Packets within the 10.0.0.0/24 subnet will be accepted.
Packets within the 10.0.0.0/24 subnet will be rejected.
Packets within the 10.0.0.0/24 subnet will be counted.
Packets within the 10.0.0.0/24 subnet will not be counted.
第1题:
A. Firewall filters are stateless.
B. Firewall filters are used to control routing information that is exchanged between devices.
C. Firewall filters are used to control traffic passing through the device.
D. Firewall filters can only be applied to traffic entering the device.
第2题:
A. inbound traffic transiting the router
B. outbound traffic transiting the router
C. traffic destined to the Routing Engine
D. traffic destined to the interface address on which the filter is applied
第3题:
You have a firewall filter containing two terms applied in an inbound direction on a customer interface.You would like this filter to protect your network from a spoofed denial of service attack. Which match criterion should be configured ito identify unwanted packets?()
第4题:
Which two statements are true when source/destination filters are enabled? ()(Choose two.)
第5题:
You have a firewall filter containing two terms applied in an inbound direction on a customer interface. You would like this filter to protect your network from a spoofed denial of service attack. What match criterion should be used in the first term of the filter?()
第6题:
You need to control SSH, HTTP, and Telnet access to an MX240 router through any interface. You have decided to use a firewall filter. How should you apply the firewall filter?()
第7题:
Which two statements are true about the primary address on an interface? ()
第8题:
You are designing a strategy to allow users to gain VPN access to the internal network. What should you do?()
第9题:
inbound traffic transiting the router
outbound traffic transiting the router
traffic destined to the Routing Engine
traffic destined to the interface address on which the filter is applied
第10题:
Multiple action modifiers can be included in the same term.
Only a single action modifier can be included in the same term.
If an action modifier exists without a terminating action, matching packets will be accepted.
If an action modifier exists without a terminating action, matching packets will be discarded.
第11题:
It is the address used by default as the local address for broadcast and multicast packets sourced locally and sent out of the interface
You use the primary address when you have multiple IP addresses belonging to the same subnet on the same inteface
It can be useful for selecting the local address used for packets sent out of unnumbered interfaces when multiple non-127 addresses are configured on the loopback interface
By default, the primary address on an interface is selected as the nmerically highest local address configured on the interface
第12题:
Packets outside the 10.0.0.0/24 subnet will be accepted.
Packets outside the 10.0.0.0/24 subnet will be rejected.
Packets outside the 10.0.0.0/24 subnet will be counted.
Packets outside the 10.0.0.0/24 subnet will not be counted.
第13题:
A. show log
B. show firewall
C. show log messages
D. show firewall log
第14题:
A packet is evaluated against three user-defined terms within a firewall filter and no match is found. What correctly describes the action the firewall filter will take for this packet?()
第15题:
Which two statements are true about firewall filter configurations?()
第16题:
You have configured a firewall filter with a single term matching on packets with a source address in the 10.0.0.0/24 subnet. This term only includes the count action.Which two statements are true about traffic evaluated by this firewall filter?()
第17题:
By default, which command can be used to display information about packets that have been logged with the syslog firewall filter action?()
第18题:
Which two statements are true about firewall filter configurations?()
第19题:
A firewall filter is applied as an input filter on a transit interface. What three types of traffic will this affect? ()
第20题:
Source TCP port
Source IP address
Destination TCP port
Destination IP address
第21题:
Excluded traffic is not accelerated.
Excluded traffic is only compressed.
Source/destination filter applies to all traffic sent from LAN to WAN.
Source/destination filters work in packet interception mode using RIPv2.
第22题:
The filter will permit the packet and take no additional action
The filter will reject the packet and send an ICMP message back to the sender
The filter will discard the packet and take no additional action
The filter will permit the packet and write a log entry to the firewall log
第23题:
Allow all inbound VPN traffic to pass through the internal firewall and the perimeter firewall.
Allow all inbound VPN traffic to pass through the perimeter firewall only.
Allow all VPN traffic from the source IP address of 131.107.1.14 to pass through the internal firewall.
Allow all VPN traffic from the source IP address of 191.168.1.0/24 to pass through the perimeter firewall.
第24题:
Multiple action modifiers can be included in the same term.
Only a single action modifier can be included in the same term.
The default term within a firewall filter uses the discard action.
The default term within a firewall filter uses the reject action.