When configuring IOS firewall (CBAC) operations on Cisco rou

题目
多选题
When configuring IOS firewall (CBAC) operations on Cisco routers, the "inspection rule" could be applied at which two locations? ()
A

at the untrusted interfacein the inbound direction

B

atthe untrusted interface in theoutbounddirection

C

at thetrusted interface inthe inbound direction

D

at the trusted interface in the outbound direction

E

at the trusted and untrusted interfaces in the inbound direction

F

at the trusted and untrusted interfaces in the outbounddirection

如果没有搜索结果或未解决您的问题,请直接 联系老师 获取答案。
相似问题和答案

第1题:

Which result is of securing the Cisco IOS image by use of the Cisco IOS image resilience feature?()

  • A、The Cisco IOS image file will not be visible in the output from the show flash command.
  • B、The show version command will not show the Cisco IOS image file location.
  • C、When the router boots up, the Cisco IOS image will be loaded from a secured FTP location.
  • D、The running Cisco IOS image will be encrypted and then automatically backed up to a TFTP server.

正确答案:A

第2题:

Which Cisco product is a software component that blocks unwanted connections and provides other gateway security functions for small business?()

  • A、Cisco Firewall Services Module (FWSM)
  • B、Cisco Secure Access Control Server (ACS)
  • C、Cisco Private Internet Exchange (PIX) Firewall
  • D、Cisco Internetwork Operating System (IOS) Firewall

正确答案:D

第3题:

After making some network changes you power off and then power on your Cisco router named VE1. What sequence of events occurs when VE1 is powered up?

A. Perform. POST, locate configuration statements, apply configuration statements, locate Cisco IOS software, and load Cisco IOS software.

B. Locate Cisco IOS software, load Cisco IOS software, locate configuration statements, apply configuration statements, and perform. POST.

C. Test software routines, POST, load configuration files, load Cisco IOS software, test Cisco IOS software.

D. Perrform. POST, locate Cisco IOS software, load the Cisco IOS software, locate configuration statements, and apply configuration statements.

E. Load and test IOS, load configuration files, test software routines, POST.

F. None of the above


正确答案:D
D 解析:Explanation:
Upon initial start up, Cisco routers perform. the following steps in order:
1. The router performs a power-on self-test (POST) to discover and verify the hardware.
2. The router loads and runs bootstrap code from ROM.
3. The router finds the IOS or other software and loads it.
4. The router finds the configuration file and loads it into running config.

第4题:

Which three statements about IOS Firewall configurations are true?()

  • A、The IP inspection rule can be applied in the inbound direction on the secured interface.
  • B、The IP inspection rule can be applied in the outbound direction on the unsecured interface.
  • C、The ACL applied in the outbound direction on the unsecured interface should be an extended ACL.
  • D、The ACL applied in the inbound direction on the unsecured interface should be an extended ACL.
  • E、For temporary openings to be created dynamically by Cisco IOS Firewall,the access-list for thereturning traffic must be a standard ACL.
  • F、For temporary openings to be created dynamically by Cisco IOS Firewall,the IP inspection rule must be applied to the secured interface.

正确答案:A,B,D

第5题:

When configuring Cisco IOS login enhancements for virtual connections, what is the "quiet period"?()

  • A、The period of time in which virtual login attempts are blocked, following repeated failed login attempts
  • B、The period of time in which virtual logins are blocked as security services fully initialize
  • C、A period of time when no one is attempting tolog in
  • D、The period of time between successive login attempts

正确答案:A

第6题:

Examine the following items, which one offers a variety of security solutions, including firewall, IPS, VPN,antispyware, antivirus, and antiphishing features?()

  • A、Cisco IOS router
  • B、Cisco PIX 500 series security appliance
  • C、Cisco 4200 series IPS appliance
  • D、Cisco ASA 5500 series security appliance

正确答案:D

第7题:

What are two security features of the Cisco Secure Router 500 Series? ()

  • A、Cisco Intrusion Prevention System
  • B、Cisco IOS Software Firewall
  • C、Cisco IOS Easy VPN
  • D、Cisco Unified Wireless Networking
  • E、Cisco ASA Hardware Firewall

正确答案:A,B

第8题:

Which three of the following steps are mandatory when configuring MPLS on Cisco IOS? ()(Choose three.)

A. start LDP

B. enable CEF switching

C. configure the MPLS ID

D. disable IP TTL propagation

E. configure conditional label advertising

F. enable label switching on frame mode interfaces


参考答案:A, B, F

第9题:

The LAN-side of the Teleworker router is assigned private IP address space (RFC1918), and the VPN topology is IPSec-only (no GRE protocol). When is it required to configure NAT/pNAT on the Teleworker router?()

  • A、when all access to the Internet is through the IPSec tunnel
  • B、when there is direct Internet access via split-tunneling
  • C、when there is no Internet access configured through the Teleworker router
  • D、whenever you have IOS-Firewall (CBAC) configured

正确答案:B

第10题:

Which three of the following steps are mandatory when configuring MPLS on Cisco IOS? ()(Choose three.)

  • A、start LDP
  • B、enable CEF switching
  • C、configure the MPLS ID
  • D、disable IP TTL propagation
  • E、configure conditional label advertising
  • F、enable label switching on frame mode interfaces

正确答案:A,B,F

更多相关问题