单选题A policy-based IPsec VPN is ideal for which scenario?()A when you want to conserve tunnel resourcesB when the remote peer is a dialup or remote access clientC when you want to configure a tunnel policy with an action of denyD when a dynamic routing pro

题目
单选题
A policy-based IPsec VPN is ideal for which scenario?()
A

when you want to conserve tunnel resources

B

when the remote peer is a dialup or remote access client

C

when you want to configure a tunnel policy with an action of deny

D

when a dynamic routing protocol such as OSPF must be sent across the VPN

参考答案和解析
正确答案: A
解析: 暂无解析
如果没有搜索结果或未解决您的问题,请直接 联系老师 获取答案。
相似问题和答案

第1题:

You need to configure a GRE tunnel on a IPSec router. When you are using the SDM to configurea GRE tunnel over IPsec, which two parameters are required when defining the tunnel interfaceinformation?()

  • A、The crypto ACL number
  • B、The IPSEC mode (tunnel or transport)
  • C、The GRE tunnel interface IP address
  • D、The GRE tunnel source interface or IP address, and tunnel destination IP address
  • E、The MTU size of the GRE tunnel interface

正确答案:C,D

第2题:

A route-based VPN is required for which scenario? ()

  • A、when the remote VPN peer is behind a NAT device
  • B、when multiple networks need to be reached across the tunnel
  • C、when the remote VPN peer is a dialup or remote access client
  • D、when a dynamic routing protocol such as OSPF is required across the VPN

正确答案:D

第3题:

You are configuring captive portal on your SRX Series device for guest user access.When would you use the redirect-traffic all command?()

A. When you want all unauthenticated traffic to be redirected

B. When you want all clear text traffic to be redirected.

C. When you want all authenticated traffic to be redirected.

D. When you want all encrypted traffic to be redirected.


参考答案:B

第4题:

A route-based VPN is required for which scenario?()

  • A、when the remote VPN peer is behind a NAT device
  • B、when multiple networks need to be reached across the tunnel and GRE cannot be used
  • C、when the remote VPN peer is a dialup or remote access client
  • D、when a dynamic routing protocol is required across the VPN and GRE cannot be used

正确答案:D

第5题:

Which command is needed to change this policy to a tunnel policy for a policy-based VPN?() [edit security policies from-zone trust to-zone untrust] user@host# show policy tunnel-traffic { match { source-address local-net; destination-address remote-net; application any; then { permit; } }

  • A、set policy tunnel-traffic then tunnel remote-vpn
  • B、set policy tunnel-traffic then permit tunnel remote-vpn
  • C、set policy tunnel-traffic then tunnel ipsec-vpn remote-vpn permit
  • D、set policy tunnel-traffic then permit tunnel ipsec-vpn remote-vpn

正确答案:D

第6题:

When using the Cisco SDM Quick Setup Siteto-Site VPN wizard, which three parameters do you configure?()

  • A、Source interface where encrypted traffic originates
  • B、IP address for the remote peer
  • C、Transform set for the IPsec tunnel
  • D、Interface for the VPN connection

正确答案:A,B,D

第7题:

A policy-based IPsec VPN is ideal for which scenario?()

  • A、when you want to conserve tunnel resources
  • B、when the remote peer is a dialup or remote access client
  • C、when you want to configure a tunnel policy with an action of deny
  • D、when a dynamic routing protocol such as OSPF must be sent across the VPN

正确答案:B

第8题:

A route-based VPN is required for which scenario? ()

A. when the remote VPN peer is behind a NAT device

B. when multiple networks need to be reached across the tunnel

C. when the remote VPN peer is a dialup or remote access client

D. when a dynamic routing protocol such as OSPF is required across the VPN


参考答案:D

第9题:

Regarding a route-based versus policy-based IPsec VPN, which statement is true?()

  • A、A route-based VPN generally uses less resources than a policy-based VPN.
  • B、A route-based VPN cannot have a deny action in a policy; a policy-based VPN can have a deny action.
  • C、A route-based VPN is better suited for dialup or remote access compared to a policy-based VPN.
  • D、A route-based VPN uses a policy referencing the IPsec VPN; a policy-based VPN policy does not use apolicy referencing the IPsec VPN

正确答案:A

第10题:

You are configuring captive portal on your SRX Series device for guest user access.When would you use the redirect-traffic all command?()

  • A、When you want all unauthenticated traffic to be redirected
  • B、When you want all clear text traffic to be redirected.
  • C、When you want all authenticated traffic to be redirected.
  • D、When you want all encrypted traffic to be redirected.

正确答案:B

更多相关问题