Sei sulla pagina 1di 5

CCNA Access List Questions

Question 1 Your boss is learning a CCNA training course, refer to the exhibit. The access list has been configured on the S0 0 interface of router !T" in the outbound direction. #hich t$o %ac&ets, if routed to the interface, $ill be denied' (Choose t$o)

access*list 101 den+ tc% 1,-.1./.10.1- 0.0.0.10 an+ e2 telnet access*list 101 %er3it i% an+ an+ A. source ip address: 192.168.15.5; destination port: 21 B. source ip address: 192.168.15.37 destination port: 21 C. source ip address: 192.168.15.41 destination port: 21 D. source ip address: 192.168.15.36 destination port: 23 E. source ip address: 192.168.15.46; destination port: 23 . source ip address: 192.168.15.49 destination port: 23

Question !efer to the gra%hic. 4t has been decided that 5C1 should be denied access to Ser6er. #hich of the follo$ing co33ands are re2uired to %re6ent onl+ 5C1 fro3 accessing Ser6er1 $hile allo$ing all other traffic to flo$ nor3all+' (Choose t$o)

A ! "outer#con$i%&' inter$ace $a()( "outer#con$i%*i$&' ip access*%roup 1(1 out B ! "outer#con$i%&' inter$ace $a()( "outer#con$i%*i$&' ip access*%roup 1(1 in C ! "outer#con$i%&' access*+ist 1(1 den, ip -ost 172.16.161.15( -ost 172.16.162.163 "outer#con$i%&' access*+ist 1(1 per.it ip an, an, D ! "outer#con$i%&' access*+ist 1(1 den, ip 172.16.161.15( (.(.(.255 172.16.162.163 (.(.(.( "outer#con$i%&' access*+ist 1(1 per.it ip an, an,

Question 1 !efer to the exhibit. #h+ $ould the net$or& ad3inistrator configure !A in this 3anner'

A. to %i/e students access to t-e 0nternet B. to pre/ent students $ro. accessin% t-e co..and pro.pt o$ "A C. to pre/ent ad.inistrators $ro. accessin% t-e conso+e o$ "A D. to %i/e ad.inistrators access to t-e 0nternet E. to pre/ent students $ro. accessin% t-e 0nternet . to pre/ent students $ro. accessin% t-e Ad.in net1or2

Question 7 An access list $as $ritten $ith the four state3ents sho$n in the gra%hic. #hich single access list state3ent $ill co3bine all four of these state3ents into a single state3ent that $ill ha6e exactl+ the sa3e effect'

A. access*+ist 1( per.it 172.29.16.( (.(.(.255 B. access*+ist 1( per.it 172.29.16.( (.(.1.255 C. access*+ist 1( per.it 172.29.16.( (.(.3.255 D. access*+ist 1( per.it 172.29.16.( (.(.15.255 E. access*+ist 1( per.it 172.29.(.( (.(.255.255

Question 0 A net$or& ad3inistrator $ants to add a line to an access list that $ill bloc& onl+ Telnet access b+ the hosts on subnet 1,-.1./.1.1-/ -/ to the ser6er at 1,-.1./.1.0. #hat co33and should be issued to acco3%lish this tas&' A ! access*+ist 1(1 den, tcp 192.168.1.128 (.(.(.15 192.168.1.5 (.(.(.( e3 23 access*+ist 1(1 per.it ip an, an, B ! access*+ist 1(1 den, tcp 192.168.1.128 (.(.(.24( 192.168.1.5 (.(.(.( e3 23 access*+ist 1(1 per.it ip an, an, C ! access*+ist 1 den, tcp 192.168.1.128 (.(.(.255 192.168.1.5 (.(.(.( e3 21 access*+ist 1 per.it ip an, an, D ! access*+ist 1 den, tcp 192.168.1.128 (.(.(.15 -ost 192.168.1.5 e3 23 access*+ist 1 per.it ip an, an, Question . As a net$or& ad3inistrator, +ou ha6e been instructed to %re6ent all traffic originating on the LAN fro3 entering the !- router. #hich the follo$ing co33and $ould i3%le3ent the access list on the interface of the !- router'

A ! access*+ist 1(1 in B ! access*+ist 1(1 out C ! ip access*%roup 1(1 in D ! ip access*%roup 1(1 out

Question 8 The follo$ing access list belo$ $as a%%lied outbound on the 90 interface connected to the 1,-.1.,.1./ -, LAN: access*list 110 den+ tc% 1,-.1.,.1./ 0.0.0.8 e2 -0 an+ access*list 110 den+ tc% 1,-.1.,.1./ 0.0.0.8 e2 -1 an+ ;o$ $ill the abo6e access lists affect traffic' A ! 45 tra$$ic $ro. 192.169.1.22 1i++ 6e denied B ! 7o tra$$ic8 e9cept $or 45 tra$$ic 1i++ 6e a++o1ed to e9it E( C ! 45 tra$$ic $ro. 192.169.1.9 to an, -ost 1i++ 6e denied D ! A++ tra$$ic e9itin% E( 1i++ 6e denied E ! A++ 45 tra$$ic to net1or2 192.169.1.9)29 1i++ 6e denied

Question / The access control list sho$n in the gra%hic has been a%%lied to the 9thernet interface of router !1 using the i% access*grou% 101 in co33and. #hich of the follo$ing Telnet sessions $ill be bloc&ed b+ this ACL' (Choose t$o)

A ! $ro. -ost 5C1 to -ost 5.1.1.1( B ! $ro. -ost 5C1 to -ost 5.1.3.1( C ! $ro. -ost 5C2 to -ost 5.1.2.1( D ! $ro. -ost 5C2 to -ost 5.1.3.8

Question , The follo$ing configuration line $as added to router !1 Access*list 101 %er3it i% 10.-0.10.0 0.0.0.-00 an+ #hat is the effect of this access list configuration' A ! per.it a++ pac2ets .atc-in% t-e $irst t-ree octets o$ t-e source address to a++ destinations B ! per.it a++ pac2et .atc-in% t-e +ast octet o$ t-e destination address and accept a++ source addresses C ! per.it a++ pac2et .atc-in% t-e -ost 6its in t-e source address to a++ destinations D ! per.it a++ pac2et $ro. t-e t-ird su6net o$ t-e net1or2 address to a++ destinations

Potrebbero piacerti anche