Cisco IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor Ficha Técnica Página 40

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 123
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 39
642-531
Page 9-33 CSIDS Courseware under Generating an X.509 Certificate
Use the tls generate-key command to generate the self-signed X.509 certificate needed by TLS
QUESTION 92
Which CLI command would permit remote network access to the IDS Sensor from network 10.1.1.0/24?
A. sensor(config)# access-list 100 permit 10.1.1.0.0.0.0.255
B. sensor(config-Host-net)# access-list 100 permit 10.1.1.0.0.0.0.255
C. sensor(config)# accessList ipAddress 10.1.1.0 netmask 255.255.255.0
D. sensor(config-Host-net)# accessList ipAddress 10.1.1.0 netmask 255.255.255.0
Answer: D
Cisco Courseware 9-31
QUESTION 93
A university's security policy states that network devices must be managed using secure communication
methods.
Which Cisco IDS Sensor services must be disabled to meet this requirement? (Choose two)
A. SSH
B. Telnet
C. TFTP
D. SNMP
E. FTP
F. RSH
Answer: B, E
Explanation: The Sensor always provides secure shell services (including scp). Increase the security of the
Sensor by disabling two services that allow clear text password authentication: Telnet and FTP. For maximum
security disable both.
Reference: Cisco IDS Sensor Software - Cisco Intrusion Detection System Sensor Configuration Note Version
3.1
QUESTION 94
Which of the following Sensor commands will archive IP log files to a remote host?
A. ftp iplog
B. copy iplog
C. upload log
D. iplog export
E. export log
Answer: B
Explanation:
Vista de página 39
1 2 ... 35 36 37 38 39 40 41 42 43 44 45 ... 122 123

Comentários a estes Manuais

Sem comentários