已阅读5页,还剩3页未读, 继续免费阅读
版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
分享是一种美德 分享是一种美德 分享是一种美德 分享是一种美德 Q Which attributes are automatically updated when a BGP update is sent to an EBGP neighbor choose 2 A D A BGP Next hop attribute B Local Preference attribute C Multi Exit Descriminator MED attribute D AS Path attribute E Origin attribute Q Which statements are true about post service filters choose 3 A C D A A post service filter can only be used on input B A post service filter can be used on input output or both C A post service filter is only applied to packets that are processed by a service set D A post service filter is a standard stateless firewall filter Q For a given prefix 10 10 10 0 23 learned as an OSPF Internal Intra Area an OSPF Internal Inter Area and an OSPF AS External type 1 which route will be preferred A A OSPF Internal Intra Area route B OSPF Internal Inter Area route C OSPF AS External type 1 D Equal cost load sharing will occur if equal cost paths exist Q Your enterprise is dual homed to the same Service Provider using BGP with two links having bandwidth of STM1 OC3 and STM4 OC12 respectively You want to influence all traffic leaving your autonomous system to use the STM OC12 link Which BGP attributes can you modify to accomplish this goal choose 2 B D A Set Local Preference in an import policy for routes learned from the neighbor on the STM4 OC12 link to be 80 B Set Local Preference in an import policy for routes learned from the neighbor on the STM4 OC12 link to be 180 C Configure the import policy for the STM4 OC12 neighbor to set the ORIGIN attribute to be INCOMPLETE D Configure the import policy for the STM1 OC3 neighbor to as path prepend the neighbors autonomous system twice E Configure the import policy for the STM4 OC12 neighbor to as path prepend the neighbors autonomous system twice Q In the exhibit which export policy or policies will be applied to BGP neighbor 10 10 10 1 C A global policy B group policy C nbr policy D all three policies E none of the policies Q Which steps are required to configure an interface style service set choose 5 A B C D F A Configure the service interface B Configure the service rules and rule sets C Configure the service set to include the service rules and or rule sets D Configure the service set to be interface style and which service interface to use E Configure routing to the service interface F Apply the service set to the required interfaces Q Which step is not recommended as part of a seamless RIP to OSPF IGP transition using the overlay method C A Configure all routers to ensure the existing RIP IGP has a better route preference than the new OSPF IGP B Configure all routers to run OSPF C Redistribute all RIP routes into OSPF and vise versa D Ensure all routers have learned all networks via OSPF E Gracefully transition to OSPF by changing the route preference of RIP to be higher than OSPF Q Which configuration step is required when configuring an OSPF NSSA area C 2 0 0 7 10 2 8蚂蚁倾情奉献 第 1 页 共 8 页 分享是一种美德 分享是一种美德 分享是一种美德 分享是一种美德 A You must configure nssa on all routers in the network B You must configure nssa under edit protocols ospf C You must configure nssa under edit protocols ospf area D You must configure nssa only on the Area Border Routers ABR s Q Which statements below are valid JUNOS stateful firewall rule match types choose 3 A B D A destination address range B source prefix list C esp spi D applications E interface set Q In the exhibit which statement is true for the static route 11 11 11 0 24 that is evaluated against the BGP export policy chain D A The 11 11 11 0 24 prefix is accepted by policy P1 and advertised to neighbor 10 10 10 1 B The 11 11 11 0 24 prefix is rejected by policy P1 and not advertised to neighbor 10 10 10 1 C The 11 11 11 0 24 prefix is rejected by the policy P2 D The 11 11 11 0 24 prefix is rejected by the BGP default policy E The 11 11 11 0 24 prefix is accepted by the BGP default policy Q You want to determine which NAT pools have been configured on the router Which command will display this information choose 1 D A show services nat available pools B show services pools C show services nat pool table D show services nat pools Q Which statements best describe Enterprise connections to Service Providers choose 2 C D A Enterprises should always run BGP with their Service Providers when their CPE router has parallel multiple links to the ISP router B When BGP is run in an enterprise network all routers need to run BGP C Enterprises should use a static default route when there is only one entry exit point out of their network D Enterprises should use BGP when they are multi homed and have a need to exercise policy controls Q Assuming the requirements for the establishment of an EBGP session between the loopback0 interfaces of both routers The local autonomous system is defined as AS100 and the neighbors autonomous system is AS200 The local autonomous system is configured under routing options autonomous system 100 Which statement is not true about Multihop External BGP peering sessions A A Both peer as 200 and type external parameters are required B Only peer as 200 is required C You must configure the local address parameter D You must configure the ttl for the multi hop neighbor s E The local router must have a route to the eBGP neighbors configured address Q In the exhibit which statements are true for the NAT translation choose 2 B C A The private internal IP address that will be changed is 192 168 11 4 B The private internal IP addresses that will be changed are 10 222 16 C The public external IP address is 192 168 11 4 D The private internal IP addresses can be anything E The public external IP address is 10 222 44 1 Q While monitoring the systems messages file you encounter an entry that is frequently repeated but seems somewhat cryptic 2 0 0 7 10 2 8蚂蚁倾情奉献 第 2 页 共 8 页 分享是一种美德 分享是一种美德 分享是一种美德 分享是一种美德 Jun 8 14 12 28 R1 chassisd 2737 CHASSISD IFDEV DETACH PIC ifdev detach pic 0 3 Which command can you use to better understand the significance of this message C A show syslog message CHASSISD IFDEV DETACH PIC B show system message CHASSISD IFDEV DETACH PIC C help syslog CHASSISD IFDEV DETACH PIC D show system error log CHASSISD IFDEV DETACH PIC Q In the exhibit which statements are valid entries for the State field choose 3 B D E A Monitor B Watch C Listen D Drop E Forward Q The security policy for your company specify that access for all operations staff to network devices will migrate to the TACACS protocol The RADIUS protocol is currently deployed and will be the preferred method for authentication What configuration is required on the JUNOS routers to ensure that only when network connectivity issues resulting in the TACACS and RADIUS being inaccessible allow locally defined users to login to the routers C A set system authentication order radius tacplus password B set system authentication order tacplus radius password C set system authentication order radius tacplus D set system authentication order tacplus radius Q Which statements are true about Queuing on M Series and J Series routers choose 3 B C E A All M Series routers support up to 8 hardware queues B All J Series routers support up to 8 queues C Forwarding classes map to queues D Voice Traffic is automatically classified as expedited forwarding EF and sent to queue 1 E The default queue forwarding class associations are a Queue 0 best effort b Queue 1 expedited forwarding c Queue 2 assured forwarding d Queue 3 network control Q You need to determine which VPN technology is best suited to provide enterprise branch office connectivity The requirements are that the solution should be cost effective does not have stringent security requirements need not support legacy protocols should be simple to manage for the customer should also provide Internet access on the same physical interface Which technologies solutions are best suited D A Traditional overlay L2VPN based on Frame Relay ATM or Leased lines B MPLS based L2VPN C IPSec VPN D MPLS based L3VPN E GRE tunnel VPN Q You need to ensure that a branch office which is connected to the Service Provider with a link speed of 128K does not get overwhelmed with traffic from the head office which has a link speed of 2Mbps Juniper Networks J Series routers are deployed as CPE devices in both locations Which mechanism is best suited D A Police traffic exceeding 128Kbps to the branch site at the head office B Upgrade the branch sites bandwidth to 2 Mbps to ensure traffic limits are not exceeded C Apply Class of Service to ensure that the most important traffic is prioritized D Apply JUNOS Virtual Channels at the head office to ensure branch office sites are not overwhelmed with too much traffic Q Which statements are true regarding Class of Service configuration in JUNOS choose 4 A C D E A Behavior Aggregate BA classifiers are configured under edit class of service classifiers B Behavior Aggregate BA classifiers are applied under 2 0 0 7 10 2 8蚂蚁倾情奉献 第 3 页 共 8 页 分享是一种美德 分享是一种美德 分享是一种美德 分享是一种美德 edit interfaces class of service C scheduler maps are needed to link forwarding classes to schedulers D RED WRED profiles configured under edit class of service drop profiles must be referenced in schedulers to take effect E Rewrite rules are configured under edit class of service rewrite rules and must be applied to the logical interfaces defined under edit class of service interfaces F Schedulers are configured under edit class of service schedulers and may include a forwarding class b transmit rate c priority d buffer size Q Which statements are true about Policing Rate Limiting choose 2 A C A Policing is a useful tool for protecting the network from non compliant sources B Token bucket policers can not be used on all interface types C Policers can be used to protect the network against DoS DDoS attacks D Policers can only be configured on ingress Q Which command can be used to determine which sockets the router has in either a listen or established state B A show netstat sockets B show system connections C show running protocols D show connections up Q During the establishment of an IPSec VPN the routers negotiate which parameters will be used for the establishment of the IPSec Security Association SA using proposals that define these parameters Which statements are true about configuring IPSec proposals choose 3 C D F edit services ipsec vpn ipsec proposal p1 luser Junos router A set authentication algorithm blowfish B set encryption algorithm rsa C set encryption algorithm aes 256 cbc D set protocol esp E set protocol ip F set lifetime 86400 Q You need to verify that the IPSec VPN that you have just configured on a J Series router is operating correctly Which commands could be used to verify this choose 2 C D A show ike security associations B show ipsec security associations C show services ipsec vpn ike security associations D show services ipsec vpn ipsec security associations Q Which statements are true for Class of Service ingress processing choose 2 B E A Rewrite codepoints B Multifield classification C Scheduling D Shaping E RateLimiting Policing Q Which three commands are valid syntax A C D A set then reject 2 0 0 7 10 2 8蚂蚁倾情奉献 第 4 页 共 8 页 分享是一种美德 分享是一种美德 分享是一种美德 分享是一种美德 B set then discard C set then accept D set then next policy E set then metric2 20 accept Q Which configuration step is required when configuring an OSPF NSSA area C A You must configure nssa on all routers in the network B You must configure nssa under edit protocols ospf C You must configure nssa under edit protocols ospf area D You must configure nssa only on the Area Border Routers ABR s Q Which statement is true about prefix lists choose 2 B C A They are always exact matches when used in firewall filters B They are always orlonger matches when used in firewall filters C They are always exact matches when used in routing policies D They are always orlonger matches when used in routing policies Q You are at the firewall family inet filter actions term u decide Yoiurconfiguration hierarchy Which three commands are valid syntax A C E A set then reject tcp reset B set then source class C set then accept log syslog sample count PKTS D set then next policy E set then forwarding class Q Which statement is true if a route does not match any terms in a policy chain D A The route is automatically accepted B The route is automatically rejected false C The accept reject decision must be specified in the final policy false D The accept reject decision is based on the protocols default policy Q Which OSPF LSA is not flooded in an OSPF Stub Area D A Router LSA s Type 1 B Network LSA s Type 2 C Summary LSA s Type 3 D ASBR Summary LSA s Type 4 Q Which statement is true for the order of the selection of the BGP active route D A AS Path Local Preference Origin MED B MED Origin AS Path Local Preference C Local Preference Origin AS Path MED D Local Preference AS Path Origin MED Q Which statements are true about Internal BGP configurations choose 3 B C D A Only directly connected neighbors need be configured B Usually the IP address of the loopback0 interface is used for the IBGP sessions C Use of the local address configuration statement is required D The IGP is used to route packets between remote neighbors E When multiple links exist between neighbors there needs to be multiple neighbors configured Q In a network which does not use Route Reflectors which statements are true about BGP readvertisement rules choose 2 B E A When learned from External BGP readvertise to only IBGP neighbors B When learned from External BGP readvertise to both IBGP and other EBGP neighbors C When learned from Internal BGP readvertise to only IBGP D When learned from Internal BGP readvertise to both IBGP and EBGP neighbors E When learned from Internal BGP readvertise to only EBGP Q You have multiple routes to the same destination using the default route preference Which source of routing information will be selected A A OSPF Internal B RIP 2 0 0 7 10 2 8蚂蚁倾情奉献 第 5 页 共 8 页 分享是一种美德 分享是一种美德 分享是一种美德 分享是一种美德 C OSPF External D Internal BGP E External BGP Q Which of the following configuration statements must be added to the sample configuration to redistribute RIP prefixes into all OSPF areas A A set export rip 2 ospf B set area 0 export rip 2 ospf set area 10 export rip 2 osp set area 20 export rip 2 ospf C set area 20 nssa default lsa default metric 1 D set area all export rip 2 ospf Q Which statements are true about service filters choose 3 B C E A A service filter can only be used on input B A service filter can be used on input output or both C A service filter cannot match multicast traffic D A service filter is a standard stateless firewall filter E A service filter can only be used with interface style service sets Q Which statements are true about the Networks Address Translations NAT options that JUNOS supports choose 3 A C D A Source Dynamic B Destination Dynamic C Source Static D Destination Static Q Which statements are true about the Networks Address Translations NAT types that JUNOS supports choose 4 A B C E A Source Static 1 1 translation B Destination Static 1 1 translation C Source Dynamic many 1 translation PAT D Destination Dynamic 1 1 translation E Source Dynamic 1 1 translation Q Which statements below are valid JUNOS stateful firewall rule actions and action modifiers choose 2 A C A discard B log C syslog D sample Q Which statements are true about the IPSec VPN implementation for protecting transit data on M Series and J Series routers choose 2 C D A Only data integrity is supported with Authentication Header AH B Only data privacy is supported with Encapsulating Security Payload ESP C Both data integrity with Authentication Header AH and data privacy with Encapsulating Security Paylpoad ESP are supported D Only tunnel mode is supported E Only transport mode is supported Q Which statements are true about Application Layer Gateways ALG s choose 3 A B E A ALG s allow the router to interact with protocols at layer 4 and above B ALG s allow the router to inspect the payload of connections C ALG s allow the router to translate protocols D ALG s are required for all connections E Custom ALG definitions can be configured Q Which statements below are valid JUNOS nat rule match types and actions choose 3 A D F A from source address B from destination address range C from source prefix list D then translated translation type source dynamic E then count counter name F then no translation Q Which statements below best describe the role of Class of Service choose 2 B D A CoS is designed to make the network faster B CoS provides mechanisms for categorizing traffic C CoS is designed to reduce congestion D CoS allows network devices to prioritize traffic based on category E CoS always improves network performance 2 0 0 7 10 2 8蚂蚁倾情奉献 第 6 页 共 8 页 分享是一种美德 分享是一种美德 分享是一种美德 分享是一种美德 Q Which statements are true for Class of Service traffic classification choose 3 B D E A Behavior Aggregate BA classification is based on examining various fields in the IP header B Multifield MF classification is based on examining various fields in the IP header C Behavior Aggregate BA classifiers are most commonly used at the edge of the network D Behavior Aggregate BA classifiers are most commonly used in the network core E Behavior Aggregate BA classification is based on examining codepoints Q The components of scheduling include priority transmission rate buffer size and congestion avoidance RED Which statements are true about Scheduling on M Series and J Series routers choose 4 A B C D A Priority defines the order of which queues will be serviced B By default all queues are low priority C The queue priorities on J Series routers area Highb Medium highc Medium lowd Low D By default the buffer size is distributed equally amongst available queues E Congestion avoidance with RED by default results in 50 drop when the corresponding queue is 50 full Q You need to verify that packets are being correctly classified a
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- 河南省2025年公务员行测言语理解模拟卷
- 2025年外委单位安全试题及答案
- 河北省公务员2025年行政职业能力测验押题卷
- 2025年皮肤美容学试题及答案
- 2025年酒店电话礼仪试题及答案
- 2025年备用药品试题及答案
- 广西壮族自治区2025年行测真题汇编
- 2025租房合同协议书 租房合同模板+标准版
- 促进孩子体育锻炼习惯养成方案
- 2025年风湿病学典型案例分析及答案解析
- 家庭教育劳动
- 企业三体系培训课件
- 哎呀流血了-大班健康安全教育活动
- 设备故障应急计划
- 2025年职业道德知识考试题库
- 安全生产法培训 课件
- 公司行政部费用管理制度
- 中国麻醉医生
- 快消品公司财务管理制度
- 房建市政安全监管图文口袋书课件
- DB31/T 1333-2021城市供水管网运行安全风险监测技术规范
评论
0/150
提交评论