review Flashcards

1
Q

What happens when the max number of allowed MAC addresses is reached?

A

The port is shut down

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Role Based CLI

A

define views to different set of exec commands. These views restrict CLI access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Access Lists mask type?

A

wildcard /30 = 0.0.0.3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

IPv6 ACLs : What type?

A

Extended only

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Warning Syslog?

A

4 - Warn

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Emergencies Syslog

A

0

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Alert Syslog

A

1 l for alert

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

error Syslog

A

3 for 3 rrrs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

notification syslog

A

5 for no ti fi ca tion

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

informational syslog

A

6 for in for ma tio nal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

debugging syslog

A

7 bugs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is ISE?

A

Integrated Service Engine

-part of the BYOD solution. Identity and Access control policy - checks computer before getting on the network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is ACS?

A

Access control Server - used for authenticating and store users and passwords.
Used with TACACS+ and RADIUS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What does the “aaa new-model” command do?

A

Enables the configuration of the rest of the AAA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

How to connect to a ACS Server?

A

tacacs-server host #.#.#.# mypassword

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

image resilience feature?

A

ios image file invisible from show flash command

17
Q

Retire/Unretire

A

unretire = compile/use signature / retire = do not use/compile

18
Q

secure boot-config

A

takes a snapshot of running config and securely archives it

19
Q

public keys on routers

A

verifies digital signature of IPS signature file

20
Q

zone pairs

A

aaaa

21
Q

show crypto session

A

shows phase 1 & phase 2 sessions of IPSec

22
Q

features of TACACS+

A

separates AAA / encrypts body of every packet

23
Q

What can attack CDP?

A

DoS

24
Q

ACL position

A

as close to the source traffic

25
Q

IP source guard?

A

prevents IP/MAC spoofing

26
Q

ASA - webdeploy AnyConnect client

A

anyconnect enable

27
Q

ESP port#

A

50

28
Q

out-of-band

A

hosts management servers, tools, servers, services. it separates from other traffic

29
Q

watches connection requests and protects from DDOS

A

ip tcp intercept mode intercept

30
Q

Ah port#

A

51