问答题
ACL默认执行顺序是(5),在配置时要遵循(6)原则、最靠近受控对象原则以及默认丢弃原则。 (5)、(6)备选答案: A.最大特权 B.最小特权 C.随机选取 D.自左到右 E.自上而下 F.自下而上 要禁止内网中IP地址为198.168.46.8的PC机访问外网,正确的ACL规则是(7)。 A.access-list 1 permit ip 192.168.46.0 0.0.0.255 any access-list 1 deny ip host 198.168.46.8 any B.access-list 1 permit ip host 198.168.46.8 any access-list 1 deny ip 192.168.46.0 0.0.0.255 any C.access-list 1 deny ip 192.168.46.0 0.0.0.255 any access-list 1 permit ip host 198.168.46.8 any D.access-list 1 deny ip host 198.168.46.8 any access-list 1 permit ip 192.168.46.0 0.0.0.255 any
【正确答案】正确答案:(5)E或自上而下 (6)B或最小特权 (7)D或access-list 1 deny ip host 198.168.46.8 any access-list 1 permit ip 1 92.168.46.0 0.0.0.255 any
【答案解析】
问答题
下面是在防火墙中的部分配置命令,请解释其含义。 global(outside)l 202.134.135.98-2 02.134.135.100 (8) conduit permit top host 2 02.134.135.99 eq www any (9) 3ccess-list 10 permit ip any any (10)