• Post author:
  • Post category:Blog
  • Reading time:2 mins read
  • Post last modified:June 12, 2024

Consider the following access list.access-list 100 permit ip host 192.168.10.1 any

access-list 100 deny icmp 192.168.10.0 0.0.0.255 any echo
access-list 100 permit ip any any

Which two actions are taken if the access list is placed inbound on a router Gigabit Ethernet port that has the IP address 192.168.10.254 assigned? (Choose two.)

  • A Telnet or SSH session is allowed from any device on the 192.168.10.0 into the router with this access list assigned.
  • Devices on the 192.168.10.0/24 network are allowed to reply to any ping requests.
  • Only Layer 3 connections are allowed to be made from the router to any other network device.
  • Only the network device assigned the IP address 192.168.10.1 is allowed to access the router.
  • Devices on the 192.168.10.0/24 network can sucessfully ping devices on the 192.168.11.0 network.
    Answers Explanation & Hints:

    The first ACE allows the 192.168.10.1 device to do any TCP/IP-based transactions with any other destination. The second ACE stops devices on the 192.168.10.0/24 network from issuing any pings to any other location. Everything else is permitted by the third ACE. Therefore, a Telnet/SSH session or ping reply is allowed from a device on the 192.168.10.0/24 network.

For more question and answers:

Click Here CCNA3 v7 – ENSA – Modules 3 – 5: Network Security Exam Answers Full 100%

Subscribe
Notify of
guest
0 Comments
Newest
Oldest Most Voted
Inline Feedbacks
View all comments