A. authentication, integrity checking, and confidentiality
B. less overhead
C. dynamic routing over the tunnel
D. granular QoS support
E. open standard
F. scalability
第1题:
Which two methods use IPsec to provide secure connectivity from the branch office to the headquarters office?()
第2题:
You need to configure a GRE tunnel on a IPSec router. When you are using the SDM to configurea GRE tunnel over IPsec, which two parameters are required when defining the tunnel interfaceinformation?()
第3题:
TestKing has five regional offices that are located in different cities. The IT staff is evaluating WAN technologies to interconnect the regional offices to corporate headquarters. Each of the regional offices should be connected to the corporate headquarters in a hub and spoke arrangement using a packet-switched technology. Which of the following WAN technologies will fulfill these requirements?()
第4题:
What are four advantages to using tunnel brokers in an IPv6 transition environment?()
第5题:
our company has a main office and 15 branch offices. The company has a single active directory domain. All servers run windows server 2008.You need to ensure that the VPN connections between the office and the branch offices meet the following requirements:All data must be encrypted by using end-to-end encryption.The vpn connection must use computer-level authentication.User names and passwords cannot be used for authentication.What should do?()
第6题:
You are designing a strategy to optimize the DNS name resolution for the satellite offices that connect to the branch offices by using ISDN lines. What should you do?()
第7题:
Privacy
Authentication
Allows using an IGP between R1 and the Enterprise
Secure communications
第8题:
Configure a standard primary zone in each of the branch offices.
Configure a forwarders that point to the DNS server in the main office.
Configure a secondary zone in each of the branch offices that users the main office DNS server as a master.
Install DNS servers in each of the branch offices.
第9题:
Create an OU for the NewApp Web servers. Assign the IT staff at the branch offices user rights to this OU.
Create an OU for the NewApp data servers. Assign the IT staff at the branch offices user rights to this OU.
Create an OU for the IT staff at each branch office. Place network administrators at the branch offices in these OUs.
Create an OU for each branch office. Place local servers in the OU for their respective office. Assign the IT staff at the branch offices user rights to these OUs.
第10题:
all traffic is encrypted using IPSec and the Triple-DES algorithm
full support for all Enterprise applications, including data, voice, and video
thousands of Teleworker VPN tunnels can be aggregated to a headquarters location
the VPN tunnel is an always on site-to-site VPN connection
portability for use while traveling
used with broadband Cable/DSL subscriptions
第11题:
4 bytes for both
4 bytes, and 8 bytes respectively
8 bytes for both
24 bytes for both
第12题:
authentication, integrity checking, and confidentiality
less overhead
dynamic routing over the tunnel
granular QoS support
open standard
scalability
第13题:
Router R1, a branch router, connects to the Internet using DSL. Some traffic flows through a GRE and IPsec tunnel, over the DSL connection, and into the core of an Enterprise network. The branch also allows local hosts to communicate directly with public sites in th e Internet over this same DSL connection. Which of the following answers defines how the branch NAT config avoids performing NAT for the Enterprise directed traffic but does perform NAT for the Internet - directed traffic?()
第14题:
Router R1 sits at an Enterprise branch office, using both the Internet and a leased line to another Enterprise router for its two connectivity options back into the rest of the Enterprise network. The engineer planning for this branch decided to use the leased line for all Enterprise traffic, unless it fails, in which case the Internet connection should be used to pass traffic to the Enterprise. Which of the following is most likely to be useful on the branch router?()
第15题:
What is a key benefit of using a GRE tunnel to provide connectivity bet ween branch offices and headquarters?()
第16题:
What are the header sizes for point-to-point and multi-point GRE(also known asmGRE) with tunnel key?()
第17题:
Your company has a main office and two branch offices.Domain controllers in the main office host an Active Directory-integrated zone.The DNS servers in the branch offices host a secondary zone for the domain and use the main office DNS servers as their DNS Master servers for the zone.The company adds a new branch office. You add a member server named Branch3 and install the DNS Server server role on the server. You configure a secondary zone for the domain. The zone transfer fails.You need to configure DNS to provide zone data to the DNS server in the new branch office.What should you do?()
第18题:
Use caching-only DNS servers at these satellite offices.
Configure a Hosts file for all client computers at these satellite offices.
Configure a DNS server to use WINS forward lookup at these satellite offices.
Place a DNS server with secondary zones of all domains at these satellite offices.
第19题:
DMVPN
MPLS VPN
Virtual Tunnel Interface (VTI)
SSL VPN
PPPoE
第20题:
Configure a standard primary zone in each of the branch offices.
Configure forwarders that point to the DNS server in the main office.
Configure a secondary zone in each of the branch offices that uses the main office DNS server as a master.
Install DNS servers in each of the branch offices.
第21题:
The crypto ACL number
The IPSEC mode (tunnel or transport)
The GRE tunnel interface IP address
The GRE tunnel source interface or IP address, and tunnel destination IP address
The MTU size of the GRE tunnel interface
第22题:
When the packet received on the LAN interface is permitted by the ACL listed on the tunnel greacl command under the incoming interface
When routing the packet, matching a route whose outgoing interface is the GRE tunnel interface
When routing the packet, matching a route whose outgoing interface is the IPsec tunnel interface
When permitted by an ACL that was referenced in the associated crypto map
第23题:
By not enabling NAT on the I Psec tunnel interface
By not enabling NAT on the GRE tunnel interface
By configuring the NAT - referenced ACL to not permit the Enterprise traffic
By asking the ISP to perform NAT in the cloud