下列访问控制列表中,禁止所有Telnet访问子网17.5.1.0/24的命令是
A:access-list 15 deny udp any 17.5.1.0 255.255.255.0 eq 23 B:access-list 15 deny telnet any 17.5.1.0 255.255.255.0 eq 23 C:access-list 15 deny tcp any 17.5.1.0 255.255.255.0 eq 23 D:access-list 15 deny any 17.5.1.0 255.255.255.0 eq telnet
在一台Cisco路由器上执行show access-lists命令显示如下一组信息
Extended IP access list port4444
permit icmp 202.3 8.97.0,wildcard bits 0.0.0.255 any
deny icmp any any
deny udp any any eq 1434
deny tcp any any eq 4444
permitip any any
根据上述信息,正确的access-list的配置命令是()。
A:Router(config)#ip access-list extended port4444 B:Router(config-ext-nacl)#deny icmp any any C:Router(config-ext-nacl)#deny udp any any eq 1434 D:Router(config-ext-nacl)#deny tcp any any eq 4444 E:Router(config-ext-nacl)#permit icmp 202.38.97.0 0.0.0.255 any F:Router(config-ext-nacl)#permit ip any any G:Router(config)#access-list port4444 permit icmp 202.38.97.0 0.0.0.255 any H:Router(config)#access-list port4444 deny icmp any any I:Router(config)#access-list port4444 deny udp any any eq 1434 J:Router(config)#access-list port4444 deny tcp any any eq 4444 K:Router(config)#access-list port4444 permit ip any any L:Router(config)#ip access-list extended port4444 M:Router(config-ext-nacl)#permit 202.38.97.0 0.0.0.255 any icmp N:Router(config-ext-nacl)#deny any any icmp
拒绝转发所有IP地址进与出方向的,端口为1434的UDP和端口为4444的TCP数据包,下列正确的access-list配置是______。
A:Router (config) #access-list 30 deny udp any any eq 1434 B:Router (config) #access-list 30 deny tcp any any eq 4444 C:Router (config) #access-list 30 permit ip any any D:Router (config) #access-list 130 deny udp any any eq 1434 E:Router (config) #access-list 130 deny tcp any any eq 4444 F:Router (config) #access-list 130 permit ip any any G:Router (config) #access-list 110 deny any any udp eq 1434 H:Router (config) #access-list 130 deny any any tcp eq 4444 I:Router (config) #access-list 130 permit ip any any J:Router (config) #access-list 150 deny udp eq 1434 any any K:Router (config) #access-list 150 deny tcp eq 4444 any any L:Router (config) #access-list 150 permit ip any any
在一台Cisco路由器上执行show access-lists命令显示如下一组信息
Extended IP access list port4444
permit icmp 202.38.97.0,wildcard bits 0.0.0.255 any
deny icmp any any
deny udp any any eq 1434
deny tcp any any eq 4444
permit ip any any
根据上述信息,正确的access-list的配置是
A:Router(config) # ip access-list extended port4444 B:Router(config-ext-nacl) # deny icmp any any C:Router(config-ext-nacl) # deny udp any any eq 1434 D:Router(config-ext-nacl) # deny tcp any any eq 4444 E:Router(config-ext-nacl) # permit icmp 202.38.97.0 0.0.0.255 any F:Router(config-ext-nacl) # permit ip any any G:Router(config) # access-list port4444 permit icmp 202.38.97.0 0.0.0.255 any H:Router(config) # access-list port4444 deny icmp any any I:Router(config) # access-list port4444 deny udp any any eq 1434 J:Router(config) # access-list port4444 deny tcp any any eq 4444 K:Router(config) # access-list port4444 permit ip any any L:Router(config) # ip access-list extended port4444 M:Router(config-ext-nacl) # permit 202.38.97.0 0.0.0.255 any icmp N:Router(config-ext-nacl) # deny any any icmp
以下的访问控制列表中,()禁止所有Telnet访问子网17.5.1.0/24。
A:access-list 15 deny udp any 17.5.1.0 255.255..255.0 eq 23 B:access-list 15 deny telnet any 17.5.1.0 255.255.255.0 eq 23 C:access-list 15 deny tcp any 17.5.1.0 255.255.255.0 eq 23 D:access-list 15 deny any 17.5.1.0 255.255.255.0 eq telnet
为防止“冲击波”蠕虫病毒的传播,可以使用扩展访问控制列表设定拒绝TCP 4444端口号的所有数据包通过路由器。正确的配置是()。
A:Router(config)# access-list 120 permit ip any any Router(config)# access-list 120 deny tcp any any eq 4444 B:Router(config)# access-list 20 deny tcp any any eq 4444 C:Router(config)# access-list 120 permit tcp any any eq 4444 Router(config)# access-list 120 permit udp any any D:Router(config)# access-list 120 deny tcp any any eq 4444 Router(config)# access-list 120 permit ip any any
在一台Cisco路由器上执行show access-list 命令显示如下一组信息 Extended IP access list port4444 permit icmp 202.38.97.0,wildcard bits 0.0.0.255 any deny icmp any any deny udp any any eq 1434 deny tcp any any eq 4444 permit ip any any 根据上述信息,正确的access-list的配置是
A:Router(config)#ip access-list extended port4444
Router(config-ext-nacl)#deny icmp any any
Router(config-ext-nacl)#deny udp any any eq 1434
Router(config-ext-nacl)#deny tcp any any eq 4444
Router(config-ext-nacl)#permit icmp 202.38.97.0 0.0.0.255 any
Router(config-ext-nacl)#permit ip any any B:Router(config)#access-list port4444 permit icmp 202.38.97.0 0.0.0.255 any
Router(config)#access-list port4444 deny icmp any any
Router(config)#access-list port4444 deny udp any any eq 1434
Router(config)#access-list port4444 deny tcp any any eq 4444
Router(config)#access-list port4444 permit ip any any C:Router(config)#ip access-list extended port4444
Router(config-ext-nacl)#permit icmp 202.38.97.0 0.0.0.255 any
Router(config-ext-nacl)#deny any any icmp
Router(config-ext-nacl)#deny udp any any eq 1434
Router(config-ext-nacl)#deny tcp any any eq 4444
Router(config-ext-nacl)#permit ip any any D:Router(config)#ip access-list extended port4444
Router(config-ext-nacl)#permit icmp 202.38.97.0 0.0.0.255 any
Router(config-ext-nacl)#deny icmp any any
Router(config-ext-nacl)#deny udp any any eq 1434
Router(config-ext-nacl)#deny tcp any any eq 4444
Router(config-ext-nacl)#permit ip any any
在一台Cisco路由器上执行show access-lists命令显示如下一组信息
Extended IP access list port4444
permit icmp 202.38.97.0,wildcard bits 0.0.0.255 any
deny icmp any any
deny udp any any eq 1434
deny tcp any any eq 4444
permit ip any any
根据上述信息,正确的access-list的配置是()
A:Router(config) # ip access-list extended port4444
Router(config-ext-nacl) # deny icmp any any
Router(config-ext-nacl) # deny udp any any eq 1434
Router(config-ext-nacl) # deny tcp any any eq 4444
Router(config-ext-nacl) # permit icmp 202.38.97.0 0.0.0.255 any
Router(config-ext-nacl) # permit ip any any B:Router(config) # access-list port4444 permit icmp 202.38.97.0 0.0.0.255 any
Router(config) # access-list port4444 deny icmp any any
Router(config) # access-list port4444 deny udp any any eq 1434
Router(config) # access-list port4444 deny tcp any any eq 4444
Router(config) # access-list port4444 permit ip any any C:Router(config) # ip access-list extended port4444
Router(config-ext-nacl) # permit 202.38.97.0 0.0.0.255 any icmp
Router(config-ext-nacl) # deny any any icmp
Router(config-ext-nacl) # deny any any udp eq 1434
Router(config-ext-nacl) # deny any any tcp eq 4444
Router(config-ext-nacl) # permit ip any any D:Router(config) # ip access-list extended port4444
Router(config-ext-nacl) # permit icmp 202.38.97.0 0.0.0.255 any
Router(config-ext-nacl) # deny icmp any any
Router(config-ext-nacl) # deny udp any any eq 1434
Router(config-ext-nacl) # deny tcp any any eq 4444
Router(config-ext-naci) # permit ip any any
拒绝转发所有IP地址进与出方向的、端口号为1434的UDP和端口号为4444的TCP数据包,下列正确的access-list配置是()。
A:Router (config)#access-list 30 deny udp any any eq 1434Router (config)#access-list 30 deny tcp any any eq 4444Router (config)#access-list 30 permit ip any any B:Router (config)#access-list 130 deny udp any any eq 1434Router (config)#access-list 130 deny tcp any any eq 4444Router (config)#access-list 130 permit ip any any C:Router (config)#access-list 110 deny any any udp eq 1434Router (config)#access-list 110 deny any any tcp eq 4444Router (config)#access-list 110 permit ip any any D:Router (config)#access-list 150 deny udp ep 1434 any anyRouter (config)#access-list 150 deny tcp ep 4444 any anyRouter (config)#access-list 150 permit ip any any
您可能感兴趣的题目