Câu 126: 300-210: CCNP Security Implementing Cisco Threat Control Solutions
SIMULATION -Instructions:Click the grey buttons of this frame to view the different windows. Windows can be minimized and repositioned. You can also reposition a window by dragging it by the title bar.Scenario:You are a network security admin with the need to apply an aggressive policy to deny high and medium risk eve…
Nội dung câu hỏi
SIMULATION -Instructions:Click the grey buttons of this frame to view the different windows. Windows can be minimized and repositioned. You can also reposition a window by dragging it by the title bar.Scenario:You are a network security admin with the need to apply an aggressive policy to deny high and medium risk events against traffic to and from a high value network segment, placing the IPS inline using two interfaces. GigabitEthernet0/0 & GigabitEthernet0/1. You also have a requirement to further analyze lower risk events across that same network segment by capturing traffic for later inspection.
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
-
A. See the solution below. Steps are in Explanation below: First, enable the Gig 0/0 and Gig 0/1 interfaces: Second, create the pair under the "interface pairs" tab: Then, apply the HIGHRISK action rule to the newly created interface pair: Then apply the same for the MEDIUMRISK traffic (deny attacker inline) Finally. Log the packets for the LOWRICK event: When done it should look like this: — đáp án hiện tại
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.