首页
外语
计算机
考研
公务员
职业资格
财经
工程
司法
医学
专升本
自考
实用职业技能
登录
计算机
The Ezonexam network administrator wants to ensure that only a single web server can connect to pot Fa0/1 on a catalyst switch.
The Ezonexam network administrator wants to ensure that only a single web server can connect to pot Fa0/1 on a catalyst switch.
admin
2009-05-19
54
问题
The Ezonexam network administrator wants to ensure that only a single web server can connect to pot Fa0/1 on a catalyst switch. The server is plugged into the switch’s Fast Eth. 0/1 port and the network administrator is about to bring the server online. What can the administrator do to ensure that only the MAC address of this server is allowed by switch port Fa0/1? (Choose two)
选项
A、Configure port Fa0/1 to accept connections only from the static IP address of the server
B、Configure the MAC address of the server as a static entry associated with port Fa0/1
C、Employ a proprietary connector type on Fa0/1 that is incomputable with other host connectors
D、Configure port security on Fa0/1 to reject traffic with a source MAC address other than that of the server
E、Bind the IP address of the server to its MAC address on the switch to prevent other hosts from spoofing the server IP address
答案
B,D
解析
Explanation:
You can use port security to block input to an Ethernet, Fast Ethernet, or Gigabit Ethernet port when the MAC address of the station attempting to access the port is different from any of the MAC addresses specified for that port.
When a secure port receives a packet, the source MAC address of the packet is compared to the list of secure source addresses that were manually configured or autoconfigured (learned) on the port. If a MAC address of a device attached to the port differs from the list of secure addresses, the port either shuts down permanently (default mode), shuts down for the time you have specified, or drops incoming packets from the insecure host.
The port’s behavior depends on how you configure it to respond to a security violation. When a security violation occurs, the Link LED for that port turns orange, and a link-down trap is sent to the Simple Network Management Protocol (SNMP) manager. An SNMP trap is not sent if you configure the port for restrictive violation mode. A trap is sent only if you configure the port to shut down during a security violation.
转载请注明原文地址:https://kaotiyun.com/show/OchZ777K
本试题收录于:
思科640802题库思科认证分类
0
思科640802
思科认证
相关试题推荐
YouhavereceivedaletterfromSophia.Sheexpressedheradmirationformicro-bloggingandwonderedwhetheritcanreplacebook
Anincreasingnumberofcarshaveresultedinroadcongestionandairpollution.WriteaproposalletterontheInternetto
Ifyou’reinahospitalandyourdoctorwantstomonitoryouwithoutbeingintheroom,there’sanappforthat.Therearealso
大概描述一下ASP。NET页面的生命周期
如何部署一个ASP.net页面。
如果没有光盘,利用系统默认安装调制解调器的驱动程序。
在“我的电脑”窗口中快速格式化可移动磁盘,并将“KS”作为磁盘卷标。
TCP/IP协议实际上是一组协议,是一个完整的体系结构。
目前,我国自主开发了()等高性能系列计算机。
YouaretheadministratorofanetworkthatincludesWindowsNTServer4.0computers,WindowsNTWorkstation4.0computers,and
随机试题
Whatrequirementdoesthewomanmention?
A、夜间咳嗽明显B、清晨咳嗽伴大量排痰C、干咳无痰D、咳嗽呈金属音调E、咳铁锈色痰支气管扩张
滑动疝最易发生的部位是
A.准予注册B.不予注册C.注销注册D.重新注册E.撤销注册不具有完全民事行为能力的
非法侵入住宅罪,是指违背住宅内成员的意愿或者无法律依据,故意进入公民住宅,或者进入公民住宅后经要求退出而拒不退出的行为。根据上述定义,下列构成非法侵入住宅罪的是()。
对机械防烟系统的主要性能参数进行验收中,打开模拟着火楼层前室、合用前室、消防电梯前室的防火门,对于地上楼梯间,当机械加压送风系统负担层数为14层时,应同时打开()楼梯间的防火门。
一般来说,项修所花的费用约为大修的(),而达到的效果仍能满足生产要求。
2012年2月,家住甲市A区的张林向家住甲市B区的刘兴借了7000元,言明于2013年2月之前偿还。但到期后,张林一直没有还钱。2013年3月,刘兴到张林家追讨该债务,发生争吵。张林因所牵藏獒易受惊,遂对刘兴说:“你不要大声喊,狗会咬你。”刘兴不
当今世界,科技与文化的融合互动已成为推进文化发展的强大动力,科技创新为当代文化的发展创造了新的文化形态,提高了文化产品的科技含量。作为全国政治中心、文化中心和国际交往中心,北京文化底蕴丰厚,拥有创新人才优势和高新技术优势。因此,当前推动北京文化大发展大繁荣
货币性资产是指持有的现金及将以固定或可确定金额的货币收取的资产,包括现金、应收账款和应收票据以及准备持有至到期的债券等。非货币性资产则是指货币性资产以外的资产,这些资产在将来为企业带来的经济利益(即货币金额)是不固定的或不可确定的。根据上述定义,
最新回复
(
0
)