Tüm alıştırma soruları
203 soru
A network administrator is deploying SSHv2 on a newly installed Cisco IOS branch gateway router named BR-GW01. Place the required CLI configuration tasks in the correct logical execution sequence from initial global configuration mode to final line security binding.
Öğeleri doğru sıraya koymak için sürükleyin
A network security administrator must perform a local password recovery procedure on a Cisco IOS router after administrative credentials were lost. Arrange the procedural steps in the correct chronological order required to restore administrative access without losing the active device configuration.
Öğeleri doğru sıraya koymak için sürükleyin
A network engineer enables preemption on router R1 (configured with HSRP priority ) while router R2 (configured with HSRP priority ) is currently acting as the Active gateway for HSRP Group 1. In what chronological sequence do the protocol events occur as router R1 takes over the Active role?
Öğeleri doğru sıraya koymak için sürükleyin
A newly connected host workstation requires an IPv4 address assignment. Place the steps of the standard DHCP address allocation and validation sequence in the correct chronological order from beginning to end.
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator is hardening remote management access on a factory-reset Cisco IOS router currently running default factory settings. In what sequential order must the administrator execute the CLI commands to properly configure SSHv2 access using local user authentication?
Öğeleri doğru sıraya koymak için sürükleyin
A Cisco router configured with the static route `ip route 172.16.10.0 255.255.255.0 10.1.1.2` receives an IPv4 packet destined for . Place the steps performed by the router to process and forward this packet in the correct sequential order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
A network engineer must configure an IPv4 extended access control list (ACL 105) on a Cisco IOS router to enforce security policies for traffic originating from the internal subnet () destined for an application server at :
1. Allow host administrative SSH access (TCP port 22) to server .
2. Prevent all other hosts in the subnet from accessing server via SSH.
3. Allow all hosts in the subnet web access (TCP port 80) to server .
4. Explicitly block all remaining IP traffic from to server .
In what order should the network engineer place the ACL statements from top to bottom to ensure the policy is correctly enforced?
Öğeleri doğru sıraya koymak için sürükleyin
An enterprise LAN uses HSRP for gateway redundancy with interface tracking configured on Router R1 (currently Active). Router R2 is in the Standby state with preemption enabled. When R1's tracked WAN uplink interface fails, a sequence of failover actions takes place. Place the operational steps in the correct chronological order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator is creating an IPv4 extended Access Control List (ACL 105) to allow HTTPS access from host 192.168.10.5 to web server 10.0.0.5, block all other TCP traffic from the 192.168.10.0/24 subnet to the 10.0.0.0/8 network, and permit all remaining traffic. In what sequential order from top to bottom should these ACL statements be configured to enforce the intended policy correctly?
Öğeleri doğru sıraya koymak için sürükleyin
A host client on a remote subnetwork requires an IPv4 address assignment from a centralized server. Place the operational steps in the correct sequential order to illustrate how a Cisco router configured with `ip helper-address` processes and relays the initial discovery and offer messages.
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator needs to back up a Cisco IOS router's running configuration to a remote FTP server that requires user authentication. Arrange the Cisco IOS CLI operational and configuration steps in the correct chronological sequence to perform this transfer.
Öğeleri doğru sıraya koymak için sürükleyin
A host client on VLAN 10 requests an IPv4 address assignment from a centralized DHCP server located across a Cisco router acting as a DHCP relay agent. Arrange the operational steps of the initial address discovery process in the correct chronological sequence.
Öğeleri doğru sıraya koymak için sürükleyin
A network technician needs to harden local console line access on a Cisco IOS XE switch using the local user database. Arrange the following Cisco IOS CLI commands in the correct sequential order required to perform this configuration, starting from Privileged EXEC mode (`Switch#`).
Öğeleri doğru sıraya koymak için sürükleyin
A network engineer has configured VRRPv2 between Router A (Master) and Router B (Backup) to provide default gateway redundancy for hosts on VLAN 10. Router A suddenly loses power and stops functioning. What is the correct sequence of operational events from the initial failure of Router A to the complete restoration of host traffic flow through Router B?
Öğeleri doğru sıraya koymak için sürükleyin
A Cisco IOS router receives an IPv4 packet destined for . The routing table contains a static route `ip route 10.150.20.0 255.255.255.0 172.16.1.2` pointing to a next-hop address. Place the steps describing how the router recursively resolves the next-hop and forwards the packet in the correct sequential order from first to last.
Öğeleri doğru sıraya koymak için sürükleyin
Place the operational events in chronological order from first to last during an HSRP interface tracking failover scenario, assuming preemption is enabled on the standby router.
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator needs to configure an IPv4 extended named Access Control List (ACL) named SECURE_FLOW on a Cisco IOS router. The ACL must implement the following policy requirements in order:
1. Permit SSH access (TCP port 22) specifically from management host 10.20.1.15 to server 172.16.50.10.
2. Deny all other IP traffic originating from the 10.20.1.0/24 subnet targeted to server 172.16.50.10.
3. Permit all remaining IPv4 traffic originating from the 10.20.1.0/24 subnet to any destination.
4. Ensure all other IP traffic from any source not explicitly permitted is implicitly dropped.
Arrange the configuration command statements into the correct top-to-bottom sequential order to achieve this policy.
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator is creating an IPv4 extended Access Control List (ACL) on a Cisco IOS router to regulate traffic flowing from internal hosts to the DMZ subnet (). The ACL must enforce the following policy requirements in order of precedence:
1. Allow HTTP traffic from any host in the internal subnet () to the web server at .
2. Block all other IP traffic from host to the DMZ subnet ().
3. Allow all remaining IP traffic from the internal subnet () to the DMZ subnet ().
4. Explicitly deny all other traffic.
Arrange the given ACL statements in the correct top-down execution order to achieve this security policy without unintended traffic drops.
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator needs to construct an IPv4 extended Access Control List (ACL) on a Cisco IOS router to enforce the following security policy for internal users in the network:
1. Host must be permitted SSH access to the administrative server at .
2. All other TCP traffic from the subnet destined to server must be blocked.
3. All hosts in the subnet must be permitted web access (HTTP) to any destination server.
4. General ICMP traffic must be allowed from any source to any destination.
Arrange the ACL statements from top to bottom (first line to last line) in the correct sequential order to achieve this policy without unintentionally blocking desired traffic.
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator must configure a Cisco IOS extended IPv4 Access Control List (ACL) to enforce the following security policy requirements:
1. Permit HTTP traffic (TCP port 80) from any host on the network to the web server at .
2. Deny all other IP traffic originating specifically from host to the web server at .
3. Permit all other TCP traffic from the network to the subnet.
4. Explicitly block all remaining IP traffic from the network to the subnet.
Arrange the following ACL statements in the correct top-down processing order (from line 1 at the top to line 4 at the bottom) so that the security policy is properly enforced.
Öğeleri doğru sıraya koymak için sürükleyin