Regarding secure tunnel (st) interfaces, which statement is true?()A、You cannot assign st interfaces to a security zone.B、You cannot apply static NAT on an st interface logical unit.C、st interfaces are optional when configuring a route-based VPND、A static

题目

Regarding secure tunnel (st) interfaces, which statement is true?()

  • A、You cannot assign st interfaces to a security zone.
  • B、You cannot apply static NAT on an st interface logical unit.
  • C、st interfaces are optional when configuring a route-based VPN
  • D、A static route can reference the st interface logical unit as the next-hop

相似考题
参考答案和解析
正确答案:D
更多“Regarding secure tunnel (st) interfaces, which statement is true?()A、You cannot assign st interfaces to a security zone.B、You cannot apply static NAT on an st interface logical unit.C、st interfaces are optional when configuring a route-based VPND、A static”相关问题
  • 第1题:

    You wish to increase the security of all of the routers within your network. What can be done to secure the virtual terminal interfaces on a router?()

    A. Administratively shut down the interface.

    B. Physically secure the interface.

    C. Create an access list and apply it to the virtual terminal interfaces with the access-group command.

    D. Configure a virtual terminal password and login process.

    E. Enter an access list and apply it to the virtual terminal interfaces using the access-class command.


    参考答案:D, E

  • 第2题:

    You wish to increase the security of all of the routers within your network. What can be done to secure the virtual terminal interfaces on a router?()

    • A、Administratively shut down the interface.
    • B、Physically secure the interface.
    • C、Create an access list and apply it to the virtual terminal interfaces with the access-group command.
    • D、Configure a virtual terminal password and login process.
    • E、Enter an access list and apply it to the virtual terminal interfaces using the access-class command.

    正确答案:D,E

  • 第3题:

    Which of the following solutions will encapsulate IPv6 packets with IPv4 headers?()

    • A、Create an IPv4 tunnel and assign the tunnel IPv6 addresses
    • B、Create IPv4 interfaces on both ends of the network, and use either static routes or a routingprocess to direct IPv6 packets through those interfaces
    • C、IPv6 packets cannot be encapsulated with IPv4 headers because the addresses are notcompatible
    • D、Create IFV6 interfaces on both ends of the network, and use static routes to point the IPv4address to those interfaces
    • E、Use an IPv6 routing protocol like OSPFv3 and assign IPv4 packets to that process
    • F、Create an IPv4 tunnel and use the tunnel mode ipv6ip command

    正确答案:F

  • 第4题:

    Which interface is used for RTO synchronization and forwarding traffic between the devices in a cluster?()

    • A、the st interface
    • B、the reth interface
    • C、the fxp1 and fxp0 interfaces
    • D、the fab0 and fab1 interfaces

    正确答案:D

  • 第5题:

    Which can be done to secure the virtual terminal interfaces on a router?()

    • A、Administratively shut down the interfaces.
    • B、Physically secure the interfaces.
    • C、Configure a virtual terminal password and login process.
    • D、Enter an access list and apply it to the terminal interfaces using the access-class command.
    • E、Create an access list and apply it to the terminal interfaces using the access-group command

    正确答案:C,D

  • 第6题:

    Which two steps are performed when configuring a zone?()

    • A、Define a default policy for the zone.
    • B、Assign logical interfaces to the zone.
    • C、Assign physical interfaces to the zone.
    • D、Define the zone as a security or functional zone

    正确答案:B,D

  • 第7题:

    You want to create an out-of-band management zone and assign the ge-0/0/0.0 interface to that zone.From the [edit] hierarchy, which command do you use to configure this assignment?()

    • A、set security zones management interfaces ge-0/0/0.0
    • B、set zones functional-zone management interfaces ge-0/0/0.0
    • C、set security zones functional-zone management interfaces ge-0/0/0.0
    • D、set security zones functional-zone out-of-band interfaces ge-0/0/0.0

    正确答案:C

  • 第8题:

    Which command would you type to see a concise display of which interfaces are up and which are down?()

    • A、show interfaces brief
    • B、show interfaces status
    • C、show ip interface brief
    • D、show interfaces terse

    正确答案:D

  • 第9题:

    Regarding zone types, which statement is true?()

    • A、You cannot assign an interface to a functional zone.
    • B、You can specifiy a functional zone in a security policy.
    • C、Security zones must have a scheduler applied.
    • D、You can use a security zone for traffic destined for the device itself.

    正确答案:D

  • 第10题:

    多选题
    Which two statements are true about hierarchical architecture? ()(Choose two.)
    A

    You can assign a logical interface to multiple zones.

    B

    You cannot assign a logical interface to multiple zones.

    C

    You can assign a logical interface to multiple routing instances.

    D

    You cannot assign a logical interface to multiple routing instances.


    正确答案: B,C
    解析: 暂无解析

  • 第11题:

    单选题
    Regarding zone types, which statement is true?()
    A

    You cannot assign an interface to a functional zone.

    B

    You can specifiy a functional zone in a security policy.

    C

    Security zones must have a scheduler applied.

    D

    You can use a security zone for traffic destined for the device itself.


    正确答案: D
    解析: 暂无解析

  • 第12题:

    单选题
    Regarding secure tunnel (st) interfaces, which statement is true?()
    A

    You cannot assign st interfaces to a security zone.

    B

    You cannot apply static NAT on an st interface logical unit.

    C

    st interfaces are optional when configuring a route-based VPN

    D

    A static route can reference the st interface logical unit as the next-hop


    正确答案: D
    解析: 暂无解析

  • 第13题:

    Which can be done to secure the virtual terminal interfaces on a router?()

    A.Administratively shut down the interfaces.

    B.Physically secure the interfaces.

    C.Configure a virtual terminal password and login process.

    D.Enter an access list and apply it to the terminal interfaces using the access-class command.

    E.Create an access list and apply it to the terminal interfaces using the access-group command.


    参考答案:C, D

  • 第14题:

    You want to implement a high availability network using two Cisco routers. You also want to  ensure that the stat of the WAN interfaces can be tracked in doing so.  Which router redundancy  protocol cannot be configured for interface tracking? ()

    • A、 GLBP
    • B、 HSRP
    • C、 RPR
    • D、 VRRP
    • E、 SLB
    • F、 RPR+
    • G、 None of the other alternatives apply

    正确答案:D

  • 第15题:

    When devices are in cluster mode, which new interfaces are created?()

    • A、No new interface is created.
    • B、Only the st interface is created.
    • C、fxp1, fab0, and fab1 are created.
    • D、st,fxp1,reth,fab0,and fab1 are created.

    正确答案:C

  • 第16题:

    Which of these is true regarding the configuration and application of port access control lists? ()

    • A、PACLs can be applied in the inbound or outbound direction of a Layer 2 physical interface. 
    • B、At Layer 2, a MAC address PACL will take precedence over any existing Layer 3 PACL.
    • C、When you apply a port ACL to a trunk port, the ACL filters traffic on all VLANs present on the trunk port.
    • D、PACLs are not supported on EtherChannel interfaces.

    正确答案:D

  • 第17题:

    Which command would you use to view interface usage details in real time?()

    • A、show interfaces terse
    • B、show interfaces extensive
    • C、monitor interface traffic
    • D、monitor traffic interface

    正确答案:C

  • 第18题:

    Which two statements are correct regarding units in JUNOS?()

    • A、Units in JUNOS are always required for any interface configured with logical addresses such as IP and IPv6.
    • B、Units in JUNOS are only required when you are configuring sub-interfaces for inter-VLAN routing.
    • C、Unit numbers must match the DLCI or VCI numbers configured on the interface.
    • D、Unit 0 is the only value allowed on interfaces running HDLC, PPP, or for Ethernet interfaces not doing VLAN-tagging.

    正确答案:A,D

  • 第19题:

    Which two statements are true about hierarchical architecture? ()(Choose two.)

    • A、You can assign a logical interface to multiple zones.
    • B、You cannot assign a logical interface to multiple zones.
    • C、You can assign a logical interface to multiple routing instances.
    • D、You cannot assign a logical interface to multiple routing instances.

    正确答案:B,D

  • 第20题:

    Which operational command would you use to quickly verify the state of all interfaces?()

    • A、show interfaces terse
    • B、show interfaces
    • C、show configuration interfaces
    • D、show interface status

    正确答案:A

  • 第21题:

    单选题
    Which of the following solutions will encapsulate IPv6 packets with IPv4 headers?()
    A

    Create an IPv4 tunnel and assign the tunnel IPv6 addresses

    B

    Create IPv4 interfaces on both ends of the network, and use either static routes or a routingprocess to direct IPv6 packets through those interfaces

    C

    IPv6 packets cannot be encapsulated with IPv4 headers because the addresses are notcompatible

    D

    Create IFV6 interfaces on both ends of the network, and use static routes to point the IPv4address to those interfaces

    E

    Use an IPv6 routing protocol like OSPFv3 and assign IPv4 packets to that process

    F

    Create an IPv4 tunnel and use the tunnel mode ipv6ip command


    正确答案: E
    解析: 暂无解析

  • 第22题:

    单选题
    You want to implement a high availability network using two Cisco routers. You also want to  ensure that the stat of the WAN interfaces can be tracked in doing so.  Which router redundancy  protocol cannot be configured for interface tracking? ()
    A

     GLBP

    B

     HSRP

    C

     RPR

    D

     VRRP

    E

     SLB

    F

     RPR+

    G

     None of the other alternatives apply


    正确答案: C
    解析: 暂无解析

  • 第23题:

    多选题
    Which two steps are performed when configuring a zone?()
    A

    Define a default policy for the zone.

    B

    Assign logical interfaces to the zone.

    C

    Assign physical interfaces to the zone.

    D

    Define the zone as a security or functional zone


    正确答案: D,B
    解析: 暂无解析