Refer to the exhibit. The student on the H1 computer continues to launch an extended ping with expanded packets at the student on the H2 computer. The school network administrator wants to stop this behavior, but still allow both students access to web-based computer assignments. What would be the best plan for the network administrator?

Refer to the exhibit. The student on the H1 computer continues to launch an extended ping with expanded packets at the student on the H2 computer. The school network administrator wants to stop this behavior, but still allow both students access to web-based computer assignments. What would be the best plan for the network administrator?

CCNA3 v7 – ENSA – Modules 3 – 5 Network Security Exam Answers 07
CCNA3 v7 – ENSA – Modules 3 – 5 Network Security Exam Answers 07
  • Apply an outbound extended ACL on R1 S0/0/1.
  • Apply an outbound standard ACL on R2 S0/0/1.
  • Apply an inbound standard ACL on R1 Gi0/0.
  • Apply an inbound extended ACL on R2 Gi0/1.
  • Apply an inbound extended ACL on R1 Gi0/0.
Answers Explanation & Hints:

This access list must be an extended ACL in order to filter on specific source and destination host addresses. Commonly, the best place for an extended ACL is closest to the source, which is H1. Traffic from H1 travels into the switch, then out of the switch into the R1 Gi0/0 interface. This Gi0/0 interface would be the best location for this type of extended ACL. The ACL would be applied on the inbound interface since the packets from H1 would be coming into the R1 router.

For more Questions and Answers:

CCNA 3 v7 – ENSA v7.02 – Modules 3 – 5: Network Security Exam Answers Full 100%

Leave a Reply