Cisco IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor Arkusz Danych Strona 22

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 123
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 21
642-531
A. because you want to monitor receive traffic from the server. It is not C. because the port
monitor fastEthernet 0/5command should be done in the (config-if)# mode. D and E are incorrect.
QUESTION 51
Which VLAN ACL sends only ftp traffic to a Cisco IDS Sensor connected to a Catalyst 6500 switch?
A. set security acl ip FTP_ACL permit udp any any eq 21
B. set security acl ipx FTP_ACL permit ip any any capture
C. set security acl ipx FTP_ACL permit tcp any any eq 21
D. set security acl ip FTP_ACL permit tcp any any eq 21 capture
E. set security acl ip FTP_ACL permit ip any any capture
F. set security acl ip FTP_ACL permit icmp any any eq 21
Answer: D
Explanation:
To create a VACL, you need to use the set security acl ip switch command. The syntax for capturing TCP
traffic between a source IP address and a destination IP address is as follows:
set security aclip acl_name permit tcp src_ip_spec dest_ip_spec port capture
Reference:Cisco Secure Intrusion Detection System (Ciscopress) page 505
Cisco Secure Intrusion Detection System 4 chap 5 page 33
QUESTION 52
A company has installed an IDSM into a Catalyst 6509 switch in slot 9. The network security architect
has designed a solution that requires the IDSM monitor traffic only from VLAN 199.
Which Catalyst OS commands are used to achieve this configuration?
A. set trunk 9/2 199
B. clear trunk 9/2 199
C. clear trunk 9/2 1-1024
D. clear trunk 9/1 1-1024
E. set trunk 9/1 199
F. clear trunk 9/1 199
Answer: D, E
Reference: Cisco Catalyst 5000 Series Switches - Switch and ROM Monitor Commands¿Release 6.2
Note: In the new course we think the answer would be this
Router(config)#interface vlan <vlan_number> - creates or access the vlan interface specified
Router(config)# interface vlan 401
Router(config-if)mlp ip ids <acl_name> - applies an IP acl to the vlan interface
The mpl ip ids command is used to apply an extended ip access list to the vlan interface
-Cisco Secure Intrusion Detection System 4 chap 5 page 48
QUESTION 53
Match the description of the terms used when configuring SPAN
Przeglądanie stron 21
1 2 ... 17 18 19 20 21 22 23 24 25 26 27 ... 122 123

Komentarze do niniejszej Instrukcji

Brak uwag