单项选择题
The number of packets (or flows) dropped because they do not conform to the ASA/PIX security policy can be viewed using what command? ()
A. show asp drop
B. show counters drop
C. show security-policy
D. show policy-map
相关考题
-
单项选择题
ASA/PIXversion7.0introducedModularPolicyFramework(MPF)asanextensiblewaytoclassifytraffic,andthenapplypolicies(oractions)tothattraffic.MPFataminimum requireswhichthreecommands?()
A. http-map, tcp-map, class-map
B. class-map, tcp-map, policy-map
C. class-map, policy-map, service-map
D. class-map, service-policy, policy-map -
单项选择题
InPIXversionspriorto7.x,multi-channelprotocolswerefixedupusingthe’fixupprotocol’command.Inversion7.0andhigherthe’fixupprotocol’commandswerereplacedbywhatcommands?()
A. audit
B. secure
C. inspect
D.The fixup protocol commands did not change in -
多项选择题
WhichtwoarecorrectfunctionsoftheCiscoAnomalyGuardandDetectorforpreventingDDOSattacks?()
A. uses Netflow data for anomaly detections
B. builds baseline profilesof normal operating conditions, enablingrapid identification of unusual activity that indicates an attack
C. accept events inputs from different network devicesvia syslog, SDEE and SNMP
D. dynamic diversion redirects and cleans only traffic destined for targeted devices, allowing unaffectedtraffic toflow freely and ensuring business continuity
E. pushes ACLs to network devices to only block the malicious traffic
F. using topology and configuration awareness, events from different devices are correlatedand attacks mitgitations are performed at the optimal location
