1、Eth-Trunk两端的负载分担模式可以不一致。
A. 对
B. 错
2、如下图所示的网络,交换机使用机接口和路由器的子接口对,则以下哪个配置可以实现这种需求?
A. interface Vlanif10
ip address 10.0.12.1 255.255.255.0
#
interface GigabitEthernet0/0/2
port link-type hybrid
port hybrid untag vlan 10
#
B. interface Vlanif10
ip address 10.0.12.1 255.255.255.0
#
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 10
#
C. interface Vlanif10
ip address 10.0.12.1 255.255.255.0#
interface GigabitEthernet0/0/2
port link-type access
port default vlan 10
#
D. interface Vlanif10
ip address 10.0.12.1 255.255.255.0
#
interface GigabitEthernet0/0/2
port link-type trunk
port trunk pvid 10
port trunk allow-pass vlan 10
#
3、下面选项中,能使一台IP地址为10.0.0.1的主机访问Internet的必要技术是()。
A. 动态路由
B. NAT
C. 路由引入
D. 静态路由
4、如下图所示的网络,从安全角府考虑,路由器A拒接从G0/0/1接口收到的OSPF报文、GRE报文、ICMP报文,以下哪些命令可以实现这个需求?(多选)
A. acl number 3000
rule 5 deny gre
rule 10 deny ospf
rule 15 deny icmp
#
interface GigabitEthernet0/0/1
traffic-filter inbound acl 3000
#
B. acl number 3000
rule 5 deny gre
rule 10 deny 89
rule 15 deny icmp
#
interface GigabitEthernet0/0/1
traffic-filter inbound acl 3000
#
C. acl number 2000
rule 5 deny 47
rule 10 deny 89
rule 15 deny 1
#
interface GigabitEthernet0/0/1
traffic-filter inbound acl 2000
#
D. acl number 3000
rule 5 deny 47
rule 10 deny 89
rule 15 deny 1
#
interface GigabitEthernet0/0/1
traffic-filter inbound acl 3000
#
5、如图所示的网络,通过以下哪些配置可以实现主机A不能访间主机B的HTTP服务,主机B不能访问主机A的下FTP服务?(多选)
A. acl number 3000
rule 5 deny tcp source 100.0.12.0 0.0.0.255 source-port eq www destination 100.0.13.0 0.0.0.255
#
acl number 3001
rule 5 deny tcp source 100.0.13.0 0.0.0.255 source-port eq ftp destination 100.0.12.0 0.0.0.255
#
interface GigabitEthernet0/0/1
traffic-filter outbound acl 3000
#
interface GigabitEthernet0/0/2
traffic-filter outbound acl 3001#
B. acl number 3000
rule 5 deny tcp source 100.0.13.0 0.0.0.255 destination 100.0.12.0 0.0.0.255 destination-port eq www
#
acl number 3001
rule 5 deny tcp source 100.0.12.0 0.0.0.255 destination 100.0.13.0 0.0.0.255 destination-port eq ftp
#
interface GigabitEthernet0/0/1
traffic-filter inbound acl 3000
#
interface GigabitEthernet0/0/2
traffic-filter inbound acl 3001
#
C. acl number 3000
rule 5 deny tcp source 100.0.13.0 0.0.0.255 destination 100.0.12.0 0.0.0.255 destination-port eq www
#
acl number 3001
rule 5 deny tcp source 100.0.12.0 0.0.0.255 destination 100.0.13.0 0.0.0.255 destination-port eq ftp
#
interface GigabitEthernet0/0/1
traffic-filter outbound acl 3000
#
interface GigabitEthernet0/0/2
traffic-filter outbound acl 3001
#
D. acl number 3000
rule 5 deny tcp source 100.0.12.0 0.0.0.255 source-port eq www destination 100.0.13.0 0.0.0.255
#
acl number 3001
rule 5 deny tcp source 100.0.13.0 0.0.0.255 source-port eq ftp destination 100.0.12.0 0.0.0.255
#
interface GigabitEthernet0/0/1
traffic-filter intbound acl 3000
#
interface GigabitEthernet0/0/2
traffic-filter inbound acl 3001
#
做完了吗?快来对答案吧!
私信小编,回复对应【Day72】,获取正确答案及解析~
想获取更多『 思科 | 华为 | 红帽 认证真题 』、『 网工软考真题 』、『 大厂岗位内推 』,请关注公众号:HCIE考证研究所