[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fhg8PXND01ew0hABGDKzclYWjtTVS1vYgpTsiNSwKLOM":3},{"id":4,"source":5,"question":6,"options":7,"answer":12,"related":13,"type":24,"origin":111,"createTime":26},187254922,"v1","在代理服务中,有许多不同类型的代理服务方式,以下描述正确的是",[8,9,10,11],"应用级网关","电路级网关","公共代理服务器","专用代理服务器",[],[14,27,37,47,57,67,77,87,97,101],{"id":15,"source":5,"question":16,"options":17,"answer":22,"related":23,"type":24,"origin":25,"createTime":26},187254909,"外部数据是指除本地设备以外的数据,以下属于外部数据的是( )",[18,19,20,21],"安全云端提供特征库升级数据","病毒云查杀结果","情报对撞结果","威胁感知系统或沙箱检测提供的安全防护策略",[],[],1,null,"2025-05-12T10:41:56+08:00",{"id":28,"source":5,"question":29,"options":30,"answer":35,"related":36,"type":24,"origin":25,"createTime":26},187254910,"高可用性是通过系统的( )来度量的.高可用性可防止网络中由于单个防火墙的设备故障或网络故障导致网络中断,从而保证网络服务的连续性和安全强度",[31,32,33,34],"可靠性","可维护性","可扩展性","可持续性",[],[],{"id":38,"source":5,"question":39,"options":40,"answer":45,"related":46,"type":24,"origin":25,"createTime":26},187254911,"AAA基本模型分为( )等部分",[41,42,43,44],"用户","NAS","认证服务器","账号",[],[],{"id":48,"source":5,"question":49,"options":50,"answer":55,"related":56,"type":24,"origin":25,"createTime":26},187254912,"下一代防火墙提供了智能策略功能,利用( )等协同实现安全策略智能管理",[51,52,53,54],"策略冗余分析","策略命中分析","应用风险调优","访问控制列表",[],[],{"id":58,"source":5,"question":59,"options":60,"answer":65,"related":66,"type":24,"origin":25,"createTime":26},187254914,"ACL技术中访问控制列表对数据包的( )等进行检查,并根据数据包是否匹配访问控制列表规定的条件来决定是否允许数据包通过",[61,62,63,64],"源地址","目的地址","端口号","协议号",[],[],{"id":68,"source":5,"question":69,"options":70,"answer":75,"related":76,"type":24,"origin":25,"createTime":26},187254916,"下一代防火墙进行细粒度的关键字过滤的方法包括",[71,72,73,74],"基于\"流\"而不仅是报文识别应用流量,防止报文分层、分片等躲避方式的干扰,准确识别需要检查的流量","准确识别出\"真正的\"文件类型,进而对文件内容进行过滤","支持多层解压后的文件类型识别和内容过滤","支持对邮件、HTTP、FTP、IM、SNS等传输的文件和文本内容进行识别过滤,并能准确识别Word、Excel、PPT、PDF等常用的存储信息的文件类型",[],[],{"id":78,"source":5,"question":79,"options":80,"answer":85,"related":86,"type":24,"origin":25,"createTime":26},187254918,"某公司选择采用IPSec协议作为公司分支机构连接内部网VPN的安全协议.以下那几条是对IPSec的正确的描述",[81,82,83,84],"它对主机和端点进行身份鉴别","保证数据在通过网络传输时的完整性","在隧道模式下,信息封装隐藏了路由信息","加密IP地址和数据以保证私有性",[],[],{"id":88,"source":5,"question":89,"options":90,"answer":95,"related":96,"type":24,"origin":25,"createTime":26},187254920,"相比较代理技术,包过滤技术的缺点包括",[91,92,93,94],"在机器上配置和测试包过滤比较困难","\"包过滤技术无法与UNIX的\"r\"\"命令和NFS、NIS\u002FYP协议的RPC协调.\"","包过滤无法区分信息是哪个用户的信息,无法过滤用户","包过滤技术只能通过在客户机特别的设置才能实现",[],[],{"id":4,"source":5,"question":6,"options":98,"answer":99,"related":100,"type":24,"origin":25,"createTime":26},[8,9,10,11],[],[],{"id":102,"source":5,"question":103,"options":104,"answer":109,"related":110,"type":24,"origin":25,"createTime":26},187254923,"应用级代理网关相比包过滤技术具有的优点有",[105,106,107,108],"提供可靠的用户认证和详细的注册信息","便于审计和日志","隐藏内部IP地址","应用级网关安全性能较好,可防范操作系统和应用层的各种安全漏洞",[],[],{"courseName":112,"courseImg":113,"workName":114,"workId":115,"count":116,"courseId":117},"防火墙部署与维护技术","https:\u002F\u002Ftihai-oss-cloud.itihey.com\u002Fimg\u002F48eba3395437dd881b1b9275a0ad1028.png","专题十三 积极践行社会主义核心价值观","work_43402953",68,"d7c445194bd751d87b7372b014f858ca"]