=6

往期信息安全工程師每日一練試題匯總:www.njjt123.com/class/27/e6_1.html

信息安全工程師每日一練試題(2023/5/28)在線測試:www.njjt123.com/exam/ExamDay.aspx?t1=6&day=2023/5/28

點擊查看:更多信息安全工程師習題與指導

信息安全工程師每日一練試題內容(2023/5/28)

  • 試題1

    安全電子交易協議SET是由VISA和MasterCard兩大信用卡組織聯合開發(fā)的電子商務安全協議。以下關于SET的敘述中,不正確的是(  )。
    A. SET協議中定義了參與者之間的消息協議
    B.SET協議能夠解決多方認證問題
    C.SET協議規(guī)定交易雙方通過問答機制獲取對方的公開密鑰
    D.在SET中使用的密碼技術包括對稱加密、數字簽名、數字信封技術等

    查看答案

    試題參考答案:C

    試題解析與討論:www.njjt123.com/st/411403607.html

  • 試題2

    WI-FI網絡安全接入是一種保護無線網絡安全的系統,WPA加密模式不包括()
    A、WPA和WPA2
    B、WPA-PSK
    C、WEP
    D、WPA2-PSK

    查看答案

    試題參考答案:C

    試題解析與討論:www.njjt123.com/st/284804709.html

  • 試題3

    最小化配置服務是指在滿足業(yè)務的前提下,盡量關閉不需要的服務和網絡端口,以減少系統潛在的安全危害。以下實現Linux系統網絡服務最小化的操作,正確的是(   )。
    A.Inetd.conf的文件權限設置為644
    B.services的文件權限設置為600
    C.inetd.conf的文件屬主為root
    D.關閉與系統業(yè)務運行有關的網絡通信端口

    查看答案

    試題參考答案:C

    試題解析與討論:www.njjt123.com/st/52286269.html

  • 試題4

    在信息系統安全設計中,保證“信息及時且可靠地被訪問和使用”是為了達到保障信息系統()的目標。
    A.可用性
    B.保密性
    C.可控性
    D.完整性

    查看答案

    試題參考答案:A

    試題解析與討論:www.njjt123.com/st/502224443.html

  • 試題5

    數字簽名是對以數字形式存儲的消息進行某種處理,產生一種類似傳統手書簽名功效的信息處理過程。數字簽名最常見的實現方式是基于 (     )
    A.對稱密碼體制和哈希算法
    B.公鑰密碼體制和單向安全哈希算法
    C.序列密碼體制和哈希算法
    D.公鑰密碼體制和對稱密碼體制

    查看答案

    試題參考答案:B

    試題解析與討論:www.njjt123.com/st/5224026082.html

  • 試題6

    Snort是一款開源的網絡入侵檢測系統,它能夠執(zhí)行實時流量分析和IP協議網絡的數據包記錄。以下不屬于Snort配置模式的是(  )。
    A.嗅探
    B.包記錄
    C.分布式入侵檢測
    D.網絡入侵檢測

    查看答案

    試題參考答案:C

    試題解析與討論:www.njjt123.com/st/4113418555.html

  • 試題7

    Trust is typically interpreted as a subjective belief in the reliability, honesty and  security  of an entity on which we depend ( )our welfare .In online environments we depend on a wide spectrun of things , ranging from computer hardware,software and data to people and organizations. A security solution always assumes certain entities function according to specific policies.To trust is precisely to make this sort of assumptions , hence , a trusted entity is the same as an entity that is assumed to function according to  policy . A consequence of this is that a trust component of a system must work correctly in order   for the security of that system to hold, meaning that when a trusted(  )fails , then the sytems and applications that depend on it can(  )be considered secure.An often cited articulation of this principle is:" a trusted system or component is one that can break your security policy” ( which happens when the trust system fails ). The same applies to a trusted party such as a service provider ( SP for short )that is , it must operate according to the agreed or assumed   policy in order to ensure the expected level of securty and quality of services . A paradoxical   conclusion to be drawn from this analysis is that security assurance may decrease when increasing the number of trusted components and parties that a service infrastructure depends on . This is because the security of an infrastructure consisting of many.
    Trusted components typically follows the principle of the weakest link , that is ,in many situations the the overall security can only be as strong as the least reliable or least secure of all the trusted components. We cannot avoid using trusted security components,but the fewer the better. This is important to understand when designing the  identity management architectures,that is, fewer the trusted parties in an identity management model , stronger the security that can be achieved by it.
    The transfer of the social constructs of identity and trust into digital and computational concepts helps in designing and implementing large scale online markets and communities,and also plays an important role in the converging mobile and Internet environments.Identity management (denoted Idm hereafter ) is about recognizing and verifying the correctness of identitied in online environment .Trust management becomes a component of (  )whenever different parties rely on each other for identity provision and authentication . IdM and Trust management therefore depend on each other in complex ways because the correctness of the identity itself must be trusted for the quality and reliability of the corresponding entity to be trusted.IdM is also an essential concept when defining  authorisation policies in personalised services.
    Establishing trust always has a cost, so that having  complex trust requirement typically leads to high overhead in establishing the required trust. To reduce costs there will be incentives for stakeholders to “cut corners”regarding trust requirements ,which could lead to inadequate security . The challenge is to design IdM systems with relatively simple trust requirements.Cryptographic mechanisms are often a core component of IdM solutions,for example,for entity and data authentication.With cryptography,it is often possible to propagate trust from where it initially exists to where it is needed .The establishment of initial(  )usually takes place in the physical world,and the subsequent propagation of trust happens online,often in an automated manner.
    (71)A.with
    B. on
    C. of
    D. for
    (72)A.entity
    B.person
    C.component
    D.thing
    (73)A. No longer
    B. never
    C. always
    D.often
    (74)A. SP
    B. IdM
    C.Internet
    D.entity
    (75)A.trust
    B.cost
    C.IdM
    D. solution

    查看答案

    試題參考答案:D、C、A、B、A

    試題解析與討論:www.njjt123.com/st/389944612.html

  • 試題8

    在我國,依據《中華人民共和國標準化法》可以將標準劃分為:國家標準、行業(yè) 標準、地方標準和企業(yè)標準4個層次?!缎畔踩夹g信息系統安全等級保護基本要求》 (GB/T 22239-2008)屬于(  )。
    A.國家標準
    B.行業(yè)標準
    C.地方標準
    D.企業(yè)標準

    查看答案

    試題參考答案:A

    試題解析與討論:www.njjt123.com/st/411391775.html

  • 試題9

    掃描技術()
    A、只能作為攻擊工具
    B、只能作為防御工具
    C、只能作為檢查系統漏洞的工具
    D、既可以作為攻擊工具,也可以作為防御工具

    查看答案

    試題參考答案:D

    試題解析與討論:www.njjt123.com/st/2850528262.html

  • 試題10

    ISO制定的安全體系結構描述了5種安全服務,以下不屬于這5種安全服務的是()
    A.鑒別服務
    B.數據報過濾
    C.訪問控制
    D.數據完整性

    查看答案

    試題參考答案:B

    試題解析與討論:www.njjt123.com/st/3270424021.html

信管網訂閱號

信管網視頻號

信管網抖音號

溫馨提示:因考試政策、內容不斷變化與調整,信管網網站提供的以上信息僅供參考,如有異議,請以權威部門公布的內容為準!

信管網致力于為廣大信管從業(yè)人員、愛好者、大學生提供專業(yè)、高質量的課程和服務,解決其考試證書、技能提升和就業(yè)的需求。

信管網軟考課程由信管網依托10年專業(yè)軟考教研傾力打造,教材和資料參編作者和資深講師坐鎮(zhèn),通過深研歷年考試出題規(guī)律與考試大綱,深挖核心知識與高頻考點,為學員考試保駕護航。面授、直播&錄播,多種班型靈活學習,滿足不同學員考證需求,降低課程學習難度,使學習效果事半功倍。

相關內容

發(fā)表評論  查看完整評論  

推薦文章

精選

課程

提問

評論

收藏