单选题Which zone is a system-defined zone?()Anull zoneBtrust zoneCuntrust zoneDmanagement zone

单选题
Which zone is a system-defined zone?()
A

null zone

B

trust zone

C

untrust zone

D

management zone


参考解析

解析: 暂无解析

相关考题:

In the Junos OS, which statement is true?() A. vlan.0 belongs to the untrust zone.B. You must configure Web authentication to allow inbound traffic in the untrust zone.C. The zone name untrust has no special meaning.D. The untrust zone is not configurable.

Which statement describes a security zone?() A. A security zone can contain one or more interfaces.B. A security zone can contain interfaces in multiple routing instances.C. A security zone must contain two or more interfaces.D. A security zone must contain bridge groups.

Users can define policy to control traffic flow between which two components? ()(Choose two.) A. from a zone to the router itselfB. from a zone to the same zoneC. from a zone to a different zoneD. from one interface to another interface

You want to allow your device to establish OSPF adjacencies with a neighboring device connected to interface ge-0/0/3.0. Interface ge-0/0/3.0 is a member of the HR zone.Under which configuration hierarchy must you permit OSPF traffic?()A、[edit security policies from-zone HR to-zone HR]B、[edit security zones functional-zone management protocols]C、[edit security zones protocol-zone HR host-inbound-traffic]D、[edit security zones security-zone HR host-inbound-traffic protocols]

With reference to the requirements under IMO MODU CODE,Space in which an explosive gas/air mixture is likely to occur in normal operation of Drilling Units is considered as().A、Zone0B、Zone1C、Zone2D、Zone3

In the Junos OS, which statement is true?()A、vlan.0 belongs to the untrust zone.B、You must configure Web authentication to allow inbound traffic in the untrust zone.C、The zone name "untrust" has no special meaning.D、The untrust zone is not configurable.

Which zone is a system-defined zone?()A、null zoneB、trust zoneC、untrust zoneD、management zone

Which two statements are true for a security policy? ()(Choose two.)A、It controls inter-zone traffic.B、It controls intra-zone traffic.C、It is named with a system-defined name.D、It controls traffic destined to the device's ingress interface.

Users can define policy to control traffic flow between which two components? ()(Choose two.)A、from a zone to the router itselfB、from a zone to the same zoneC、from a zone to a different zoneD、from one interface to another interface

A380飞机公务舱位于上舱的()区。A、ZONE1、ZONE2B、ZONE3、ZONE4C、ZONE1D、ZONE2

A380飞机舱单中“A”代表ZONE()A、ZONE5B、ZONE6C、ZONE7D、ZONE8

A380飞机加长安全带的存放位置()A、ZONE1,ZONE2,ZONE6B、ZONE3,ZONE4,ZONE8C、ZONE1,ZONE4,ZONE6D、ZONE1,ZONE2,ZONE3

单选题Which statement describes a security zone?()AA security zone can contain one or more interfaces.BA security zone can contain interfaces in multiple routing instances.CA security zone must contain two or more interfaces.DA security zone must contain bridge groups.

单选题A network administrator wants to permit Telnet traffic initiated from the address book entry the10net in a zone called UNTRUST to the address book entry Server in a zone called TRUST. However, the administrator does not want the server to be able to initiate any type of traffic from the TRUST zone to the UNTRUST zone. Which configuration statement would correctly accomplish this task?()Afrom-zone UNTRUST to-zone TRUST { policy DenyServer { match { source-address any; destination-address any; application any; } then { deny; } } } from-zone TRUST to-zone UNTRUST { policy AllowTelnetin { match { source-address the10net; destination-address Server; application junos-telnet; } then { permit; } } }Bfrom-zone TRUST to-zone UNTRUST { policy DenyServer { match { source-address Server; destination-address any; application any; } then {deny; } } } from-zone UNTRUST to-zone TRUST { policy AllowTelnetin { match { source-address the10net; destination-address Server; application junos-telnet; } then { permit; } } }Cfrom-zone UNTRUST to-zone TRUST { policy AllowTelnetin { match { source-address the10net; destination-address Server; application junos-ftp; } then { permit; } } }Dfrom-zone TRUST to-zone UNTRUST { policy DenyServer { match { source-address Server; destination-address any; application any; } then { permit; } } } from-zone UNTRUST to-zone TRUST { policy AllowTelnetin { match {source-address the10net; destination-address Server; application junos-telnet; } then { permit; } } }

多选题Which two statements are true for a security policy? ()(Choose two.)AIt controls inter-zone traffic.BIt controls intra-zone traffic.CIt is named with a system-defined name.DIt controls traffic destined to the device's ingress interface.

单选题You have configured a UTM profile called Block-Spam, which has the appropriate antispam configuration to block undesired spam e-mails.Which configuration would protect an SMTP server in the dmz zone from spam originating in the untrust zone?()Aset security policies from-zone dmz to-zone untrust policy anti-spam then permit application- services utm-policy Block-SpamBset security policies from-zone untrust to-zone dmz policy anti-spam then permit application- services utm-policy Block-SpamCset security policies from-zone untrust to-zone dmz policy anti-spam then permit application- services anti-spam-policyDset security policies from-zone untrust to-zone dmz policy anti-spam then permit application- services Block-Spam

单选题In the Junos OS, which statement is true?()Avlan.0 belongs to the untrust zone.BYou must configure Web authentication to allow inbound traffic in the untrust zone.CThe zone name untrust has no special meaning.DThe untrust zone is not configurable.

单选题Which zone type can be specified in a policy?()AsecurityBfunctionalCuserDsystem

单选题Which type of zone is used by traffic transiting the device?()Atransit zoneBdefault zoneCsecurity zoneDfunctional zone

多选题Which two steps are performed when configuring a zone?()ADefine a default policy for the zone.BAssign logical interfaces to the zone.CAssign physical interfaces to the zone.DDefine the zone as a security or functional zone

单选题Click the Exhibit button. Based on the exhibit, client PC 192.168.10.10 cannot ping 1.1.1.2. Which is a potential cause for this problem?()A The untrust zone does not have a management policy configured.B The trust zone does not have ping enabled as host-inbound-traffic service.C The security policy from the trust zone to the untrust zone does not permit ping.D No security policy exists for the ICMP reply packet from the untrust zone to the trust zone.

单选题Which zone is system-defined?()AsecurityBfunctionalCjunos-globalDmanagement

多选题Users can define policy to control traffic flow between which two components?()Afrom a zone to the device itselfBfrom a zone to the same zoneCfrom a zone to a different zoneDfrom one interface to another interface

单选题Which zone type will allow transit-traffic?()AsystemBsecurityCdefaultDfunctional

单选题What is the purpose of a zone in JUNOS Software?()AA zone defines a group of security devices with a common management.BA zone defines the geographic region in which the security device is deployed.CA zone defines a group of network segments with similar security requirements.DA zone defines a group of network segments with similar class-of-service requirements.

单选题Regarding zone types, which statement is true?()AYou cannot assign an interface to a functional zone.BYou can specifiy a functional zone in a security policy.CSecurity zones must have a scheduler applied.DYou can use a security zone for traffic destined for the device itself.

多选题You are designing DNS implemetation Strategy for the new Infrastruce. Which two actions should you perform?()ACreate a Stub Zone in each domain of the root zone.BCreate a _msdcs subdomain in a new zone on the root domain.CReplicate the _msdcs subdomain across the roor domain.DReplicate the _msdcs subdomain to the ForestDNS zone applciation partition.EConfigure a zone transfer of the _msdcs subdomain to secondary zone on all DNS servers in the forest.

多选题You are designing DNS implemetation Strategy for the new Infrastruce.  Which two actions should you perform?()ACreate a Stub Zone in each domain of the root zone.BCreate a _msdcs subdomain in a new zone on the root domain.CReplicate the _msdcs subdomain across the roor domain.DReplicate the _msdcs subdomain to the ForestDNS zone applciation partition.EConfigure a zone transfer of the _msdcs subdomain to secondary zone on all DNS servers in the forest