Thin Model
Thick Client
Port Forwarding
Clientless Access
Layer 3 Network Access
第1题:
When designing remote access to the Enterprise Campus network for teleworkers and mobileworkers, which of the following should the designer consider?()
第2题:
An organization hires a contractor who only needs access to email and a group calendar. They do not need administrator access to the computer. Which VPN model is the most appropriate?()
第3题:
Which of the following would need to be implemented on a wireless router to allow network accessbased on a passphrase that the administrator would supply?()
第4题:
Your company has a mix of employees and contractors. Contractor usernames always begin with"con-"; employee usernames never begin with "con-". You need to give employees access to allresources and give contractors access to a limited set of resources. Employee and contractor roles have been created with the appropriate access privileges, and the realm is set to merge settings for all assigned roles. Which role mapping ruleset would result in the correct access privileges being assigned?()
第5题:
The MAC can only be delivered to a mobile phone and is good for a single use only.
The MAC can be delivered by mobile phone, e-mail, or fax, and it is good for one time authentication only.
The MAC can only be delivered to a mobile phone and it is good until the expiration time is reached, as set by an administrator.
The MAC can be delivered by mobile phone, email, or fax, and it is good until the expiration time is reached, as set by an administrator.
第6题:
Thin Model
Thick Client
Port Forwarding
Clientless Access
Layer 3 Network Access
第7题:
username=* -> Employee-role Stop username=con-* -> Contractor-role
username=* -> Employee-role username=con-* -> Contractor-role Stop
username=con-* -> Contractor-role Stop username=* -> Employee-role
username=con-* -> Contractor-role username=* -> Employee-role Stop
第8题:
Change the permissions for the IUSR_FTPServer01 account on the Drawings folder.
Create new TCP/IP Address Restrictions entries for the users who cannot access the Drawings folder.
Disable the Allow Only Anonymous Connections option.
Add the users to the local Administrators group on FTPServer02.
第9题:
tracert
msconfig
route
net use
第10题:
Port security needs to be globally enabled.
Port security needs to be enabled on the interface.
Port security needs to be configured to shut down the interface in the event of a violation.
Port security needs to be configured to allow only one learned MAC address.
Port security interface counters need to be cleared before using the show command.
The port security configuration needs to be saved to NVRAM before it can become active.
第11题:
Grant Paul NTFS permission so that he can access any parent folder to files in the shared folder.
Share the Sales folder and grant Paul shared folder permission to access the shared Sales folder.
Remove Paul from any other group that has been explicitly denied access to the Sales folder.
Delete the Sales local group and recreate it. Add individual user accounts from the Sales Department back into Sales local group.
第12题:
It is recommended to place the VPN termination device in line with the Enterprise Edge 1
Maintaining access rules, based on the source IP of the client, on an internal firewall drawnfrom a headend RADIUS server is the most secure deployment
VPN Headend routing using Reverse Route Injection (RRI) with distribution is recommended when the remote user community is small and dedicated DHCP scopes are in place
Clientless SSL VPNs provide more granular access control than SSL VPN clients (thin or thick),including at Layer 7
第13题:
An organization hires a contractor who only needs access to email and a group calendar. They donot need administrator access to the computer. Which VPN model is the most appropriate?()
第14题:
A user requests access to a new file share.The administrator adds the user to the group with the appropriate access.The user is still unable to access the share.Which of the following actions should the administrator do to resolve the permissions issue?()
第15题:
An SSL VPN can be used in conjunction with IBM Tivoli Access Manager for Enterprise Single Sign-On to provide remote access to business critical information. Which statement is true about the Mobile ActiveCode (MAC) when it is used with a VPN Solution for remote access?()
第16题:
You are the administrator of your company’s network. A user named Paul in the service department has a Windows 2000 Professional computer. Paul needs to access the files that are in a shared folder on his computer. A local group named Sales has permissions to access the data. Paul is a member of the Sales local group but he cannot access the file he needs. What should you do? ()
第17题:
Thin Model
Thick Client
Port Forwarding
Clientless Access
Layer 3 Network Access
第18题:
Request the user to logoff and log back on.
Add the user as an administrator on their local machine.
Add the user as an administrator on the server.
Run an ipconfig /renew on the user’s machine.
第19题:
Add Group1 to the RAS and IAS Servers group.
Add Group1 to the Network Configuration Operators group.
Create a new network policy and define a group-based condition for Group1. Set the access permission of the policy to Access granted. Set the processing order of the policy to 1.
Create a new network policy and define a group-based condition for Group1. Set the access permission of the policy to Access granted. Set the processing order of the policy to 3.
第20题:
The Cisco Easy VPN Server feature and the Cisco software VPN client use the same GUI configuration tool to simplify remote-access VPN configurations.
The Cisco Easy VPN Server feature allows the Cisco software VPN client to receive its security policies from the central site VPN device. This minimizes the configuration requirements at the remote location for large remote access VPN deployments.
The Cisco Easy VPN Server feature and the Cisco software VPN client use hardware-based encryption to reduce the CPU overhead of the central site VPN router.
The Cisco Easy VPN Server feature and the Cisco software VPN client enable scalable remote-access VPNs deployment by using a thick client/thin server model where the central site VPN router can handle thousands of incoming VPN connections.
第21题:
Use a staticip addresses based on incoming user policies.
Use DHCP to assign addresses based on incoming user policies.
Deploy a clientless model to assign a unique address to the user.
Deploy RADIUS or LDAP to assign the address to the user.
第22题:
The laptop is missing the software supplicant
The access point SSID is hidden.
The laptop only supports TKIP and AES encryption,
The access point is on the wrong channel.
第23题:
Implement preventative measures.
Close the issue.
Document the outcome.
Question other users to make sure they are not having the same issue
第24题:
Native IPv6
Point - to -point tunnels
Multipoint tunnels
NAT - PT