单选题What will an Easy VPN hardware client require in order to insert its protected network address when it connects using network extension mode?()ARADIUS or LDAPBan internal router running EIGRPCReverse Route Injection and OSPF or RIPv2Dthe VPN appliance to be deployed in line with the firewall

单选题
What will an Easy VPN hardware client require in order to insert its protected network address when it connects using network extension mode?()
A

RADIUS or LDAP

B

an internal router running EIGRP

C

Reverse Route Injection and OSPF or RIPv2

D

the VPN appliance to be deployed in line with the firewall


参考解析

解析: 暂无解析

相关考题:

Router R1 connects to a Frame Relay cloud using a multipoint subinterface, with ten PVCs associated with the subinterface.What command would make this router not use a DR, and dynamically discover OSPF neighbors?()A. ip ospf network broadcastB. ip ospf network non - broadcastC. ip ospf network point - to - multipointD. ip ospf network point - to - multipoint non - broadcast

What will an Easy VPN hardware client require in order to insert its protected network address when it connects using network extension mode?() A. RADIUS or LDAPB. an internal router running EIGRPC. Reverse Route Injection and OSPF or RIPv2D. the VPN appliance to be deployed in line with the firewall

A router receives information about network 192.168.10.0/24 from multiple sources. What will the router consider the most reliable information about the path to that network()。 A.a directly connected interface with an address of 192.168.10.254/24B.a static route to network 192.168.10.0/24C.a RIP update for network 192.168.10.0/24D.an OSPF update for network 192.168.0.0/16E.a default route with a next hop address of 192.168.10.1F.a static route to network 192.168.10.0/24 with a local serial interface configured as the next hop

What is the benefit of using the Cisco Easy VPN Server feature along with the Cisco software VPN client for implementing remote-access VPNs? ()A、 The Cisco Easy VPN Server feature and the Cisco software VPN client use the same GUI configuration tool to simplify remote-access VPN configurations.B、 The Cisco Easy VPN Server feature allows the Cisco software VPN client to receive its security policies from the central site VPN device. This minimizes the configuration requirements at the remote location for large remote access VPN deployments.C、 The Cisco Easy VPN Server feature and the Cisco software VPN client use hardware-based encryption to reduce the CPU overhead of the central site VPN router.D、 The Cisco Easy VPN Server feature and the Cisco software VPN client enable scalable remote-access VPNs deployment by using a thick client/thin server model where the central site VPN router can handle thousands of incoming VPN connections.

Which three statements about the Cisco Easy VPN feature are true?()A、If the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.B、The Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.C、The VPN client initiates aggressive mode (AM) if a pre-shared key is used for authentication during the IKE phase 1 process.D、The VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.E、The VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series concentrators.F、When connecting with a VPN client,the VPN server must be configured for ISAKMP group 1,2 or 5.

An Enterprise customer is concerned about the effort involved in allocating remote network addressing at the Teleworker location. What should you recommend to the customer?()A、CiscoWorks VPN ManagerB、Easy VPN client modeC、deploy Linksys routers with menu driven configurationD、disable 802.1x and Auth Proxy on the Teleworker router

What will an Easy VPN hardware client require in order to insert its protected network address when it connects using network extension mode?()A、 RADIUS or LDAPB、 an internal router running EIGRPC、 Reverse Route Injection and OSPF or RIPv2D、 the VPN appliance to be deployed in line with the firewall

Router R1 connects to a Frame Relay cloud using a multipoint subinterface, with ten PVCs associated with the subinterface. What command would make this router not use a DR and require static OSPF neighbor definition?()A、ip ospf network broadcastB、ip ospf netw ork non - broadcastC、ip ospf network point - to - multipointD、ip ospf network point - to - multipoint non - broadcast

Easy VPN operates in two modes. Although Client Mode has advantages, there are environments where it should not be used.()A、Teleworker devices must be accessed from the central site (server, printers).B、IP addressing is simplified.C、The Teleworker LAN is a transit networking for routing.D、An Enterprise application does not function with Network Address Translation.E、The Teleworker router is an MPLS PE node.

During the Easy VPN Remote connection process,which phase involves pushing the IP address, Domain Name System (DNS),and split tunnel attributes to the client?()A、mode configurationB、the VPN client establishment of an ISAKMP SAC、IPsec quick mode completion of the connectionD、VPN client initiation of the IKE phase 1 process

When designing remote access to the Enterprise Campus network for teleworkers and mobileworkers, which of the following should the designer consider?()A、 It is recommended to place the VPN termination device in line with the Enterprise Edge 1B、 Maintaining access rules, based on the source IP of the client, on an internal firewall drawnfrom a headend RADIUS server is the most secure deploymentC、 VPN Headend routing using Reverse Route Injection (RRI) with distribution is recommended when the remote user community is small and dedicated DHCP scopes are in placeD、 Clientless SSL VPNs provide more granular access control than SSL VPN clients (thin or thick),including at Layer 7

You have a router running BGP for the MPLS network and OSPF for the local LAN network at the sales office. A route is being learned from the MPLS network that also exists on the OSPF local network. It is important that the router chooses the local LAN route being learned from the downstream switch running OSPF rather than the upstream BGP neighbor. Also, if the local OSPF route goes away, the BGP route needs to be used. What should be configured to make sure that the router will choose the LAN network as the preferred path?()A、static route needs to be addedB、floating static route needs to be addedC、bgp backdoor commandD、ospf backdoor command

Router R1 connects to a Frame Relay cloud using a multipoint subinterface, with ten PVCs associated with the subinterface. What command would make this router not use a DR, and dynamically discover OSPF neighbors?()A、ip ospf network broadcastB、ip ospf network non - broadcastC、ip ospf network point - to - multipointD、ip ospf network point - to - multipoint non - broadcast

Which statement describes Reverse Route Injection (RRI)?()A、A static route that points towards the Cisco Easy VPN server is created on the remote client.B、A static route is created on the Cisco Easy VPN server for the internal IP address of each VPN client.C、A default route is injected into the route table of the remote client.D、A default route is injected into the route table of the Cisco Easy VPN server.

You are designing the IP address assignment strategy for the VPN users. Which two actions should you perform.()A、 Configure VPN1 as a DHCP Relay Agent.B、 Configure VPN1 to assign IP Address by using DHCP server.C、 Configure VPN1 to have a static pool of IP Address from the network address of 131.107.1.0/24.D、 Configure VPN1 to have a static pool of IP Address from the network address of 192.168.1.0/24.E、 Configure the perimeter firewall to allow inbound DHCP traffic to be passed to VPN1.F、 Configure the interval firewall to allow DHCP broadcasts to be forwarded from the external network to the internal network.

Your network contains two Active Directory forests named contoso.com and fabrikam.com.You have a standalone Network Policy Server (NPS) named NPS1.You have a VPN server named VPN1. VPN1 is configured as a RADIUS client to NPS1.You need to ensure that users from both forests can establish VPN connections by using their own domain accounts.What should you do?()A、On NPS1, configure remediation server groups.B、On NPS1, configure connection request policies.C、On VPN1, modify the DNS suffix search order.D、On VPN1, modify the IKEv2 Client connection controls.

单选题You are designing a strategy to allow users to gain VPN access to the internal network. What should you do?()AAllow all inbound VPN traffic to pass through the internal firewall and the perimeter firewall.BAllow all inbound VPN traffic to pass through the perimeter firewall only.  CAllow all VPN traffic from the source IP address of 131.107.1.14 to pass through the internal firewall.DAllow all VPN traffic from the source IP address of 191.168.1.0/24 to pass through the perimeter firewall.

单选题Your network contains two Active Directory forests named contoso.com and fabrikam.com.You have a standalone Network Policy Server (NPS) named NPS1.You have a VPN server named VPN1. VPN1 is configured as a RADIUS client to NPS1.You need to ensure that users from both forests can establish VPN connections by using their own domain accounts.What should you do?()AOn NPS1, configure remediation server groups.BOn NPS1, configure connection request policies.COn VPN1, modify the DNS suffix search order.DOn VPN1, modify the IKEv2 Client connection controls.

单选题Router R1 connects to a Frame Relay cloud using a multipoint subinterface, with ten PVCs associated with the subinterface. What command would make this router not use a DR and require static OSPF neighbor definition?()Aip ospf network broadcastBip ospf netw ork non - broadcastCip ospf network point - to - multipointDip ospf network point - to - multipoint non - broadcast

单选题What will an Easy VPN hardware client require in order to insert its protected network address when it connects using network extension mode?()A RADIUS or LDAPB an internal router running EIGRPC Reverse Route Injection and OSPF or RIPv2D the VPN appliance to be deployed in line with the firewall

单选题What is the benefit of using the Cisco Easy VPN Server feature along with the Cisco software VPN client for implementing remote-access VPNs? ()A The Cisco Easy VPN Server feature and the Cisco software VPN client use the same GUI configuration tool to simplify remote-access VPN configurations.B The Cisco Easy VPN Server feature allows the Cisco software VPN client to receive its security policies from the central site VPN device. This minimizes the configuration requirements at the remote location for large remote access VPN deployments.C The Cisco Easy VPN Server feature and the Cisco software VPN client use hardware-based encryption to reduce the CPU overhead of the central site VPN router.D The Cisco Easy VPN Server feature and the Cisco software VPN client enable scalable remote-access VPNs deployment by using a thick client/thin server model where the central site VPN router can handle thousands of incoming VPN connections.

单选题Router R1 connects to a Frame Relay cloud using a multipoint subinterface, with ten PVCs associated with the subinterface. What command would make this router not use a DR, and dynamically discover OSPF neighbors?()Aip ospf network broadcastBip ospf network non - broadcastCip ospf network point - to - multipointDip ospf network point - to - multipoint non - broadcast

多选题Which three statements about the Cisco Easy VPN feature are true?()AIf the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.BThe Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.CThe VPN client initiates aggressive mode (AM) if a pre-shared key is used for authentication during the IKE phase 1 process.DThe VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.EThe VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series concentrators.FWhen connecting with a VPN client,the VPN server must be configured for ISAKMP group 1,2 or 5.

单选题You have a router running BGP for the MPLS network and OSPF for the local LAN network at the sales office. A route is being learned from the MPLS network that also exists on the OSPF local network. It is important that the router chooses the local LAN route being learned from the downstream switch running OSPF rather than the upstream BGP neighbor. Also, if the local OSPF route goes away, the BGP route needs to be used. What should be configured to make sure that the router will choose the LAN network as the preferred path?()Astatic route needs to be addedBfloating static route needs to be addedCbgp backdoor commandDospf backdoor command

单选题Which statement describes Reverse Route Injection (RRI)?()AA static route that points towards the Cisco Easy VPN server is created on the remote client.BA static route is created on the Cisco Easy VPN server for the internal IP address of each VPN client.CA default route is injected into the route table of the remote client.DA default route is injected into the route table of the Cisco Easy VPN server.

单选题Easy VPN operates in two modes. Although Client Mode has advantages, there are environments where it should not be used.()ATeleworker devices must be accessed from the central site (server, printers).BIP addressing is simplified.CThe Teleworker LAN is a transit networking for routing.DAn Enterprise application does not function with Network Address Translation.EThe Teleworker router is an MPLS PE node.

单选题When designing remote access to the Enterprise Campus network for teleworkers and mobileworkers, which of the following should the designer consider?()A It is recommended to place the VPN termination device in line with the Enterprise Edge 1B Maintaining access rules, based on the source IP of the client, on an internal firewall drawnfrom a headend RADIUS server is the most secure deploymentC VPN Headend routing using Reverse Route Injection (RRI) with distribution is recommended when the remote user community is small and dedicated DHCP scopes are in placeD Clientless SSL VPNs provide more granular access control than SSL VPN clients (thin or thick),including at Layer 7