niusouti.com

多选题Firewall filters can be used to accept, discard, or reject packets based on ()Aprotocol typeBMAC addressCTCP or UDP portDsource and destination IP address

题目
多选题
Firewall filters can be used to accept, discard, or reject packets based on ()
A

protocol type

B

MAC address

C

TCP or UDP port

D

source and destination IP address


相似考题
更多“多选题Firewall filters can be used to accept, discard, or reject packets based on ()Aprotocol typeBMAC addressCTCP or UDP portDsource and destination IP address”相关问题
  • 第1题:

    What three pieces of information can be used in an extended access list to filter traffic (Choose three.)()。

    A.protocol

    B.VLAN number

    C.TCP or UDP port numbers

    D.source switch port number

    E.source IP address and destination IP address

    F.source MAC address and destination MAC address


    参考答案:A, C, E

  • 第2题:

    We have already covered the topic of network addresses. The first(71) in a block (in classes A,B,and C) defines the network address. In classes A,B,and C,if the hostid is all ls, the address is called a direct broadcast address. It is used by a.() to send a packet to all hosts in a specific network. All hosts will accept a packet having this type of destination address. Note that this address can be used only as a (73)address in an lP packet. Note also that this special address also reduces the number of available hostid for each netid in classes A,B,and C.
    In classes A,B,and C,an address with all Is for the netid and hostid (32 bits) defines a(74) address in the current network.A host that wants to send a message to every other host can use this address as a destination address in an IP packet. However,a router will block a packet having this type ofaddress to confine the broadcasting to the (75) network. Note that this address belongs to class E.

    A.router
    B.switch
    C.huB.
    D.firewall

    答案:A
    解析:

  • 第3题:

    You work as a network technician at Company. Your boss, Mrs., is interested in  LWAPP (Lightweight Access Point Protocol).  What should you tell her regarding this technology?  ()

    • A、 LWAPP is a proprietary protocol, and because of its very high overhead it is not widely adopted.
    • B、 Control traffic is encapsulated in UDP packets with a source port of 1024 and a destination port  of 12223.
    • C、 Layer 3 LWAPP is a UDP/IP Frame that requires a Cisco Aironet AP to obtain an IP address  using DHCP.
    • D、 Data traffic is encapsulated in UDP packets with a source port of 1024 and a destination port of  12223.
    • E、 Control traffic is encapsulated in TCP packets with a source port of 1024 and a destination port  of 12223.
    • F、 Data traffic is encapsulated in TCP packets with a source port of 1024 and a destination port of  12223.

    正确答案:B,C

  • 第4题:

    What three pieces of information can be used in an extended access list to filter traffic (Choose three.)()。

    • A、protocol
    • B、VLAN number
    • C、TCP or UDP port numbers
    • D、source switch port number
    • E、source IP address and destination IP address
    • F、source MAC address and destination MAC address

    正确答案:A,C,E

  • 第5题:

    What is the effect of the following access list condition access-list 101 permit ip 10.25.30.0 0.0.0.255 any()。

    • A、permit all packets matching the first three octets of the source address to all destinations
    • B、permit all packets matching the last octet of the destination address and accept all source addresses
    • C、permit all packets from the third subnet of the network address to all destinations
    • D、permit all packets matching the host bits in the source address to all destinations
    • E、permit all packets to destinations matching the first three octets in the destination address

    正确答案:A

  • 第6题:

    Firewall filters can perform which two actions?()

    • A、Log packet.
    • B、Count packet.
    • C、Set packet metric.
    • D、Decrement packet TTL.
    • E、Change destination IP address.

    正确答案:A,B

  • 第7题:

    A layer 3 switch can move packets between subnets based on which of the following criteria?()

    • A、802.1q tag
    • B、Port
    • C、Application
    • D、IP address

    正确答案:D

  • 第8题:

    单选题
    What is the effect of the following access list condition?  access-list 101 permit ip 10.25.30.0 0.0.0.255 any()。
    A

    permit all packets matching the first three octets of the source address to all destinations

    B

    permit all packets matching the last octet of the destination address and accept all source addresses

    C

    permit all packets from the third subnet of the network address to all destinations

    D

    permit all packets matching the host bits in the source address to all destinations

    E

    permit all packets to destinations matching the first three octets in the destination address


    正确答案: B
    解析: 暂无解析

  • 第9题:

    多选题
    You work as a network technician at Company. Your boss, Mrs., is interested in  LWAPP (Lightweight Access Point Protocol).  What should you tell her regarding this technology?  ()
    A

    LWAPP is a proprietary protocol, and because of its very high overhead it is not widely adopted.

    B

    Control traffic is encapsulated in UDP packets with a source port of 1024 and a destination port  of 12223.

    C

    Layer 3 LWAPP is a UDP/IP Frame that requires a Cisco Aironet AP to obtain an IP address  using DHCP.

    D

    Data traffic is encapsulated in UDP packets with a source port of 1024 and a destination port of  12223.

    E

    Control traffic is encapsulated in TCP packets with a source port of 1024 and a destination port  of 12223.

    F

    Data traffic is encapsulated in TCP packets with a source port of 1024 and a destination port of  12223.


    正确答案: B,E
    解析: 暂无解析

  • 第10题:

    单选题
    What is the result of entering the command port-channel load-balance src-dst-ip on an EtherChannel link? ()
    A

    Packets are distributed across the ports in the channel based on both the source and destination MAC addresses.

    B

    Packets are distributed across the ports in the channel based on both the source and destination IP addresses.

    C

    Packets are balanced across the ports in the channel based first on the source MAC address, then on the destination MAC address, then on the IP address.

    D

    Packets are distributed across the access ports in the channel based first on the source IP address and then the destination IP addresses.


    正确答案: A
    解析: 暂无解析

  • 第11题:

    单选题
    Which of the following best describes the following command: ip flow-export destination192.168.1.50 1500?()
    A

    it is not a valid NetFlow command

    B

    it is an SNMP command that exports 1500-byte packets to IP address 192.168.1.50

    C

    it is a NetFlov/ command that v/ill export 1500-byte packets to IP address 192.168.1.50

    D

    it is a NetFlov/ command that allows IP address 192.168.1.50 to send traffic to port 1500

    E

    It is a NetFlov/ command that v/ill specify that the NetFlov/ collector’s IP address is192.168.1.50 over UDP port 1500

    F

    It is an SNMP command that exports flows to destination address 1Q2.168.1.50 for packets upto an MTU of 1500


    正确答案: C
    解析: 暂无解析

  • 第12题:

    多选题
    Firewall filters can perform which two actions?()
    A

    Log packets.

    B

    Set packet metrics.

    C

    Count packets.

    D

    Decrement packet's TTL value.


    正确答案: D,B
    解析: 暂无解析

  • 第13题:

    What is the effect of the following access list condition access-list 101 permit ip 10.25.30.0 0.0.0.255 any()。

    A.permit all packets matching the first three octets of the source address to all destinations

    B.permit all packets matching the last octet of the destination address and accept all source addresses

    C.permit all packets from the third subnet of the network address to all destinations

    D.permit all packets matching the host bits in the source address to all destinations

    E.permit all packets to destinations matching the first three octets in the destination address


    参考答案:A

  • 第14题:

    What is the result of entering the command port-channel load-balance src-dst-ip on an EtherChannel link? ()

    • A、Packets are distributed across the ports in the channel based on both the source and destination MAC addresses.
    • B、Packets are distributed across the ports in the channel based on both the source and destination IP addresses.
    • C、Packets are balanced across the ports in the channel based first on the source MAC address, then on the destination MAC address, then on the IP address.
    • D、Packets are distributed across the access ports in the channel based first on the source IP address and then the destination IP addresses.

    正确答案:B

  • 第15题:

    What is the result of issuing the frame-relay map ip 192.168.1.2 202 broadcast command?()

    • A、defines the source IP address that is used in all broadcast packets on DLCI 202
    • B、defines the DLCI that is used for all packets that are sent to the 192.168.1.2 IP address
    • C、defines the destination IP address that is used in all broadcast packets on DLCI 202
    • D、defines the DLCI on which packets from the 192.168.1.2 IP address are received

    正确答案:B

  • 第16题:

    Which of the following best describes the following command: ip flow-export destination192.168.1.50 1500?()

    • A、it is not a valid NetFlow command
    • B、it is an SNMP command that exports 1500-byte packets to IP address 192.168.1.50
    • C、it is a NetFlov/ command that v/ill export 1500-byte packets to IP address 192.168.1.50
    • D、it is a NetFlov/ command that allows IP address 192.168.1.50 to send traffic to port 1500
    • E、It is a NetFlov/ command that v/ill specify that the NetFlov/ collector’s IP address is192.168.1.50 over UDP port 1500
    • F、It is an SNMP command that exports flows to destination address 1Q2.168.1.50 for packets upto an MTU of 1500

    正确答案:E

  • 第17题:

    Firewall filters can be used to accept, discard, or reject packets based on ()

    • A、protocol type
    • B、MAC address
    • C、TCP or UDP port
    • D、source and destination IP address

    正确答案:A,C,D

  • 第18题:

    When an SRX series device receives an ESP packet, what happens?()

    • A、If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, it will
    • B、If the destination IP address in the outer IP header of ESP does not match the IP address of the ingress interface, it will
    • C、If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, based packet.
    • D、If the destination address of the outer IP header of the ESP packet matches the IP address of the ingress interface, based of inner header, it will decrypt the packet.

    正确答案:C

  • 第19题:

    单选题
    What can be specified in IP VACLs?()
    A

    Protocol and IP source only

    B

    IP Source, IP Destination and ports

    C

    IP Source Only

    D

    IP Destination Only


    正确答案: C
    解析: 暂无解析

  • 第20题:

    多选题
    What three pieces of information can be used in an extended access list to filter traffic (Choose three.)()。
    A

    protocol

    B

    VLAN number

    C

    TCP or UDP port numbers

    D

    source switch port number

    E

    source IP address and destination IP address

    F

    source MAC address and destination MAC address


    正确答案: B,A
    解析: 暂无解析

  • 第21题:

    多选题
    Firewall filters can be used to accept, discard, or reject packets based on ()
    A

    protocol type

    B

    MAC address

    C

    TCP or UDP port

    D

    source and destination IP address


    正确答案: A,B
    解析: 暂无解析

  • 第22题:

    多选题
    Which two statements are correct about firewall filters in the Junos OS?()
    A

    Firewall filters are stateless.

    B

    Firewall filters are used to control routing information that is exchanged between devices.

    C

    Firewall filters are used to control traffic passing through the device.

    D

    Firewall filters can only be applied to traffic entering the device.


    正确答案: B,A
    解析: 暂无解析

  • 第23题:

    多选题
    Which three statements are true about DAI?()
    A

    DAI intercept all ARP packets on untrusted ports

    B

    DAI determines the validity of an ARP packet based on the valid MAC address-to-IP address bindings stored in the DHCP Snooping database.

    C

    DAI is used to prevent against a DHCP Snooping attack.

    D

    DAI forwards all ARP packets received on a trusted interface without any checks.

    E

    DAI forwards all ARP packets on untrusted ports.

    F

    DAI determines the validity of an ARP packet based on the valid MAC address-to-IP address bindings stored in the CAM table.


    正确答案: F,E
    解析: 暂无解析

  • 第24题:

    多选题
    Firewall filters can perform which two actions?()
    A

    Log packet.

    B

    Count packet.

    C

    Set packet metric.

    D

    Decrement packet TTL.

    E

    Change destination IP address.


    正确答案: E,D
    解析: 暂无解析