单选题Refer to Cisco IOS Zone-Based Policy Firewall, where will the inspection policy be applied?()Ato the zone-pairBto the zoneCto the interfaceDto the global service policy

单选题
Refer to Cisco IOS Zone-Based Policy Firewall, where will the inspection policy be applied?()
A

to the zone-pair

B

to the zone

C

to the interface

D

to the global service policy


参考解析

解析: 暂无解析

相关考题:

If NVRAM lacks boot system commands, where does the router look for the Cisco IOS by default?() A.ROMB.RAMC.FlashD.BootstrapE.Startup-.config

What is the purpose of an explicit "deny any" statement at the end of an ACL?()A、none,since it is implicitB、to enable Cisco IOS IPS to work properly;however,it is the deny all traffic entry that is actually requiredC、to enable Cisco IOS Firewall to work properly;however,it is the deny all traffic entry that is actually requiredD、to allow the log option to be used to log any matchesE、to prevent sync flood attacksF、to prevent half-opened TCP connections

If XYZ LTD needs to upgrade the Cisco IOS Software of a Cisco Router, Where is the best place to download the upgrade image file from?()A、The best option is to download it from the Cisco TAC websiteB、The best option is to download it from the Cisco.Com Software support siteC、The best option is to download it form the Cisco Advanced Services websiteD、The best option is to download it from the TFTP site on Cisco.com

Examine the following items, which one offers a variety of security solutions, including firewall, IPS, VPN,antispyware, antivirus, and antiphishing features?()A、Cisco IOS routerB、Cisco PIX 500 series security applianceC、Cisco 4200 series IPS applianceD、Cisco ASA 5500 series security appliance

Which statement best describes Cisco IOS Zone-Based Policy Firewall?()A、A router interface can belong to multiple zones.B、Policy maps are used to classify traffic into different traffic classes, and class maps are used to assignaction to the traffic classes.C、The pass action works in only one directionD、A zone-pair is bidirectional because it specifies traffic flowing among the interfaces within the zone-pair in both directions.

Which Cisco product is a software component that blocks unwanted connections and provides other gateway security functions for small business?()A、Cisco Firewall Services Module (FWSM)B、Cisco Secure Access Control Server (ACS)C、Cisco Private Internet Exchange (PIX) FirewallD、Cisco Internetwork Operating System (IOS) Firewall

What is a requirement to enable Cisco IOS IPS with 5.x signature?()A、disable Zone-Based Firewall as the two features are not compatibleB、disable Cisco Express Forwarding as the two features are not compatibleC、generate a certificate and export on Cisco.com to receive a signature updateD、import the public RSA key from the Cisco IPS team that allows the router to verify that a signatureupdate (which was signed by this key) comes from Cisco

What are two security features of the Cisco Secure Router 500 Series? ()A、Cisco Intrusion Prevention SystemB、Cisco IOS Software FirewallC、Cisco IOS Easy VPND、Cisco Unified Wireless NetworkingE、Cisco ASA Hardware Firewall

What are three features of the Cisco IOS Firewall feature set?()A、network-based application recognition (NBAR)B、authentication proxyC、stateful packet filteringD、AAA servicesE、proxy serverF、IPS

Which three statements about IOS Firewall configurations are true?()A、The IP inspection rule can be applied in the inbound direction on the secured interface.B、The IP inspection rule can be applied in the outbound direction on the unsecured interface.C、The ACL applied in the outbound direction on the unsecured interface should be an extended ACL.D、The ACL applied in the inbound direction on the unsecured interface should be an extended ACL.E、For temporary openings to be created dynamically by Cisco IOS Firewall,the access-list for thereturning traffic must be a standard ACL.F、For temporary openings to be created dynamically by Cisco IOS Firewall,the IP inspection rule must be applied to the secured interface.

Which three statements accurately describe IOS Firewall configurations?()A、The IP inspection rule can be applied in the inbound direction on the secured interfaceB、The IP inspection rule can be applied in the outbound direction on the unsecured interfaceC、The ACL applied in the inbound direction on the unsecured interface should be an extendedACL.D、For temporary openings to be created dynamically by Cisco IOS Firewall, the access-list for thereturning traffic must be a standard ACL

Which of these is mandatory when configuring Cisco IOS Firewall? ()A、Cisco IOS IPS enabled on the untrusted interfaceB、NBAR enabled to perform protocol discovery and deep packet inspectionC、a route map to define the trusted outgoing trafficD、a route map to define the application inspection rulesE、an inbound extended ACL applied to the untrusted interface

Refer to Cisco IOS Zone-Based Policy Firewall, where will the inspection policy be applied?()A、to the zone-pairB、to the zoneC、to the interfaceD、to the global service policy

Which Cisco product is a hardware component that supports content filtering and other gateway security functions for the Catalyst 6500 Series?()A、Cisco Private Internet Exchange (PIX) FirewallB、Cisco VPN/Security Management Solution (VMS)C、Cisco Internetwork Operating System (IOS) FirewallD、Cisco Firewall Services Module (FWSM)

多选题Which two installations must be completed to allow third-party software to interact with the Cisco Unified CallManager Express system through TAPI Lite?()Athe files in the Cisco IOS TSP file on all Windows PCs on the LANBboth the Cisco IOS TSP and TAPI Lite files on all Windows PCs on the LANCthe Cisco TAPI Lite files on the same Windows PC where the software is installedDthe files in the Cisco IOS TSP file on the same Windows PC where the software is installedEthe Cisco IOS TSP on the same Windows PC where the software is installed and on all remote teleworker PCs

多选题What are two security features of the Cisco Secure Router 500 Series? ()ACisco Intrusion Prevention SystemBCisco IOS Software FirewallCCisco IOS Easy VPNDCisco Unified Wireless NetworkingECisco ASA Hardware Firewall

多选题Which three statements are true when configuring Cisco IOS Firewall features using the SDM? ()AA custom application security policy can be configured in the Advanced Firewall Security Configuration dialog box.BAn optional DMZ interface can be specified in the Advanced Firewall Interface Configuration dialog box.CCustom application policies for e-mail, instant messaging, HTTP, and peer-to-peer services can be created using the Intermediate Firewall wizard.DOnly the outside (untrusted) interface is specified in the Basic Firewall Interface Configuration dialog box.EThe outside interface that SDM can be launched from is configured in the Configuring Firewall for Remote Access dialog box.FThe SDM provides a basic, intermediate, and advanced firewall wizard.

单选题After making some network changes you power off and then power on your Cisco router. What sequence of events occurs when a router is powered up?()APerform POST, locate configuration statements, apply configuration statements, locate Cisco IOS software, and load Cisco IOS software.BLocate Cisco IOS software, load Cisco IOS software, locate configuration statements, apply configuration statements, and perform POST.CTest software routines, POST, load configuration files, load Cisco IOS software, test Cisco IOS software.DPOST, locate Cisco IOS software, load the Cisco IOS software, locate configuration statements, and apply configuration statements.ELoad and test IOS, load configuration files, test software routines, POST.

多选题Which three statements about IOS Firewall configurations are true?()AThe IP inspection rule can be applied in the inbound direction on the secured interface.BThe IP inspection rule can be applied in the outbound direction on the unsecured interface.CThe ACL applied in the outbound direction on the unsecured interface should be an extended ACL.DThe ACL applied in the inbound direction on the unsecured interface should be an extended ACL.EFor temporary openings to be created dynamically by Cisco IOS Firewall,the access-list for thereturning traffic must be a standard ACL.FFor temporary openings to be created dynamically by Cisco IOS Firewall,the IP inspection rule must be applied to the secured interface.

单选题What does Cisco recommend when you are enabling Cisco IOS IPS?()ADo not enable all the signatures at the same time.BDo not enable the ICMP signature.CDisable the Zone-Based Policy Firewall because it is not compatible with Cisco IOS IPS.DDisable CEF because it is not compatible with Cisco IOS IPS. .

多选题What are three features of the Cisco IOS Firewall feature set?()Anetwork-based application recognition (NBAR)Bauthentication proxyCstateful packet filteringDAAA servicesEproxy serverFIPS

单选题Which statement best describes Cisco IOS Zone-Based Policy Firewall?()AA router interface can belong to multiple zones.BPolicy maps are used to classify traffic into different traffic classes, and class maps are used to assignaction to the traffic classes.CThe pass action works in only one directionDA zone-pair is bidirectional because it specifies traffic flowing among the interfaces within the zone-pair in both directions.

单选题What is the purpose of an explicit "deny any" statement at the end of an ACL?()Anone,since it is implicitBto enable Cisco IOS IPS to work properly;however,it is the deny all traffic entry that is actually requiredCto enable Cisco IOS Firewall to work properly;however,it is the deny all traffic entry that is actually requiredDto allow the log option to be used to log any matchesEto prevent sync flood attacksFto prevent half-opened TCP connections

单选题If NVRAM lacks boot system commands, where does the router look for the Cisco IOS by default?()AROMBRAMCFlashDBootstrapEStartup-.config

单选题Which of these is mandatory when configuring Cisco IOS Firewall? ()ACisco IOS IPS enabled on the untrusted interfaceBNBAR enabled to perform protocol discovery and deep packet inspectionCa route map to define the trusted outgoing trafficDa route map to define the application inspection rulesEan inbound extended ACL applied to the untrusted interface

单选题Which Cisco product is a software component that blocks unwanted connections and provides other gateway security functions for small business?()ACisco Internetwork Operating System (IOS) FirewallBCisco Secure Access Control Server (ACS)CCisco Firewall Services Module (FWSM)DCisco Private Internet Exchange (PIX) Firewall

多选题Which three statements accurately describe IOS Firewall configurations?()AThe IP inspection rule can be applied in the inbound direction on the secured interfaceBThe IP inspection rule can be applied in the outbound direction on the unsecured interfaceCThe ACL applied in the inbound direction on the unsecured interface should be an extendedACL.DFor temporary openings to be created dynamically by Cisco IOS Firewall, the access-list for thereturning traffic must be a standard ACL