CCSP Cisco Secure PIX Firewall Advanced Exam Certification Guide, Second Edition [Electronic resources]

Greg Bastien; Earl Carter; Christian Degu

نسخه متنی -صفحه : 191/ 151
نمايش فراداده

  • Chapter 7

    "Do I Know This Already?" Quiz

    A1:

    Answer: c, d

    A2:

    Answer: c

    A3:

    Answer: b

    A4:

    Answer: c

    A5:

    Answer: a

    A6:

    Answer: b

    A7:

    Answer: c

    A8:

    Answer: c

    A9:

    Answer: b

    A10:

    Answer: c

    Q&A

    A1:

    Answer: Static NAT creates a one-to-one mapping between a host/network on both the interfaces.

    A2:

    Answer: The Policy NAT feature lets you identify traffic for address translation by specifying the source and destination addresses (or ports) in an access list, whereas regular NAT uses only source addresses/ports.

    A3:

    Answer: access-list 112 remark Linda's group extranet server access

    A4:

    Answer: 16,000

    A5:

    Answer: Use the fixup protocol ftp [ port ] command to change the default port assignment for FTP.

    A6:

    Answer: 2.1 MB

    A7:

    Answer: access-list compiled

    A8:

    Answer: 19

    A9:

    Answer: Object groups are used to group hosts/networks, services, protocols, and icmp-types. Object grouping provides a way to reduce the number of access rules required to describe complex security policies.

    A10:

    Answer: network, protocol, service, and icmp-type