Refer to the exhibit. A network administrator needs to add an ACE to the TRAFFIC-CONTROL ACL that will deny IP traffic from the subnet 172.23.16.0/20. Which ACE will meet this requirement?

  • Post author:
  • Post category:Uncategorized
  • Post comments:0 Comments
  • Post last modified:November 15, 2020
  • Reading time:2 mins read

Last Updated on November 15, 2020 by Admin

Refer to the exhibit. A network administrator needs to add an ACE to the TRAFFIC-CONTROL ACL that will deny IP traffic from the subnet 172.23.16.0/20. Which ACE will meet this requirement?

CCNA3 v7 – ENSA – Modules 3 – 5 Network Security Exam Answers 14
CCNA3 v7 – ENSA – Modules 3 – 5 Network Security Exam Answers 14
  • 15 deny 172.23.16.0 0.0.15.255
  • 5 deny 172.23.16.0 0.0.15.255
  • 30 deny 172.23.16.0 0.0.15.255
  • 5 deny 172.23.16.0 0.0.255.255
    Answers Explanation & Hints:

    The only filtering criteria specified for a standard access list is the source IPv4 address. The wild card mask is written to identify what parts of the address to match, with a 0 bit, and what parts of the address should be ignored, which a 1 bit. The router will parse the ACE entries from lowest sequence number to highest. If an ACE must be added to an existing access list, the sequence number should be specified so that the ACE is in the correct place during the ACL evaluation process.

For more question and answers:

Click Here CCNA3 v7 – ENSA – Modules 3 – 5: Network Security Exam Answers Full 100%

0 0 votes
Article Rating
Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments