网友您好, 请在下方输入框内输入要搜索的题目:

题目内容 (请给出正确答案)
单选题
Refer to Cisco IOS Zone-Based Policy Firewall, where will the inspection policy be applied?()
A

to the zone-pair

B

to the zone

C

to the interface

D

to the global service policy


参考答案

参考解析
解析: 暂无解析
更多 “单选题Refer to Cisco IOS Zone-Based Policy Firewall, where will the inspection policy be applied?()A to the zone-pairB to the zoneC to the interfaceD to the global service policy” 相关考题
考题 If NVRAM lacks boot system commands, where does the router look for the Cisco IOS by default?() A.ROMB.RAMC.FlashD.BootstrapE.Startup-.config

考题 What is the purpose of an explicit "deny any" statement at the end of an ACL?()A、none,since it is implicitB、to enable Cisco IOS IPS to work properly;however,it is the deny all traffic entry that is actually requiredC、to enable Cisco IOS Firewall to work properly;however,it is the deny all traffic entry that is actually requiredD、to allow the log option to be used to log any matchesE、to prevent sync flood attacksF、to prevent half-opened TCP connections

考题 If XYZ LTD needs to upgrade the Cisco IOS Software of a Cisco Router, Where is the best place to download the upgrade image file from?()A、The best option is to download it from the Cisco TAC websiteB、The best option is to download it from the Cisco.Com Software support siteC、The best option is to download it form the Cisco Advanced Services websiteD、The best option is to download it from the TFTP site on Cisco.com

考题 Examine the following items, which one offers a variety of security solutions, including firewall, IPS, VPN,antispyware, antivirus, and antiphishing features?()A、Cisco IOS routerB、Cisco PIX 500 series security applianceC、Cisco 4200 series IPS applianceD、Cisco ASA 5500 series security appliance

考题 Which statement best describes Cisco IOS Zone-Based Policy Firewall?()A、A router interface can belong to multiple zones.B、Policy maps are used to classify traffic into different traffic classes, and class maps are used to assignaction to the traffic classes.C、The pass action works in only one directionD、A zone-pair is bidirectional because it specifies traffic flowing among the interfaces within the zone-pair in both directions.

考题 Which Cisco product is a software component that blocks unwanted connections and provides other gateway security functions for small business?()A、Cisco Firewall Services Module (FWSM)B、Cisco Secure Access Control Server (ACS)C、Cisco Private Internet Exchange (PIX) FirewallD、Cisco Internetwork Operating System (IOS) Firewall

考题 What is a requirement to enable Cisco IOS IPS with 5.x signature?()A、disable Zone-Based Firewall as the two features are not compatibleB、disable Cisco Express Forwarding as the two features are not compatibleC、generate a certificate and export on Cisco.com to receive a signature updateD、import the public RSA key from the Cisco IPS team that allows the router to verify that a signatureupdate (which was signed by this key) comes from Cisco

考题 What are two security features of the Cisco Secure Router 500 Series? ()A、Cisco Intrusion Prevention SystemB、Cisco IOS Software FirewallC、Cisco IOS Easy VPND、Cisco Unified Wireless NetworkingE、Cisco ASA Hardware Firewall

考题 What are three features of the Cisco IOS Firewall feature set?()A、network-based application recognition (NBAR)B、authentication proxyC、stateful packet filteringD、AAA servicesE、proxy serverF、IPS

考题 Which three statements about IOS Firewall configurations are true?()A、The IP inspection rule can be applied in the inbound direction on the secured interface.B、The IP inspection rule can be applied in the outbound direction on the unsecured interface.C、The ACL applied in the outbound direction on the unsecured interface should be an extended ACL.D、The ACL applied in the inbound direction on the unsecured interface should be an extended ACL.E、For temporary openings to be created dynamically by Cisco IOS Firewall,the access-list for thereturning traffic must be a standard ACL.F、For temporary openings to be created dynamically by Cisco IOS Firewall,the IP inspection rule must be applied to the secured interface.

考题 Which three statements accurately describe IOS Firewall configurations?()A、The IP inspection rule can be applied in the inbound direction on the secured interfaceB、The IP inspection rule can be applied in the outbound direction on the unsecured interfaceC、The ACL applied in the inbound direction on the unsecured interface should be an extendedACL.D、For temporary openings to be created dynamically by Cisco IOS Firewall, the access-list for thereturning traffic must be a standard ACL

考题 Which of these is mandatory when configuring Cisco IOS Firewall? ()A、Cisco IOS IPS enabled on the untrusted interfaceB、NBAR enabled to perform protocol discovery and deep packet inspectionC、a route map to define the trusted outgoing trafficD、a route map to define the application inspection rulesE、an inbound extended ACL applied to the untrusted interface

考题 Refer to Cisco IOS Zone-Based Policy Firewall, where will the inspection policy be applied?()A、to the zone-pairB、to the zoneC、to the interfaceD、to the global service policy

考题 Which Cisco product is a hardware component that supports content filtering and other gateway security functions for the Catalyst 6500 Series?()A、Cisco Private Internet Exchange (PIX) FirewallB、Cisco VPN/Security Management Solution (VMS)C、Cisco Internetwork Operating System (IOS) FirewallD、Cisco Firewall Services Module (FWSM)

考题 多选题Which two installations must be completed to allow third-party software to interact with the Cisco Unified CallManager Express system through TAPI Lite?()Athe files in the Cisco IOS TSP file on all Windows PCs on the LANBboth the Cisco IOS TSP and TAPI Lite files on all Windows PCs on the LANCthe Cisco TAPI Lite files on the same Windows PC where the software is installedDthe files in the Cisco IOS TSP file on the same Windows PC where the software is installedEthe Cisco IOS TSP on the same Windows PC where the software is installed and on all remote teleworker PCs

考题 多选题What are two security features of the Cisco Secure Router 500 Series? ()ACisco Intrusion Prevention SystemBCisco IOS Software FirewallCCisco IOS Easy VPNDCisco Unified Wireless NetworkingECisco ASA Hardware Firewall

考题 多选题Which three statements are true when configuring Cisco IOS Firewall features using the SDM? ()AA custom application security policy can be configured in the Advanced Firewall Security Configuration dialog box.BAn optional DMZ interface can be specified in the Advanced Firewall Interface Configuration dialog box.CCustom application policies for e-mail, instant messaging, HTTP, and peer-to-peer services can be created using the Intermediate Firewall wizard.DOnly the outside (untrusted) interface is specified in the Basic Firewall Interface Configuration dialog box.EThe outside interface that SDM can be launched from is configured in the Configuring Firewall for Remote Access dialog box.FThe SDM provides a basic, intermediate, and advanced firewall wizard.

考题 单选题After making some network changes you power off and then power on your Cisco router. What sequence of events occurs when a router is powered up?()A Perform POST, locate configuration statements, apply configuration statements, locate Cisco IOS software, and load Cisco IOS software.B Locate Cisco IOS software, load Cisco IOS software, locate configuration statements, apply configuration statements, and perform POST.C Test software routines, POST, load configuration files, load Cisco IOS software, test Cisco IOS software.D POST, locate Cisco IOS software, load the Cisco IOS software, locate configuration statements, and apply configuration statements.E Load and test IOS, load configuration files, test software routines, POST.

考题 多选题Which three statements about IOS Firewall configurations are true?()AThe IP inspection rule can be applied in the inbound direction on the secured interface.BThe IP inspection rule can be applied in the outbound direction on the unsecured interface.CThe ACL applied in the outbound direction on the unsecured interface should be an extended ACL.DThe ACL applied in the inbound direction on the unsecured interface should be an extended ACL.EFor temporary openings to be created dynamically by Cisco IOS Firewall,the access-list for thereturning traffic must be a standard ACL.FFor temporary openings to be created dynamically by Cisco IOS Firewall,the IP inspection rule must be applied to the secured interface.

考题 单选题What does Cisco recommend when you are enabling Cisco IOS IPS?()A Do not enable all the signatures at the same time.B Do not enable the ICMP signature.C Disable the Zone-Based Policy Firewall because it is not compatible with Cisco IOS IPS.D Disable CEF because it is not compatible with Cisco IOS IPS. .

考题 多选题What are three features of the Cisco IOS Firewall feature set?()Anetwork-based application recognition (NBAR)Bauthentication proxyCstateful packet filteringDAAA servicesEproxy serverFIPS

考题 单选题Which statement best describes Cisco IOS Zone-Based Policy Firewall?()A A router interface can belong to multiple zones.B Policy maps are used to classify traffic into different traffic classes, and class maps are used to assignaction to the traffic classes.C The pass action works in only one directionD A zone-pair is bidirectional because it specifies traffic flowing among the interfaces within the zone-pair in both directions.

考题 单选题What is the purpose of an explicit "deny any" statement at the end of an ACL?()A none,since it is implicitB to enable Cisco IOS IPS to work properly;however,it is the deny all traffic entry that is actually requiredC to enable Cisco IOS Firewall to work properly;however,it is the deny all traffic entry that is actually requiredD to allow the log option to be used to log any matchesE to prevent sync flood attacksF to prevent half-opened TCP connections

考题 单选题If NVRAM lacks boot system commands, where does the router look for the Cisco IOS by default?()A ROMB RAMC FlashD BootstrapE Startup-.config

考题 单选题Which of these is mandatory when configuring Cisco IOS Firewall? ()A Cisco IOS IPS enabled on the untrusted interfaceB NBAR enabled to perform protocol discovery and deep packet inspectionC a route map to define the trusted outgoing trafficD a route map to define the application inspection rulesE an inbound extended ACL applied to the untrusted interface

考题 单选题Which Cisco product is a software component that blocks unwanted connections and provides other gateway security functions for small business?()A Cisco Internetwork Operating System (IOS) FirewallB Cisco Secure Access Control Server (ACS)C Cisco Firewall Services Module (FWSM)D Cisco Private Internet Exchange (PIX) Firewall

考题 多选题Which three statements accurately describe IOS Firewall configurations?()AThe IP inspection rule can be applied in the inbound direction on the secured interfaceBThe IP inspection rule can be applied in the outbound direction on the unsecured interfaceCThe ACL applied in the inbound direction on the unsecured interface should be an extendedACL.DFor temporary openings to be created dynamically by Cisco IOS Firewall, the access-list for thereturning traffic must be a standard ACL