多项选择题
Given the topology of a server (with IP 209.165.202.150) protected behind the inside interface of an ASA/PIX,and the Internet on the outside interface. Users on the Internet need to access the server at any time, but the firewall administrator does not want to NAT the address of the server - since itis currentlya public address. Which of the following commands can be used to accomplish this? ()
A. nat (inside) 0 209.165.202.150 255.255.255.255
B. access-list no-nat permit ip host209.165.202.150 anynat(inside) 0 access-list no-nat
C. static(inside,outside) 209.165.202.150 209.165.202.150 netmask 255.255.255.255
D. no nat-control
E. nat (inside) 1 209.165.202.150 255.255.255.255
点击查看答案
相关考题
-
单项选择题
Whatcommandcanbeusedtogloballydisable the requirementthatatranslationrulemustexistbeforepacketscanpassthroughthefirewall?()
A. nat
0
B. nonat-control
C. access-list
D. none of the above -
单项选择题
Selectthebestanswertothisqestion.ASA/PIXActive/Activefailovercanbeusedtoload-balance:()
A. All traffic passing through theappliance
B. Traffic from internal networks on a per IP basis
C. Based on protocol only.
D. On a per-context basis only. -
单项选择题
Thenumberofpackets(orflows)droppedbecausetheydonotconformtotheASA/PIXsecuritypolicycanbeviewedusingwhatcommand?()
A. show asp drop
B. show counters drop
C. show security-policy
D. show policy-map
