Click the Exhibit button.
In the exhibit, R1 learns prefix 137.10/16 from BGP. In addition, you configured a static route in R1 and injected it into OSPF. R1 and R2 are OSPF and BGP peers.
By default, which protocol would R2 prefer when forwarding a packet to the destination
137.10/16?

A. OSPF
B. static route
C. load balance between OSPF and BGP
D. BGP
正解:A
質問 2:
Which statement is true about source NAT?
A. Destination NAT is required to translate the reply traffic.
B. Source NAT works only with source pools.
C. The egress interface IP address can be used for source NAT.
D. Source NAT does not require a security policy to function.
正解:C
質問 3:
You are required to configure a SCREEN option that enables IP source route option detection.
Which two configurations meet this requirement? (Choose two.)
A. [edit security screen]
user@host# show
ids-option protectFromFlood {
ip {
loose-source-route-option;
strict-source-route-option;
}
B. [edit security screen]
user@host# show
ids-option protectFromFlood {
ip {
record-route-option;
security-option;
}
C. [edit security screen]
user@host# show
ids-option protectFromFlood {
ip {
strict-source-route-option;
record-route-option;
}
D. [edit security screen]
user@host# show
ids-option protectFromFlood {
ip {
source-route-option;
}
正解:A,D
質問 4:
Using a policy with the policy-rematch flag enabled, what happens to the existing and new sessions when you change the policy action from permit to deny?
A. The new sessions matching the policy are denied. The existing sessions continue until they are completed or their timeout is reached.
B. The new sessions matching the policy are denied. The existing sessions are dropped.
C. The new sessions matching the policy are denied. The existing sessions, not being allowed to carry any traffic, simply timeout.
D. The new sessions matching the policy might be allowed through if they match another policy. The existing sessions are dropped.
正解:B
質問 5:
Click the Exhibit button.
All system services have been enabled.
Given the configuration shown in the exhibit, which interface allows both ping and SSH traffic?

A. ge-0/0/0.0
B. ge-0/0/1.0
C. ge-0/0/2.0
D. ge-0/0/3.0
正解:A
質問 6:
What are three main phases of an attack? (Choose three.)
A. port scanning
B. exploit
C. reconnaissance
D. propagation
E. DoS
正解:B,C,D
1036 お客様のコメント






シ*ア -
JN0-330の学ぶ私でも安心して読み進められるんすねPass4Testさん細かいっす。PDFファイルでダウンロードすることもできるところが大好きです。