multiple layers of firewalling
a method of operating firewalls from multiple vendors
firewall connections in either an active or standby state
an architecture in which all traffic between firewalls goes through application-specific servers
an architecture in which all traffic between firewalls goes through application-specific gateways
第1题:
Which unique characteristics of the Data Center Aggregation layer must be considered by an Enterprise Campus designer?()
第2题:
What is meant by the term "firewall sandwich"?()
第3题:
Your network contains one Active Directory domain. You have a member server that runs Windows Server 2008.You need to immediately disable all incoming connections to the server. What should you do?()
第4题:
Which of the following is the BEST reason to implement a firewall on a server?()
第5题:
You have a server that runs Windows Server 2008. You need to prevent the server from establishing communication sessions to other computers by using TCP port 25. What should you do()
第6题:
Your network contains one Active Directory domainl. You have a member server that runs Windows Server 2008. You need to immediately disable all incoming connections to the server. What should you do?()
第7题:
Your company has computers in multiple locations that use IPv4 and IPv6. Each location is protected by a firewall that performs symmetric NAT. You need to allow peer-to-peer communication between all locations. What should you do?()
第8题:
Allow all inbound VPN traffic to pass through the internal firewall and the perimeter firewall.
Allow all inbound VPN traffic to pass through the perimeter firewall only.
Allow all VPN traffic from the source IP address of 131.107.1.14 to pass through the internal firewall.
Allow all VPN traffic from the source IP address of 191.168.1.0/24 to pass through the perimeter firewall.
第9题:
From Windows Firewall, add an exception
From windows Firewall enable the block all incoming connections option
From the Windows Firewall with Advanced Security snap-in, create an inbound rule
From the Windows Firewall with Advanced Security snap-in, create an outbound rule.
第10题:
Configure dynamic NAT on the firewall.
Configure the firewall to allow the use of Teredo.
Configure a link local IPv6 address for the internal interface of the firewall.
Configure a global IPv6 address for the external interface of the firewall.
第11题:
Configure dynamic NAT on the firewall
Configure the firewall to allow the use of Teredo
Configure a link local IPv6 address for the internal interface of the firewall
Configure a global IPv6 address for the external interface of the firewall
第12题:
53
135
500
3389
第13题:
It’s a configuration that experts are calling a "firewall sandwich," with the second firewall providinga second level of load balancing after traffic down. What is meant by the term "firewall sandwich"?()
第14题:
Which two statements are true about firewall filter configurations?()
第15题:
What is a virtual firewall?()
第16题:
While performing a site survey to document the existing environment before implementing a new HACMP cluster, it was discovered that a port filtering firewall was being used to protect the production system. The plan is to continue using the firewall and add a second firewall to avoid a single point of failure. Each node in the two-node cluster will have all of its network adapters connected to the firewalls, and all connections to the nodes will pass through these firewalls. What must be considered about HACMP in a firewall environment?()
第17题:
Your network contains one Active Directory domain. You have a member server that runs Windows Server 2008 R2.You need to immediately disable all incoming connections to the server. What should you do?()
第18题:
You are designing a strategy to allow users to gain VPN access to the internal network. What should you do?()
第19题:
single layer of firewalling
multiple layers of firewalling
firewall connections in either an active or standby state
an architecture in which all traffic between firewalls goes through application-specific servers
第20题:
Firewalls are not supported in a HACMP environment.
HACMP uses only TCP/IP so firewalls are not relevant.
Specific ports must be open for HACMP communications.
Dynamic routing must be used to properly route packets in a firewall-protected environment.
第21题:
Layer 3 routing between the Access and Aggregation layers facilities the ability to span VLANsacross multiple access switches, which is a requirement for many server virtualization andclustering technologies.
“East-west” server-to-server traffic can travel between aggregation modules by way of the core,but backup and replication traffic typically remains within an aggregation module.
Load balancing, firewall service, and other network service are commonly integrated by the useof service modules that are inserted in the aggregation switched.
Virtualization tools allow a cost effective approach for redundancy in the network design byusing two or four VDCs from the same physical switch.
第22题:
Allow all inbound VPN traffic to pass through the internal firewall and the perimeter firewall.
Allow all inbound VPN traffic to pass through the perimeter firewall only.
Allow all VPN traffic from the source IP address of 131.107.1.14 to pass through the internal firewall.
Allow all VPN traffic from the source IP address of 191.168.1.0/24 to pass through the perimeter firewall.
第23题:
another name for a firewall deployed in routed mode
another name for a firewall deployed in transparent mode
a separation of multiple firewall security contexts on a single firewall
a firewall that, when deployed in routed mode, can support up to 1000 VLANs per context
a firewall that has multiple contexts, all of which share the same policies (such as NAT and ACLs)