A.Disable post scan
B.Use SSH or SSL
C.Enable trust levels
D.Deny echo replies on all edge routers
您可能感興趣的試卷
你可能感興趣的試題
Network Topology Exhibit:
Configuration Exhibit:
NET(config)# access-list 112 deny icmp any any echo log
NET(config)# access-list 112 deny imp any any redirect log
NET(config)# access-list 112 deny icmp any any mask-request log
NET(config)# access-list 112 permit icmp any 10.1.1.0 0.0.0.255
NET(config)# interface Fa0/1
NET(config-if)# ip access-group 112 in
You work as a network administrator at networkTut.com, study the exhibit carefully. The
configuration has been applied to router NET to mitigate the threat of certain types of ICMPbasedattacks while allowing some ICMP traffic to the corporate LAN to work. However, the configurationis incorrect. On the basis of the information in the exhibit, which configuration option wouldcorrectly configure router NET?()
A.The first three statements of ACL 112 should have permitted the ICMP traffic and the laststatement should deny the identified traffic
B.The last statement of ACL 112 should have been "access-list 112deny icmp any 10.2.1.00.0.0.255"
C.The last statement of ACL 112 should have been "access-list 112permit icmp any 10.2.1.00.0.0.255"
D.ACL 112 should have been applied to interface Fa0/0 in an inbound direction
E.The last statement of ACL 112 should have been "access-list 112deny icmp any 10.1.1.00.0.0.255"
F.ACL 112 should have been applied to interface Fa0/1 in an outbound direction
G.None of the above
A.The dsl operating-mode auto command is required if the default mode has been changed
B.The ip mtu 1496 command must be applied on the dialer interface
C.The encapsulation ppp command is required
D.The ip mtu 1492 command must be applied on the dialer interface
As a network engineer, study the exhibit carefully. Router Net is unable to establish an ADSLconnection with its provider. Which action would correct this problem?()
A.On the Dialer0 interface, add the pppoe enable command
B.On the Dialer0 Interface, add the ip mtu 1496 command
C.On the ATM0/0 interface, add the dialer pool-member 1 command
D.On the ATM0/0 interface, add the dialer pool-member 0 command
Router NetworkTut is configured as shown below:
Given the above configuration, which statement is true?()
A.This device is configured as a PPPoE client
B.This device is configured as a PPPoA client
C.This device is configured as RFC 1483/2684bridge
D.This device is configured an an aggregation router
A.PPPoE with the 827 configured as a bridge
B.PPPoE with the 827 configured as the PPPoE client
C.PPPoA
D.RFC 1483 Bridged with the 827 configured as the PPPoE client
E.RFC 1482 Bridged with the 827 configured as a bridge
A.The IP inspection rule can be applied in the inbound direction on the secured interface
B.The IP inspection rule can be applied in the outbound direction on the unsecured interface
C.The ACL applied in the inbound direction on the unsecured interface should be an extendedACL.
D.For temporary openings to be created dynamically by Cisco IOS Firewall, the access-list for thereturning traffic must be a standard ACL
Study this exhibit carefully. What information can be derived from the SDM firewall configurationdisplayed?()
A.Access-list 101 was configured for the trusted interface, and access-list 100 was configured forthe untrusted interface
B.Access-list 100 was configured for the trusted interface, and access-list 101 was configured forthe untrusted interface
C.Access-list 100 was configured for the inbound direction, and access-list 101 was configured forthe outbound direction on the trusted interface
D.Access-list 100 was configured for the inbound direction, and access-list 101 was configured forthe outbound direction on the untrusted interface
This item contains several questions that you must answer. You can view these questions byclicking on the Questions button to the left. Changing questions can be accomplished by clickingthe numbers to the left of each question. In order to complete the questions, you will need to referto the SDM and the topology, neither of which is currently visible. To gain access to either thetopology or the SDK click on the button to left side of the screen that corresponds to the sectionyou wish to access. When you have finished viewing the topology the SDK you can return to yourquestions by clicking on the Questions button to the left.
Which IPSec rule is used for the Olympia branch and what does it define?()
A.102
B.116
C.127
D.IP traffic sourced from 10.10.10.0/24 destined to 10.5.15.0/24 will use the VPN
E.IP traffic sourced from 10.10.10.0/24 destined to 10.8.28.0/24 will use the VPN
F.IP traffic sourced from 10.10.10.0/24 destined to 10.5.33.0/24 will use the VPN
This item contains several questions that you must answer. You can view these questions byclicking on the Questions button to the left. Changing questions can be accomplished by clicking the numbers to the left of each question. In order to complete the questions, you will need to referto the SDM and the topology, neither of which is currently visible.
To gain access to either the topology or the SDK click on the button to left side of the screen thatcorresponds to the section you wish to access. When you have finished viewing the topology theSDK you can return to your questions by clicking on the Questions button to the left.
Which defined peer IP address an local subnet belong to Crete?()
A.peer address 192.168.55.159
B.peer address 192.168.89.192
C.peer address 192.168.195.23
D.subnet 10.5.15.0/24
E.subnet 10.7.23.0/24
F.subnet 10.4.38.0/24
This item contains several questions that you must answer. You can view these questions byclicking on the Questions button to the left. Changing questions can be accomplished by clickingthe numbers to the left of each question. In order to complete the questions, you will need to referto the SDM and the topology, neither of which is currently visible. To gain access to either thetopology or the SDK click on the button to left side of the screen that corresponds to the sectionyou wish to access. When you have finished viewing the topology the SDK you can return to yourquestions by clicking on the Questions button to the left.
Which algorithm as defined by the transform set is used for providing data confidentiality whenconnected to Tyre?()
A.ESP-3DES-SHA
B.ESP-3DES-SHA1
C.ESP-3DES-SHA2
D.ESP-3DES
E.ESP-SHA-HMAC
最新試題
Drag and drop each management protocol on the above to the correct category on the below.
Study the exhibit carefully. The Cisco IOS IPsec High Availability (IPsec HA) Enhancementsfeature provides an infrastructure for reliable and secure networks to provide transparent availability of the VPN gateways - that is, Cisco IOS Software-based routers. What are the twooptions that are used to provide High Availability IPsec?()
Refer to the exhibit. Which two statements about the AAA configuration are true?()
In computer security, AAA stands for authentication, authorization and accounting. Which optionabout the AAA authentication enable default group radius enable command is correct?()
Authentication is the process of determining if a user or identity is who they claim to be. Refer tothe exhibit. Which statement about the authentication process is correct?()
This item contains several questions that you must answer. You can view these questions byclicking on the Questions button to the left. Changing questions can be accomplished by clickingthe numbers to the left of each question. In order to complete the questions, you will need to referto the SDM and the topology, neither of which is currently visible. To gain access to either thetopology or the SDK click on the button to left side of the screen that corresponds to the sectionyou wish to access. When you have finished viewing the topology the SDK you can return to yourquestions by clicking on the Questions button to the left.Which IPSec rule is used for the Olympia branch and what does it define?()
Drag and drop each function on the above to the hybrid fiber-coaxial architecture component that itdescribes on the below.
Identify the recommended steps for worm attack mitigation by dragging and dropping them into thetarget area in the correct order.
As a network engineer, do you know for what purpose SDM uses Security Device Event Exchange(SDEE)?()
A new router was configured with the following commands:The configuration above was found on an Internet Service Provider’s (ISP) Multiprotocol LabelSwitching (MPLS) network. What is its purpose?()