多选题You have configured a firewall filter with a single term matching on packets with a source address in the 10.0.0.0/24 subnet. This term only includes the count action.Which two statements are true about traffic evaluated by this firewall filter?()APack

题目
多选题
You have configured a firewall filter with a single term matching on packets with a source address in the 10.0.0.0/24 subnet. This term only includes the count action.Which two statements are true about traffic evaluated by this firewall filter?()
A

Packets within the 10.0.0.0/24 subnet will be accepted.

B

Packets within the 10.0.0.0/24 subnet will be rejected.

C

Packets within the 10.0.0.0/24 subnet will be counted.

D

Packets within the 10.0.0.0/24 subnet will not be counted.


相似考题
更多“多选题You have configured a firewall filter with a single term matching on packets with a source address in the 10.0.0.0/24 subnet. This term only includes the count action.Which two statements are true about traffic evaluated by this firewall filter?()APack”相关问题
  • 第1题:

    Which two statements are correct about firewall filters in the Junos OS?()

    A. Firewall filters are stateless.

    B. Firewall filters are used to control routing information that is exchanged between devices.

    C. Firewall filters are used to control traffic passing through the device.

    D. Firewall filters can only be applied to traffic entering the device.


    参考答案:A, C

  • 第2题:

    A firewall filter is applied as an input filter on a transit interface. What three types of traffic will this affect? ()

    A. inbound traffic transiting the router

    B. outbound traffic transiting the router

    C. traffic destined to the Routing Engine

    D. traffic destined to the interface address on which the filter is applied


    参考答案:A, C, D

  • 第3题:

    You have a firewall filter containing two terms applied in an inbound direction on a customer interface.You would like this filter to protect your network from a spoofed denial of service attack. Which match criterion should be configured ito identify unwanted packets?()

    • A、from source-port
    • B、from source-address
    • C、from destination-address
    • D、from destination-port

    正确答案:B

  • 第4题:

    Which two statements are true when source/destination filters are enabled? ()(Choose two.)

    • A、Excluded traffic is not accelerated.
    • B、Excluded traffic is only compressed.
    • C、Source/destination filter applies to all traffic sent from LAN to WAN.
    • D、Source/destination filters work in packet interception mode using RIPv2.

    正确答案:A,C

  • 第5题:

    You have a firewall filter containing two terms applied in an inbound direction on a customer interface. You would like this filter to protect your network from a spoofed denial of service attack. What match criterion should be used in the first term of the filter?()

    • A、Source TCP port
    • B、Source IP address
    • C、Destination TCP port
    • D、Destination IP address

    正确答案:B

  • 第6题:

    You need to control SSH, HTTP, and Telnet access to an MX240 router through any interface. You have decided to use a firewall filter. How should you apply the firewall filter?()

    • A、as an outbound filter on interface fxp0
    • B、as an outbound filter on interface lo0
    • C、as an inbound filter on interface fxp0
    • D、as an inbound filter on interface lo0

    正确答案:D

  • 第7题:

    Which two statements are true about the primary address on an interface? ()

    • A、It is the address used by default as the local address for broadcast and multicast packets sourced locally and sent out of the interface
    • B、You use the primary address when you have multiple IP addresses belonging to the same subnet on the same inteface
    • C、It can be useful for selecting the local address used for packets sent out of unnumbered interfaces when multiple non-127 addresses are configured on the loopback interface
    • D、By default, the primary address on an interface is selected as the nmerically highest local address configured on the interface

    正确答案:A,C

  • 第8题:

    You are designing a strategy to allow users to gain VPN access to the internal network.  What should you do?()

    • A、 Allow all inbound VPN traffic to pass through the internal firewall and the perimeter firewall.
    • B、 Allow all inbound VPN traffic to pass through the perimeter firewall only.
    • C、 Allow all VPN traffic from the source IP address of 131.107.1.14 to pass through the internal firewall.
    • D、 Allow all VPN traffic from the source IP address of 191.168.1.0/24 to pass through the perimeter firewall.

    正确答案:B

  • 第9题:

    多选题
    A firewall filter is applied as an input filter on a transit interface. What three types of traffic will this affect? ()
    A

    inbound traffic transiting the router

    B

    outbound traffic transiting the router

    C

    traffic destined to the Routing Engine

    D

    traffic destined to the interface address on which the filter is applied


    正确答案: D,B
    解析: 暂无解析

  • 第10题:

    多选题
    Which two statements are true about firewall filter configurations?()
    A

    Multiple action modifiers can be included in the same term.

    B

    Only a single action modifier can be included in the same term.

    C

    If an action modifier exists without a terminating action, matching packets will be accepted.

    D

    If an action modifier exists without a terminating action, matching packets will be discarded.


    正确答案: D,A
    解析: 暂无解析

  • 第11题:

    多选题
    Which two statements are true about the primary address on an interface? ()
    A

    It is the address used by default as the local address for broadcast and multicast packets sourced locally and sent out of the interface

    B

    You use the primary address when you have multiple IP addresses belonging to the same subnet on the same inteface

    C

    It can be useful for selecting the local address used for packets sent out of unnumbered interfaces when multiple non-127 addresses are configured on the loopback interface

    D

    By default, the primary address on an interface is selected as the nmerically highest local address configured on the interface


    正确答案: B,C
    解析: 暂无解析

  • 第12题:

    多选题
    You have configured a firewall filter with a single term matching on packets with a source address in the 10.0.0.0/24 subnet. This term only includes the count action.Which two statements are true about traffic evaluated by this firewall filter?()
    A

    Packets outside the 10.0.0.0/24 subnet will be accepted.

    B

    Packets outside the 10.0.0.0/24 subnet will be rejected.

    C

    Packets outside the 10.0.0.0/24 subnet will be counted.

    D

    Packets outside the 10.0.0.0/24 subnet will not be counted.


    正确答案: B,A
    解析: 暂无解析

  • 第13题:

    By default, which command can be used to display information about packets that have been logged with the syslog firewall filter action?()

    A. show log

    B. show firewall

    C. show log messages

    D. show firewall log


    参考答案:C

  • 第14题:

    A packet is evaluated against three user-defined terms within a firewall filter and no match is found. What correctly describes the action the firewall filter will take for this packet?()

    • A、The filter will permit the packet and take no additional action
    • B、The filter will reject the packet and send an ICMP message back to the sender
    • C、The filter will discard the packet and take no additional action
    • D、The filter will permit the packet and write a log entry to the firewall log

    正确答案:C

  • 第15题:

    Which two statements are true about firewall filter configurations?()

    • A、Multiple action modifiers can be included in the same term.
    • B、Only a single action modifier can be included in the same term.
    • C、The default term within a firewall filter uses the discard action.
    • D、The default term within a firewall filter uses the reject action.

    正确答案:A,C

  • 第16题:

    You have configured a firewall filter with a single term matching on packets with a source address in the 10.0.0.0/24 subnet. This term only includes the count action.Which two statements are true about traffic evaluated by this firewall filter?()

    • A、Packets within the 10.0.0.0/24 subnet will be accepted.
    • B、Packets within the 10.0.0.0/24 subnet will be rejected.
    • C、Packets within the 10.0.0.0/24 subnet will be counted.
    • D、Packets within the 10.0.0.0/24 subnet will not be counted.

    正确答案:A,C

  • 第17题:

    By default, which command can be used to display information about packets that have been logged with the syslog firewall filter action?()

    • A、show log
    • B、show firewall
    • C、show log messages
    • D、show firewall log

    正确答案:C

  • 第18题:

    Which two statements are true about firewall filter configurations?()

    • A、Multiple action modifiers can be included in the same term.
    • B、Only a single action modifier can be included in the same term.
    • C、If an action modifier exists without a terminating action, matching packets will be accepted.
    • D、If an action modifier exists without a terminating action, matching packets will be discarded.

    正确答案:A,C

  • 第19题:

    A firewall filter is applied as an input filter on a transit interface. What three types of traffic will this affect? ()

    • A、inbound traffic transiting the router
    • B、outbound traffic transiting the router
    • C、traffic destined to the Routing Engine
    • D、traffic destined to the interface address on which the filter is applied

    正确答案:A,C,D

  • 第20题:

    单选题
    You have a firewall filter containing two terms applied in an inbound direction on a customer interface. You would like this filter to protect your network from a spoofed denial of service attack. What match criterion should be used in the first term of the filter?()
    A

    Source TCP port

    B

    Source IP address

    C

    Destination TCP port

    D

    Destination IP address


    正确答案: C
    解析: 暂无解析

  • 第21题:

    多选题
    Which two statements are true when source/destination filters are enabled? ()(Choose two.)
    A

    Excluded traffic is not accelerated.

    B

    Excluded traffic is only compressed.

    C

    Source/destination filter applies to all traffic sent from LAN to WAN.

    D

    Source/destination filters work in packet interception mode using RIPv2.


    正确答案: A,C
    解析: 暂无解析

  • 第22题:

    单选题
    A packet is evaluated against three user-defined terms within a firewall filter and no match is found. What correctly describes the action the firewall filter will take for this packet?()
    A

    The filter will permit the packet and take no additional action

    B

    The filter will reject the packet and send an ICMP message back to the sender

    C

    The filter will discard the packet and take no additional action

    D

    The filter will permit the packet and write a log entry to the firewall log


    正确答案: B
    解析: 暂无解析

  • 第23题:

    单选题
    You are designing a strategy to allow users to gain VPN access to the internal network.  What should you do?()
    A

     Allow all inbound VPN traffic to pass through the internal firewall and the perimeter firewall.

    B

     Allow all inbound VPN traffic to pass through the perimeter firewall only.

    C

     Allow all VPN traffic from the source IP address of 131.107.1.14 to pass through the internal firewall.

    D

     Allow all VPN traffic from the source IP address of 191.168.1.0/24 to pass through the perimeter firewall.


    正确答案: B
    解析: 暂无解析

  • 第24题:

    多选题
    Which two statements are true about firewall filter configurations?()
    A

    Multiple action modifiers can be included in the same term.

    B

    Only a single action modifier can be included in the same term.

    C

    The default term within a firewall filter uses the discard action.

    D

    The default term within a firewall filter uses the reject action.


    正确答案: C,D
    解析: 暂无解析