设为首页收藏本站language 语言切换
查看: 2387|回复: 9
收起左侧

[已解决] 300-101 Question 216

[复制链接]
发表于 2017-11-12 16:57:53 | 显示全部楼层 |阅读模式
QUESTION 216
which access list used to filter upper layer protocol ?
A. extended acl
B. standart acl
C. reflexive acl
D. time based acl
E. dynamic acl
Correct Answer: A

这个题结合后面的拖图题
正确答案应该是C才对吧

1.png
发表于 2017-11-12 20:14:49 | 显示全部楼层
我也有發現,你是對的
思科網站也有答案
Reflexive access lists
provide the ability to filter network traffic at a router, based on IP upper-layer protocol “session” information.

点评

感謝資訊提供!  发表于 2017-11-13 09:05
沙发 2017-11-12 20:14:49 回复 收起回复
回复 支持 反对

使用道具 举报

发表于 2017-11-12 21:41:24 | 显示全部楼层
感谢楼主分享!
板凳 2017-11-12 21:41:24 回复 收起回复
回复 支持 反对

使用道具 举报

发表于 2017-11-12 23:25:17 | 显示全部楼层
我也認同
Reflexive Access Lists
Reflexive access lists provide filtering on upper-layer IP protocol sessions. They contain temporary entries that are automatically created when a new IP session begins. They are nested within extended, named IP access lists that are applied to an interface. Reflexive access lists are typically configured on border routers, which pass traffic between an internal and external network. These are often firewall routers. Reflexive access lists do not end with an implicit deny statement because they are nested within an access list and the subsequent statements need to be examined.
地板 2017-11-12 23:25:17 回复 收起回复
回复 支持 反对

使用道具 举报

发表于 2017-11-12 23:51:09 | 显示全部楼层
这个题貌似我也考到,怪不得不知道错哪呢,应该题库里面有些答案本身就错误的。
5# 2017-11-12 23:51:09 回复 收起回复
回复 支持 反对

使用道具 举报

发表于 2017-11-13 00:53:33 | 显示全部楼层
hexadecimalbabi 发表于 2017-11-12 20:14
我也有發現,你是對的
思科網站也有答案
Reflexive access lists

多謝分享...
6# 2017-11-13 00:53:33 回复 收起回复
回复 支持 反对

使用道具 举报

 成长值: 43550
发表于 2017-11-13 22:57:09 | 显示全部楼层
Extended ACLs
Extended ACLs filter IP packets based on protocol type, source and destination IP address, source TCP or UDP ports, destination TCP or UDP ports and optional protocol type information for finger granularity control.

Reflexive ACLs
Reflexive ACLs allow IP packets to be filtered based on upper-layer session information. Generally are used to allow outbound traffic and to limit inbound traffic by using sessions that originate inside the router. When a router sees a new outbound connection it adds an entry to a temporary ACL to allow replies back into the network. Reflexive ACLs can be defined only with an extended named IP ACL. They cannot be defined with numbered or standard named ACLs or with other protocols.
8# 2017-11-13 22:57:09 回复 收起回复
回复 支持 反对

使用道具 举报

您需要登录后才可以回帖 登录 | 论坛注册

本版积分规则

QQ|Archiver|手机版|小黑屋|sitemap|鸿鹄论坛 ( 京ICP备14027439号 )  

GMT+8, 2025-5-10 03:11 , Processed in 0.085586 second(s), 31 queries , Redis On.  

  Powered by Discuz!

  © 2001-2025 HH010.COM

快速回复 返回顶部 返回列表