更多“What are three valid match criteria in a firewall filter applied to a Layer 3 interface?()A、IP addressB、MAC addressC、protocolD、portE、session ID”相关问题
  • 第1题:

    What does a Layer 2 switch use to decide where to forward a received frame?()

    A. source MAC address

    B. source IP address

    C. source switch port

    D. destination IP address

    E. destination port address

    F. destination MAC address


    参考答案:F

  • 第2题:

    What are the three things that the Netflow uses to consider the traffic to be in a same flow ?()

    A.IP address

    B.Interface name

    C.Port numbers

    D.L3 protocol type

    E.mac address


    参考答案:A, C, D

  • 第3题:

    A packet is evaluated against three user-defined terms within a firewall filter and no match is found. What correctly describes the action the firewall filter will take for this packet?()

    • A、The filter will permit the packet and take no additional action
    • B、The filter will reject the packet and send an ICMP message back to the sender
    • C、The filter will discard the packet and take no additional action
    • D、The filter will permit the packet and write a log entry to the firewall log

    正确答案:C

  • 第4题:

    What are three values that must be the same within a sequence of packets for Netflow to consider them a network flow?()

    • A、source IP address
    • B、source MAC address
    • C、egress interface
    • D、ingress interface
    • E、destination IP address
    • F、IP next-hop

    正确答案:A,D,E

  • 第5题:

    Which three statements about firewall modes are correct? ()

    • A、 A firewall in routed mode has one IP address
    • B、 A firewall in transparent mode has one IP address
    • C、 In routed mode, the firewall is considered to be a Layer 2 dew
    • D、 In routed mode, the firewall is considered to be a Layer 3 device
    • E、 In transparent mode, the firewall is considered to be a Layer 2 device
    • F、 In transparent mode, the firewall is considered to be a Layer 3 device

    正确答案:A,D,E

  • 第6题:

    What information is used by a switch to forward an Ethernet frame to its destination?()

    • A、IP address
    • B、destination MAC address
    • C、ARP table entry
    • D、FCS checksum

    正确答案:B

  • 第7题:

    What is the purpose of the inverse ARP?()

    • A、to map a known DLCI to an IP address
    • B、to map a known IP address to a MAC address
    • C、to map known SPID to a MACaddress
    • D、to map a known DLCI to a MAC address
    • E、to map a known IP address to a SPID
    • F、to map a known MAC address to an IP address

    正确答案:A

  • 第8题:

    Which three statements about IOS Firewall configurations are true?()

    • A、The IP inspection rule can be applied in the inbound direction on the secured interface.
    • B、The IP inspection rule can be applied in the outbound direction on the unsecured interface.
    • C、The ACL applied in the outbound direction on the unsecured interface should be an extended ACL.
    • D、The ACL applied in the inbound direction on the unsecured interface should be an extended ACL.
    • E、For temporary openings to be created dynamically by Cisco IOS Firewall,the access-list for thereturning traffic must be a standard ACL.
    • F、For temporary openings to be created dynamically by Cisco IOS Firewall,the IP inspection rule must be applied to the secured interface.

    正确答案:A,B,D

  • 第9题:

    What are the three things that the Netflow uses to consider the traffic to be in a same flow ?()

    • A、IP address
    • B、Interface name
    • C、Port numbers
    • D、L3 protocol type
    • E、mac address

    正确答案:A,C,D

  • 第10题:

    A firewall filter is applied as an input filter on a transit interface. What three types of traffic will this affect? ()

    • A、inbound traffic transiting the router
    • B、outbound traffic transiting the router
    • C、traffic destined to the Routing Engine
    • D、traffic destined to the interface address on which the filter is applied

    正确答案:A,C,D

  • 第11题:

    多选题
    What are three valid match criteria in a firewall filter applied to a Layer 3 interface?()
    A

    IP address

    B

    MAC address

    C

    protocol

    D

    port

    E

    session ID


    正确答案: E,A
    解析: 暂无解析

  • 第12题:

    多选题
    Which three statements about IOS Firewall configurations are true?()
    A

    The IP inspection rule can be applied in the inbound direction on the secured interface.

    B

    The IP inspection rule can be applied in the outbound direction on the unsecured interface.

    C

    The ACL applied in the outbound direction on the unsecured interface should be an extended ACL.

    D

    The ACL applied in the inbound direction on the unsecured interface should be an extended ACL.

    E

    For temporary openings to be created dynamically by Cisco IOS Firewall,the access-list for thereturning traffic must be a standard ACL.

    F

    For temporary openings to be created dynamically by Cisco IOS Firewall,the IP inspection rule must be applied to the secured interface.


    正确答案: A,D
    解析: 暂无解析

  • 第13题:

    What are three values that must be the same within a sequence of packets for Netflow to consider them a network flow?()

    A.source IP address

    B.source MAC address

    C.egress interface

    D.ingress interface

    E.destination IP address

    F.IP next-hop


    参考答案:A, D, E

  • 第14题:

    What is the purpose of the inverse ARP?()

    • A、to map a known DLCI to an IP address
    • B、to map a known IP address to a MAC address
    • C、to map known SPID to a MAC address
    • D、to map a known DLCI to a MAC address
    • E、to map a known IP address to a SPID
    • F、to map a known MAC address to an IP address

    正确答案:A

  • 第15题:

    What is the purpose of the inverse ARP?()

    • A、to map a known DLCI to an IP address
    • B、to mapa known IP address to a MAC address
    • C、to map known SPID toa MAC address
    • D、to map a known DLCI to a MAC address
    • E、to map a known IP address to a SPID
    • F、to mapa known MAC address to an IP address

    正确答案:A

  • 第16题:

    What does the mac packet-classify command do when applied to an interface configuration?()

    • A、 It enables MAC ACLs to be applied to only IP packets that enter the interface.
    • B、 It enables MAC ACLs to be applied to only non-IP packets that enter the interface.
    • C、 It enables MAC ACLs to be applied to all packets that enter the interface.
    • D、 It enables MAC ACLs to be used for QoS settings.

    正确答案:C

  • 第17题:

    You have a firewall filter containing two terms applied in an inbound direction on a customer interface.You would like this filter to protect your network from a spoofed denial of service attack. Which match criterion should be configured ito identify unwanted packets?()

    • A、from source-port
    • B、from source-address
    • C、from destination-address
    • D、from destination-port

    正确答案:B

  • 第18题:

    What is a vaild match criteria for a firewall filter?()

    • A、from protocol tcp
    • B、from url
    • C、from community
    • D、from acl

    正确答案:A

  • 第19题:

    What does a Layer 2 switch use to decide where to forward a received frame?()

    • A、source MAC address
    • B、source IP address
    • C、source switch port
    • D、destination IP address
    • E、destination port address
    • F、destination MAC address

    正确答案:F

  • 第20题:

    A standard access control list has been configured on a router and applied to interface Serial 0 in anoutbound direction. No ACL is applied to Interface Serial 1 on the same router. What will happen whentraffic being filtered by the access list does not match the configured ACL statements for Serial 0?()

    • A、The traffic is dropped
    • B、The resulting action is determined by the destination IP address
    • C、The source IP address is checked,and,if a match is not found, traffic is routed out interface Serial 1
    • D、The resulting action is determined by the destination IP address and port number

    正确答案:A

  • 第21题:

    You have a firewall filter containing two terms applied in an inbound direction on a customer interface. You would like this filter to protect your network from a spoofed denial of service attack. What match criterion should be used in the first term of the filter?()

    • A、Source TCP port
    • B、Source IP address
    • C、Destination TCP port
    • D、Destination IP address

    正确答案:B

  • 第22题:

    单选题
    You have a firewall filter containing two terms applied in an inbound direction on a customer interface. You would like this filter to protect your network from a spoofed denial of service attack. What match criterion should be used in the first term of the filter?()
    A

    Source TCP port

    B

    Source IP address

    C

    Destination TCP port

    D

    Destination IP address


    正确答案: C
    解析: 暂无解析

  • 第23题:

    单选题
    What does the mac packet-classify command do when applied to an interface configuration?()
    A

     It enables MAC ACLs to be applied to only IP packets that enter the interface.

    B

     It enables MAC ACLs to be applied to only non-IP packets that enter the interface.

    C

     It enables MAC ACLs to be applied to all packets that enter the interface.

    D

     It enables MAC ACLs to be used for QoS settings.


    正确答案: B
    解析: 暂无解析