policy-rematch
policy-evaluate
rematch-policy
evaluate-policy
第1题:
Which statement best describes ACL configuration using configuration session mode on Cisco Nexus switches?()
第2题:
In the exhibit, you decided to change myHosts addresses. [edit security policies] user@host# show from-zone Private to-zone External { policy MyTraffic { match { source-address myHosts; destination-address ExtServers;application [ junos-ftp junos-bgp ]; } then { permit { tunnel { ipsec-vpn vpnTunnel; } } } } } policy-rematch; What will happen to the new sessions matching the policy and in-progress sessions that hadalready matched the policy?()
第3题:
SDM creates a low latency queuing (LLQ) service policy with its associated classes. What are the two types of low latency queuing available using the SDM QoS wizard?()
第4题:
Which configuration keyword ensures that all in-progress sessions are re-evaluated upon committing asecurity policy change?()
第5题:
Using a policy with the policy-rematch flag enabled, what happens to the existing and new sessions when you change the policy action from permit to deny?()
第6题:
A redaction policy was added to the SAL column of the SCOTT.EMP table: All users have their default set of system privileges. For which three situations will data not be redacted?()
第7题:
SYS sessions, regardless of the roles that are set in the session
SYSTEM sessions, regardless of the roles that are set in the session
SCOTT sessions, only if the MGR role is set in the session
SCOTT sessions, only if the MGR role is granted to SCOTT
SCOTT sessions, because he is the owner of the table
SYSTEM session, only if the MGR role is set in the session
第8题:
The implicit default security policy permits all traffic.
Traffic destined to the device itself always requires a security policy.
Traffic destined to the device’s incoming interface does not require a security policy.
The factory-default configuration permits all traffic from all interfaces.
第9题:
policy-rematch
policy-evaluate
rematch-policy
evaluate-policy
第10题:
policy-rematch
policy-evaluate
rematch-policy
evaluate-policy
第11题:
Security Templates snap-in
Group Policy Management Console
Security Configuration and Analysis snap-in
Microsoft Baseline Security Analyzer (MBSA)
第12题:
The verify command will validate commands entered for syntax errors.
The save command will save the commands entered to the startup configuration.
The network administrator can perform a dry-run ACL configuration by verifying the configuration against the hardware and software resources available before applying it.
Configuration sessions can be saved and resumed at any time, even after upgrading NX-OS Software on the switch with ISSU.
Configuration sessions are global for all VDCs on the Nexus 7000.
第13题:
Which configuration keyword ensures that all in-progress sessions are re-evaluated upon committing a security policy change?()
第14题:
Which statement describes the behavior of a security policy?()
第15题:
It is a company’s policy to shut down all workstations at the end of the day. However, the majority of employees are leaving disks in their workstations and upon start up the next morning they are receiving a ‘NTLDR is missing’ error. Which of the following is a possible solution?()
第16题:
In the configuration shown in the exhibit, you decided to eliminate the junos-ftp applicationfrom the match condition of the policy MyTraffic. [edit security policies] user@hostl# show from-zone Private to-zone External { policy MyTraffic { match { source-address myHosts; destination-address ExtServers; application [ junos-ftp junos-bgp ]; } then { permit { tunnel { ipsec-vpn vpnTunnel; } } } } } policy-rematch; What will happen to the existing FTP and BGP sessions?()
第17题:
Which two statements are true with regard to policy ordering? ()(Choose two.)
第18题:
The existing FTP and BGP sessions will continue.
The existing FTP and BGP sessions will be re-evaluated and only FTP sessions will be dropped.
The existing FTP and BGP sessions will be re-evaluated and all sessions will be dropped.
The existing FTP sessions will continue and only the existing BGP sessions will be dropped.
第19题:
The last policy is the default policy, which allows all traffic.
The order of policies is not important.
New policies are placed at the end of the policy list.
The insert command can be used to change the order.
第20题:
private
protected
final
don’t use any keyword at all (make it default)
第21题:
paths
accepted-routes
advertised-routes
routes
第22题:
The new sessions matching the policy are denied. The existing sessions are dropped.
The new sessions matching the policy are denied. The existing sessions, not being allowed to carry any traffic, simply timeout.
The new sessions matching the policy might be allowed through if they match another policy. The existing sessions are dropped.
The new sessions matching the policy are denied. The existing sessions continue until they are completed or their timeout is reached.
第23题:
New sessions will be evaluated. In-progress sessions will be re-evaluated.
New sessions will be evaluated. All in-progress sessions will continue.
New sessions will be evaluated. All in-progress sessions will be dropped.
New sessions will halt until all in-progress sessions are re-evaluated. In-progress sessions will be re-evaluated and possibly dropped.
第24题:
get-ospf
reject-all
get-statics
get-aggregate