Chinaunix首页 | 论坛 | 博客
  • 博客访问: 289465
  • 博文数量: 469
  • 博客积分: 2510
  • 博客等级: 少校
  • 技术积分: 5200
  • 用 户 组: 普通用户
  • 注册时间: 2008-06-03 16:15
文章分类

全部博文(469)

文章存档

2011年(82)

2010年(284)

2009年(69)

2008年(34)

我的朋友

分类:

2010-03-04 16:30:10

Cisco在全球互联网业占据垄断地位,用户遍及政府、教育机构及各种行业。Cisco认证证书代表着高标准的专业技术水平,是网络专业人士的全球通行证Cisco的网络管理系列认证还具有很强的渐进性,每本证书的含金量都极高。CCNA作为网络普及和扫盲性质的认证,是非常不错的入门证书。CCNP一贯享有网络界本科文凭的称号,考试难度位居中级网络认证之首,证书权威性可见一斑;CCIE今年已是第五次夺得北美地区最佳认证冠军,认证考试长达8小时的实验环节,使该证书的含金量极高,甚至被称为网络界的博士学位。另外CCSP 也是很有前景的一个认证。  路由交换CCIE考试350-001   136

1. What is the purpose of an explicit "deny any" statement at the end of an ACL?

A. none, since it is implicit

B. to enable Cisco IOS IPS to work properly; however, it is the deny all traffic entry that is actually required

C. to enable Cisco IOS Firewall to work properly; however, it is the deny all traffic entry that is actually

required

D. to allow the log option to be used to log any matches

E. to prevent sync flood attacks

F. to prevent half-opened TCP connections

Answer: D

2. Which of these is mandatory when configuring Cisco IOS Firewall?

A. Cisco IOS IPS enabled on the untrusted interface

B. NBAR enabled to perform protocol discovery and deep packet inspection

C. a route map to define the trusted outgoing traffic

D. a route map to define the application inspection rules

E. an inbound extended ACL applied to the untrusted interface

Answer: E

3. Which statement correctly describes the disabling of IP TTL propagation in an MPLS network?

A. The TTL field from the IP packet is copied into the TTL field of the MPLS label header at the ingress

edge LSR.

B. TTL propagation cannot be disabled in an MPLS domain.

C. TTL propagation is only disabled on the ingress edge LSR.

D. The TTL field of the MPLS label header is set to 255.

E. The TTL field of the IP packet is set to 0.

Answer: D

4. Two routers configured to run BGP have been connected to a firewall, one on the inside interface and

one on the outside interface. BGP has been configured so the two routers should peer, including the correct BGP session endpoint addresses and the correct BGP session hop-count limit (EBGP multihop).

What is a good first test to see if BGP will work across the firewall?

A. Attempt to TELNET from the router connected to the inside of the firewall to the router connected to the

outside of the firewall. If telnet works, BGP will work, since telnet and BGP both use TCP to transport

data.

B. Ping from the router connected to the inside interface of the firewall to the router connected to the

outside interface of the firewall. If you can ping between them, BGP should work, since BGP uses IP to

transport packets.

C. There is no way to make BGP work across a firewall without special configuration, so there is no

simple test that will show you if BGP will work or not, other than trying to start the peering session.

D. There is no way to make BGP work across a firewall.

Answer: A

5. Spanning Tree Protocol IEEE 802.1s defines the ability to deploy which of these?

A. one global STP instance for all VLANs

B. one STP instance for each VLAN

C. one STP instance per set of VLANs

D. one STP instance per set of bridges

Answer: C

更多的资料下载你必须回帖才能看到,  下载。

阅读(162) | 评论(0) | 转发(0) |
给主人留下些什么吧!~~