IOS Security Flashcards
When can object-groups be used in IOS ACLs?
Only on IPv4 extended ACLs.
How do you view L2 MAC address as well as L3/L4 information on traffic matching an ACE?
Add the log-input keyword to the ACE.
How do you tag an ACL log entry to be searchable in a syslog receiver?
Added a user defined cookie at the end of the ACE log keyword.
How do you tag an ACL with a hash value that can be unique within a syslog receiver?
Use the global command “ip access-list logging hash-generation”
True or False: By default on the initial packet in a session is used to generate a log message?
True
How do you enable a router to match locally generated traffic on an ACL?
By using the command “ip access-list match-local-traffic”
Ture or False: Inbound ACLs will filter both data plane and control plane traffic?
True