CCSP SelfStudy CCSP CSI: Exam Certification Guide, Second Edition [Electronic resources]

Tebyan

نسخه متنی -صفحه : 290/ 135
نمايش فراداده

  • "Do I Know This Already?" Quiz

    The purpose of the "Do I Know This Already?" quiz is to help you decide if you really need to read the entire chapter. If you already intend to read the entire chapter, you do not necessarily need to answer these questions now.

    The 10-question quiz, derived from the major sections in the "Foundation Topics" portion of the chapter, helps you determine how to spend your limited study time.

    1:

    The functionality of the ISP module can be incorporated into which component of the small network design?

    1. PIX Firewall

    2. IDS sensor

    3. Cisco IOS Firewall router

    4. Layer 3 switch

    5. Public server

    2:

    The primary role of the ISP router is to provide which of the following?

    1. VPN connectivity

    2. WAN connectivity

    3. Firewall filtering

    4. IP spoofing mitigation

    5. DDoS mitigation

    3:

    Rate-limit filtering for DDoS mitigation affects all traffic.

    1. True

    2. False

    4:

    Which of the following is provided by the Cisco IOS Firewall router?

    1. IDS services

    2. WAN connectivity

    3. Switching

    4. Filtering

    5. RAS services

    6. Firewall

    5:

    Cisco IOS Firewall inspection can occur only on traffic that is transiting the public (Internet) interface.

    1. True

    2. False

    6:

    IDS inspection services are enabled on the Cisco IOS Firewall router using which command?

    1. ip inspect

    2. ip audit

    3. ip access-group

    4. ip ids

    5. ip service

    7:

    Which of the following services are commonly available on the public services segment?

    1. NTP

    2. FTP

    3. SMTP

    4. SSL

    5. WWW

    6. TFTP

    7. DNS

    8:

    The PIX Firewall provides IDS services.

    1. True

    2. False

    9:

    Filtering is applied to an interface in a PIX Firewall using which command?

    1. access-class

    2. access-list

    3. access-group

    4. access-rule

    5. ip access-group

    10:

    When the small network model is used as a branch, which of the following is true?

    1. It is normal not to have a public services segment

    2. It is normal to terminate remote VPN users

    3. Branch LANs are normally routable across the WAN

    4. It is normal not to have a firewall

    5. None of the above

    The answers to the "Do I Know This Already?" quiz are found in Appendix A, "Answers to the 'Do I Know This Already?' Quizzes and Q&A Sections." The suggested choices for your next step are as follows:

  • 9 or more overall score If you want more review on these topics, skip to the "Foundation Summary" section and then go to the "Q&A" section. Otherwise, move to the next chapter.