Security Flashcards

1
Q

Difference between tacacs server and tacacs-server w/r to AAA

A

Prioer to IOS 15 - tacacs-server
After IOS 15 - tacacs server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How do you group different authentication servers in AAA?

A

aaa group server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Command to add a (alreayd configured) server to a AAA group?

A

server server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

AAA ports - what prots are used for ACCOUNTING

A

1646
1813

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

AAA ports - what prots are used for AUTHORIZATION AND AUTHENTICATION

A

1645
1812

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How to remember AAA accounting ports

A

Accounting ports are the last of the 16/18 block

1646
1813 V 1645
1812

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does the “QM_IDLE” indicate? What does QM mean?

A

QM = QUick Mode
aka IKE Phase 2

Indicates Phase 1 established succesfully, put Phase 2 has not

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

View status of a GRE IPSEC tunnel?

A

show crypto isakmp sa

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

show crypto isakmp sa
What would a succesful Quick Mode establishment indicate?

A

Noegitated IPSec Security Associations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How does IKE report states in show crypto isakmp sa command?

A

show cryptio isakmp sa

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

On A Cisco PACL - are packets that originated from that router affected by OUTGOING ACL’s?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly