深夜成人在线,chinese国产一区二区,欧美精品乱码,日韩欧美在线视频免费观看,国产午夜不卡,日韩av影院在线,五月天婷婷国产精品

專業(yè)信息安全工程師網(wǎng)站|服務(wù)平臺|服務(wù)商(信息安全工程師學習QQ群:327677606,客服QQ:800184589)

軟題庫 學習課程
當前位置:信管網(wǎng) >> 信息安全工程師 >> 每日一練 >> 文章內(nèi)容
信息安全工程師每日一練試題(2023/5/28)

信息安全工程師當天每日一練試題地址:m.ichunya.com/exam/ExamDay.aspx?t1=6

往期信息安全工程師每日一練試題匯總:m.ichunya.com/class/27/e6_1.html

信息安全工程師每日一練試題(2023/5/28)在線測試:m.ichunya.com/exam/ExamDay.aspx?t1=6&day=2023/5/28

點擊查看:更多信息安全工程師習題與指導

信息安全工程師每日一練試題內(nèi)容(2023/5/28)

  • 試題1

    安全電子交易協(xié)議SET是由VISA和MasterCard兩大信用卡組織聯(lián)合開發(fā)的電子商務(wù)安全協(xié)議。以下關(guān)于SET的敘述中,不正確的是(  )。
    A. SET協(xié)議中定義了參與者之間的消息協(xié)議
    B.SET協(xié)議能夠解決多方認證問題
    C.SET協(xié)議規(guī)定交易雙方通過問答機制獲取對方的公開密鑰
    D.在SET中使用的密碼技術(shù)包括對稱加密、數(shù)字簽名、數(shù)字信封技術(shù)等

    查看答案

    試題參考答案:C

    試題解析與討論:m.ichunya.com/st/411403607.html

  • 試題2

    WI-FI網(wǎng)絡(luò)安全接入是一種保護無線網(wǎng)絡(luò)安全的系統(tǒng),WPA加密模式不包括()
    A、WPA和WPA2
    B、WPA-PSK
    C、WEP
    D、WPA2-PSK

    查看答案

    試題參考答案:C

    試題解析與討論:m.ichunya.com/st/284804709.html

  • 試題3

    最小化配置服務(wù)是指在滿足業(yè)務(wù)的前提下,盡量關(guān)閉不需要的服務(wù)和網(wǎng)絡(luò)端口,以減少系統(tǒng)潛在的安全危害。以下實現(xiàn)Linux系統(tǒng)網(wǎng)絡(luò)服務(wù)最小化的操作,正確的是(   )。
    A.Inetd.conf的文件權(quán)限設(shè)置為644
    B.services的文件權(quán)限設(shè)置為600
    C.inetd.conf的文件屬主為root
    D.關(guān)閉與系統(tǒng)業(yè)務(wù)運行有關(guān)的網(wǎng)絡(luò)通信端口

    查看答案

    試題參考答案:C

    試題解析與討論:m.ichunya.com/st/52286269.html

  • 試題4

    在信息系統(tǒng)安全設(shè)計中,保證“信息及時且可靠地被訪問和使用”是為了達到保障信息系統(tǒng)()的目標。
    A.可用性
    B.保密性
    C.可控性
    D.完整性

    查看答案

    試題參考答案:A

    試題解析與討論:m.ichunya.com/st/502224443.html

  • 試題5

    數(shù)字簽名是對以數(shù)字形式存儲的消息進行某種處理,產(chǎn)生一種類似傳統(tǒng)手書簽名功效的信息處理過程。數(shù)字簽名最常見的實現(xiàn)方式是基于 (     )
    A.對稱密碼體制和哈希算法
    B.公鑰密碼體制和單向安全哈希算法
    C.序列密碼體制和哈希算法
    D.公鑰密碼體制和對稱密碼體制

    查看答案

    試題參考答案:B

    試題解析與討論:m.ichunya.com/st/5224026082.html

  • 試題6

    Snort是一款開源的網(wǎng)絡(luò)入侵檢測系統(tǒng),它能夠執(zhí)行實時流量分析和IP協(xié)議網(wǎng)絡(luò)的數(shù)據(jù)包記錄。以下不屬于Snort配置模式的是(  )。
    A.嗅探
    B.包記錄
    C.分布式入侵檢測
    D.網(wǎng)絡(luò)入侵檢測

    查看答案

    試題參考答案:C

    試題解析與討論:m.ichunya.com/st/4113418555.html

  • 試題7

    Trust is typically interpreted as a subjective belief in the reliability, honesty and  security  of an entity on which we depend ( )our welfare .In online environments we depend on a wide spectrun of things , ranging from computer hardware,software and data to people and organizations. A security solution always assumes certain entities function according to specific policies.To trust is precisely to make this sort of assumptions , hence , a trusted entity is the same as an entity that is assumed to function according to  policy . A consequence of this is that a trust component of a system must work correctly in order   for the security of that system to hold, meaning that when a trusted(  )fails , then the sytems and applications that depend on it can(  )be considered secure.An often cited articulation of this principle is:" a trusted system or component is one that can break your security policy” ( which happens when the trust system fails ). The same applies to a trusted party such as a service provider ( SP for short )that is , it must operate according to the agreed or assumed   policy in order to ensure the expected level of securty and quality of services . A paradoxical   conclusion to be drawn from this analysis is that security assurance may decrease when increasing the number of trusted components and parties that a service infrastructure depends on . This is because the security of an infrastructure consisting of many.
    Trusted components typically follows the principle of the weakest link , that is ,in many situations the the overall security can only be as strong as the least reliable or least secure of all the trusted components. We cannot avoid using trusted security components,but the fewer the better. This is important to understand when designing the  identity management architectures,that is, fewer the trusted parties in an identity management model , stronger the security that can be achieved by it.
    The transfer of the social constructs of identity and trust into digital and computational concepts helps in designing and implementing large scale online markets and communities,and also plays an important role in the converging mobile and Internet environments.Identity management (denoted Idm hereafter ) is about recognizing and verifying the correctness of identitied in online environment .Trust management becomes a component of (  )whenever different parties rely on each other for identity provision and authentication . IdM and Trust management therefore depend on each other in complex ways because the correctness of the identity itself must be trusted for the quality and reliability of the corresponding entity to be trusted.IdM is also an essential concept when defining  authorisation policies in personalised services.
    Establishing trust always has a cost, so that having  complex trust requirement typically leads to high overhead in establishing the required trust. To reduce costs there will be incentives for stakeholders to “cut corners”regarding trust requirements ,which could lead to inadequate security . The challenge is to design IdM systems with relatively simple trust requirements.Cryptographic mechanisms are often a core component of IdM solutions,for example,for entity and data authentication.With cryptography,it is often possible to propagate trust from where it initially exists to where it is needed .The establishment of initial(  )usually takes place in the physical world,and the subsequent propagation of trust happens online,often in an automated manner.
    (71)A.with
    B. on
    C. of
    D. for
    (72)A.entity
    B.person
    C.component
    D.thing
    (73)A. No longer
    B. never
    C. always
    D.often
    (74)A. SP
    B. IdM
    C.Internet
    D.entity
    (75)A.trust
    B.cost
    C.IdM
    D. solution

    查看答案

    試題參考答案:D、C、A、B、A

    試題解析與討論:m.ichunya.com/st/389944612.html

  • 試題8

    在我國,依據(jù)《中華人民共和國標準化法》可以將標準劃分為:國家標準、行業(yè) 標準、地方標準和企業(yè)標準4個層次?!缎畔踩夹g(shù)信息系統(tǒng)安全等級保護基本要求》 (GB/T 22239-2008)屬于(  )。
    A.國家標準
    B.行業(yè)標準
    C.地方標準
    D.企業(yè)標準

    查看答案

    試題參考答案:A

    試題解析與討論:m.ichunya.com/st/411391775.html

  • 試題9

    掃描技術(shù)()
    A、只能作為攻擊工具
    B、只能作為防御工具
    C、只能作為檢查系統(tǒng)漏洞的工具
    D、既可以作為攻擊工具,也可以作為防御工具

    查看答案

    試題參考答案:D

    試題解析與討論:m.ichunya.com/st/2850528262.html

  • 試題10

    ISO制定的安全體系結(jié)構(gòu)描述了5種安全服務(wù),以下不屬于這5種安全服務(wù)的是()
    A.鑒別服務(wù)
    B.數(shù)據(jù)報過濾
    C.訪問控制
    D.數(shù)據(jù)完整性

    查看答案

    試題參考答案:B

    試題解析與討論:m.ichunya.com/st/3270424021.html

信管網(wǎng)訂閱號

信管網(wǎng)視頻號

信管網(wǎng)抖音號

溫馨提示:因考試政策、內(nèi)容不斷變化與調(diào)整,信管網(wǎng)網(wǎng)站提供的以上信息僅供參考,如有異議,請以權(quán)威部門公布的內(nèi)容為準!

信管網(wǎng)致力于為廣大信管從業(yè)人員、愛好者、大學生提供專業(yè)、高質(zhì)量的課程和服務(wù),解決其考試證書、技能提升和就業(yè)的需求。

信管網(wǎng)軟考課程由信管網(wǎng)依托10年專業(yè)軟考教研傾力打造,教材和資料參編作者和資深講師坐鎮(zhèn),通過深研歷年考試出題規(guī)律與考試大綱,深挖核心知識與高頻考點,為學員考試保駕護航。面授、直播&錄播,多種班型靈活學習,滿足不同學員考證需求,降低課程學習難度,使學習效果事半功倍。

相關(guān)內(nèi)容

發(fā)表評論  查看完整評論  

推薦文章

精選

課程

提問

評論

收藏