单选题Two BGP peers connected through a routed firewall are unable to establish a peering relationship. What could be the most likely cause? ()A BGP peers must be Layer 2-adjacentB EBGP multihop is not configuredC The firewall is not configured to allow IP protocol 89D The firewall is not configured to allow UDP 179.
单选题
Two BGP peers connected through a routed firewall are unable to establish a peering relationship. What could be the most likely cause? ()
A
BGP peers must be Layer 2-adjacent
B
EBGP multihop is not configured
C
The firewall is not configured to allow IP protocol 89
D
The firewall is not configured to allow UDP 179.
参考解析
解析:
暂无解析
相关考题:
You receive an EBGP route configured with the no-export community set.To which types of peers can you send this route?() (Choose two.) A. no BGP peersB. all I-BGP peersC. all E-BGP peers within your global ASD. all E-BGP peers outside your global AS
Which two statements accurately describe an IBGP peering session?() (Choose two.) A. Peers are statically defined.B. Peers exist within the same AS.C. Peers must be directly connected to each other.D. Peers advertise routes learned from other IBGP neighbors.
Which two characteristics are true of a firewall running in routed mode based on the following information?() A. FWSM routes traffic between the VLANs.B. FWSM switches traffic between the VLANs.C. Routed mode is often called bump-in-the-wire mode.D. Routed mode firewall deployments are used most often in current designs.
Which of the following describe private IP addresses (Choose two.)()。 A.addresses chosen by a company to communicate with the InternetB.addresses that cannot be routed through the public InternetC.addresses that can be routed through the public InternetD.a scheme to conserve public addressesE.addresses licensed to enterprises or ISPs by an Internet registry organization
Which three statements about firewall modes are correct? ()A、 A firewall in routed mode has one IP addressB、 A firewall in transparent mode has one IP addressC、 In routed mode, the firewall is considered to be a Layer 2 dewD、 In routed mode, the firewall is considered to be a Layer 3 deviceE、 In transparent mode, the firewall is considered to be a Layer 2 deviceF、 In transparent mode, the firewall is considered to be a Layer 3 device
Which two statements are correct about firewall filters in the Junos OS?()A、Firewall filters are stateless.B、Firewall filters are used to control routing information that is exchanged between devices.C、Firewall filters are used to control traffic passing through the device.D、Firewall filters can only be applied to traffic entering the device.
Which two statements are true regarding firewall user authentication?() (Choose two.)A、When configured for pass-through firewall user authentication, the user must first open a connection to the Junos security remote network resource.B、When configured for Web firewall user authentication only, the user must first open a connection to the Junos security remote network resource.C、If a Junos security device is configured for pass-through firewall user authentication, new sessions are automatically intercepted .D、If a Junos security device is configured for Web firewall user authentication, new sessions are automatically intercepted.
Which two traffic types trigger pass-through firewall user authentication?()A、SSHB、TelnetC、ICMPD、OSPFE、HTTP
Which two statements accurately describe an IBGP peering session?() (Choose two.)A、Peers are statically defined.B、Peers exist within the same AS.C、Peers must be directly connected to each other.D、Peers advertise routes learned from other IBGP neighbors.
Two routers configured to run BGP have been connected to a firewall, one on the inside interface and one on the outside interface. BGP has been configured so the two routers should peer, including the correct BGP session endpoint addresses and the correct BGP session hop-count limit (EBGP multihop). What is a good first test to see if BGP will work across the firewall?()A、Attempt to TELNET from the router connected to the inside of the firewall to the router connected to the outside of the firewall. If telnet works, BGP will work, since telnet and BGP both use TCP to transport data.B、Ping from the router connected to the inside interface of the firewall to the router connected to the outside interface of the firewall. If you can ping between them, BGP should work, since BGP uses IP to transport packets.C、There is no way to make BGP work across a firewall without special configuration, so there is no simple test that will show you if BGP will work or not, other than trying to start the peering session.D、There is no way to make BGP work across a firewall.
Which of the following describe private IP addresses? (Choose two.)()A、addresses chosen by a company to communicate with the InternetB、addresses that cannot be routed through the public InternetC、addresses that can be routed through the public InternetD、a scheme to conserve public addressesE、addresses licensed to enterprises or ISPs by an Internet registry organization
You work as a network engineer for the company, you want to configure two BGP speakers to form an EBGP session across a firewall. On the engineer’s network, the firewall always permits TCP sessions that are initiated from the inside network (the network attached to the inside interface of the firewall). What prerequisite is there for enabling BGP to run on this network?()A、EBGP multihop will need to be configured for this to work.B、This should work with normal BGP peering, with no additional configuration on the BGP speakers or the firewall.C、The BGP protocol port must be opened on the firewallD、There is no way to make BGP work across a firewall.
Two BGP peers connected through a routed firewall are unable to establish a peering relationship. What could be the most likely cause? ()A、 BGP peers must be Layer 2-adjacentB、 EBGP multihop is not configuredC、 The firewall is not configured to allow IP protocol 89D、 The firewall is not configured to allow UDP 179.
What is a virtual firewall?()A、another name for a firewall deployed in routed modeB、another name for a firewall deployed in transparent modeC、a separation of multiple firewall security contexts on a single firewallD、a firewall that, when deployed in routed mode, can support up to 1000 VLANs per contextE、a firewall that has multiple contexts, all of which share the same policies (such as NAT and ACLs)
Which description of BGP authentication is true?()A、MD5 has been used by BGP to encrypt BGP update packets.B、BGP uses a message-digest algorithm to authenticate BGP peersC、A plain-text password authentication is an option of BGP authenticationD、EBGP peers authentication is faster than IBGP peers authenticationE、BGP uses public key and private key to authenticate BGP peers.
You receive an EBGP route configured with the no-export community set.To which types of peers can you send this route?() (Choose two.)A、no BGP peersB、all I-BGP peersC、all E-BGP peers within your global ASD、all E-BGP peers outside your global AS
单选题By default, routes learned via IBGP will be announced to which peers?()AIBGP peersBEBGP peersCactive BGP peersDestablished BGP peers
单选题Two routers configured to run BGP have been connected to a firewall, one on the inside interface and one on the outside interface. BGP has been configured so the two routers should peer, including the correctBGP session endpoint addresses and the correct BGP session hop-count limit EBGP multihop. What is agood first test to see if BGP will work across the firewall?()AAttempt to TELNET from the router connected to the inside of the firewall to the router connected to theoutside of the firewall. If telnet works, BGP will work, since telnet and BGP both use TCP to transportdata.BPing from the router connected to the inside interface of the firewall to the router connected to theoutside interface of the firewall. If you can ping between them, BGP should work, since BGP uses IP totransport packets.CThere is no way to make BGP work across a firewall without special configuration, so there is no simpletest that will show you if BGP will work or not, other than trying to start the peering session.DThere is no way to make BGP work across a firewall.
多选题Which three statements about firewall modes are correct? ()AA firewall in routed mode has one IP addressBA firewall in transparent mode has one IP addressCIn routed mode, the firewall is considered to be a Layer 2 dewDIn routed mode, the firewall is considered to be a Layer 3 deviceEIn transparent mode, the firewall is considered to be a Layer 2 deviceFIn transparent mode, the firewall is considered to be a Layer 3 device
单选题Two BGP peers connected through a routed firewall are unable to establish a peering relationship. What could be the most likely cause?()ABGP peers must be Layer 2-adjacent.BEBGP multihop is not configured.CThe firewall is not configured to allow IP protocol 89.DThe firewall is not configured to allow UDP 179.
多选题Which two traffic types trigger pass-through firewall user authentication?()ASSHBTelnetCICMPDOSPFEHTTP
单选题Which description of BGP authentication is true?()AMD5 has been used by BGP to encrypt BGP update packets.BBGP uses a message-digest algorithm to authenticate BGP peersCA plain-text password authentication is an option of BGP authenticationDEBGP peers authentication is faster than IBGP peers authenticationEBGP uses public key and private key to authenticate BGP peers.
单选题By default, to which peers will a BGP router advertise routes learned from IBGP peers?()Aall BGP peersBall IBGP peersCall EBGP peersDall MBGP peers
多选题Which two statements are true regarding firewall user authentication?() (Choose two.)AWhen configured for pass-through firewall user authentication, the user must first open a connection to the Junos security remote network resource.BWhen configured for Web firewall user authentication only, the user must first open a connection to the Junos security remote network resource.CIf a Junos security device is configured for pass-through firewall user authentication, new sessions are automatically intercepted .DIf a Junos security device is configured for Web firewall user authentication, new sessions are automatically intercepted.
多选题Which two statements are true regarding EBGP and Confederation BGP?() (Choose two.)AEBGP peers advertise MED and change Next Hop.BEBGP peers advertise Local Preference and do NOT change Next Hop.CConfederation BGP peers advertise MED and do NOT change Next Hop.DConfederation BGP peers advertise Local Preference and change Next Hop.
单选题You have two EBGP peers connected via two parallel serial lines. What should you do to be able to load-balance between two EBGP speakers over the parallel serial lines in both directions? ()Anothing,BGP automatically load-balances the traffic between different autonomous systems on all available linksBpeer between the eBGP speaker’s loopbacks, configuring eBGP multihop as required, and use an IGP to load-share between the two equal-cost paths between the loopback addressesCconfigure a loopback as update source for both EBGP peers and have on each AS an IGP to introduce two equal-cost paths to reach the EBGP peer loopback address;it is also necessary to use the next-hop-self commandDuse the ebgp-load-balance command on the neighbor statement on both sidesEconfigure a loopback as update source for both EBGP peers and have on each AS an IGP to introduce two equal-cost paths to reach the peer loopback address;it is also necessary to use the ebgp-multihop and next-hop-self commands
单选题Two routers configured to run BGP have been connected to a firewall, one on the inside interface and one on the outside interface. BGP has been configured so the two routers should peer, including the correct BGP session endpoint addresses and the correct BGP session hop-count limit (EBGP multihop). What is a good first test to see if BGP will work across the firewall?()AAttempt to TELNET from the router connected to the inside of the firewall to the router connected to the outside of the firewall. If telnet works, BGP will work, since telnet and BGP both use TCP to transport data.BPing from the router connected to the inside interface of the firewall to the router connected to the outside interface of the firewall. If you can ping between them, BGP should work, since BGP uses IP to transport packets.CThere is no way to make BGP work across a firewall without special configuration, so there is no simple test that will show you if BGP will work or not, other than trying to start the peering session.DThere is no way to make BGP work across a firewall.