- 积分
- 144
- 鸿鹄币
- 个
- 好评度
- 点
- 精华
- 最后登录
- 1970-1-1
- 阅读权限
- 20
- 听众
- 收听
助理工程师
 
|
6鸿鹄币
本帖最后由 abcd3333 于 2019-9-18 23:02 编辑
求教各位大佬,300-135题库里有两题在战报版面里曾有人提到答案不同,分别是08.13版本的Q7和Q10
现在被搞糊涂了,有路过的大大麻烦看一下,多谢了!
Q7。Refer to the exhibit.after applying the Block access list to Router C,network traffic fails to flow over Tunnel
1,which protocol must be allowed in the access list to permit the traffic to flow through the tunnel?
A. ESP
B. ICMP
C. UDP
D. GRE
Correct Answer: D
这题也有说答案是C. UDP
Explanation
GRE with IPSec traffic will be encrypted/encapsulated inside an ESP packet. ESP packet, in turn, will be encapsulated inside a UDP port 500 (or UDP port 4500 in case of NAT) datagram. Therefore we have to permit UDP port 500/4500 on the middle routers so that GRE with IPSec traffic can flow through.
Q10。Refer to the exhibit.which action brings up a point-to-point tunnel?
R1#show ip interface brief
Interface IP-Address OK? Method Status Protocol
...
Tunnel0 unassigned YES manual up down
A. configure a tunnel source and destination
B. apply the no shut command to Tunnel 1
C. configure an IP address for Tunnel 1
D. apply the shut and no shut commands to loopback 0
Correct Answer: C
这题也有说答案是A
Explanation
In order to make a Point-to-Point GRE Tunnel interface in up/up state, two requirements must be met: + A valid tunnel source (which is in up/up state and has an IP address configured on it) and tunnel destination must be configured + A valid tunnel destination is one which is routable. However, it does not have to be reachable.
|
-
-
最佳答案
查看完整内容
搭一下简单的实验就知道了,第二题更正的答案对,我自己测试过,第一题就不太确定
|