Sep 30 2009

Pass4Side 132-S-816.1 PDF考古題

Posted by admin in Avaya

Avaya認證132-S-816.1考試考古庫介紹

考試代號: 132-S-816.1
問題數量:95 Q&As

更新時間: 2009-09-30
註冊地點: Prometric/Pearson VUE
考古庫全稱:Specialist: Modular Messaging with Microsoft Exchange Implement & Support Elective Exam

Avaya 132-S-816.1學習指南

Avaya Certification認證 132-S-816.1考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。Avaya認證 132-S-816.1學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試132-S-816.1考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。Avaya認證 132-S-816.1是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的132-S-816.1考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他132-S-816.1考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師132-S-816.1試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加132-S-816.1考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費132-S-816.1考古庫Demo賞析

 
 
Exam : Avaya 132-s-816.1
Title : Specialist: Modular Messaging with Microsoft Exchange Implement & Support Elective Exam

1. You are installing Modular Messaging 3.1 for Exchange along with Message Networking 3.1 so the customer can continue to send and receive voice messages to the rest of the organization’s voice mail systems. They will continue to do this until the entire organization has been migrated to Modular Messaging; they realize that the Message Networking system is therefore a temporary solution.
What is required to meet the customer’s needs as defined above?
A. Message Networking must be installed on S3500 hardware.
B. The Message Networking server must have at least one analog port board.
C. The Modular Messaging license file must include the right to use Octel Analog Networking.
D. One of the Modular Messaging Message Application Servers must have at least one analog port board.
Answer: B

2. Modular Messaging 3.1 for Exchange Message Application Servers (MASs) run the Microsoft Windows operating system. The customer wants to supply their own MAS.
Which versions of Windows are supported on the MASs?
A. Windows 2003 with Service Pack 1
B. Windows 2003 with Service Pack 2
C. Windows 2000 as long as this is an upgrade
D. Any release of Windows 2003 except Data Center Server
Answer: A

3. You are implementing a new Modular Messaging for Microsoft Exchange system for a customer with three Avaya Messaging Application Servers (MASs) connected to a single, large Microsoft Exchange Server. The customer enables offline storage for the Voice Mail Domain.
Which two statements are true about offline storage in this environment? (Choose two.)
A. Messages received by any MAS are stored in both the local spool folder on the MAS and in the path specified in VMSC.
B. The customer should allocate on the offline store approximately 10 GB of storage space per hour of message storage anticipated.
C. The Voice Mail Domain should be configured for an offline storage location in the format \servernamelocation or \<ip address>location.
D. If a user calls a given MAS that has become disconnected from the customer’s Ethernet they will not be able to retrieve any messages.
Answer: AC

4. A single Modular Messaging 1 for Exchange Message Application Server called MYMAS1 is running all services, including Call Me. In Voice Mail System Configuration, Call Me is enabled. The subscriber mailbox has the Allow Call Me option selected, and the mailbox is using the default rule to a valid external phone number of 915305558956. During acceptance testing, this phone number never rings with a Call Me call when a message is left in the mailbox.
What are two reasons that the Call Me call doesn’t reach the specified number? (Choose two.)
A. A restriction in the PBX is preventing the outcall.
B. The Call Me dialing rules are configured to not require the 91 before the rest of the number.
C. The Call Me port group is set to None in Voice Mail System Configuration, Message Application Servers, MYMAS1, Port Groups, Usage tab.
D. In Voice Mail System Configuration, Call Me, the Message Application Server running the Call Me service is identified, but the Message Application Servers that make the calls are not in the list.
Answer: AC

5. How should you access the alarm Log on R3.1 Message Networking (MN) from the main menu?
A. Logs > Alarm Log
B. Reports > Alarm Log
C. Logs > Reports > Alarm Log
D. Reports > Logs > Alarm Log
Answer: A

6. A Modular Messaging 3.1 for Exchange user in London, England, wants to use the Telephone User Interface to send a message to a Modular Messaging 1.1 for Exchange user in Los Angeles, California. The two locations share an Exchange Organization but the users are in different Voice Mail Domains.
How can this be accomplished?
A. The sender must address the message to the Numeric Address of the recipient.
B. The Octel Analog Networking connector must be installed and configured in Exchange.
C. This is not possible; the sender and recipient must be in the same Voice Mail Domain or the sender has to call the recipient.
D. The sender must address the message to the address of the recipient that represents the recipient on the Message Networking server.
Answer: A

7. Which three are necessary to ensure that the SIP configuration is taking calls? (Choose three.)
A. Avaya Communication Manager R3.0
B. Avaya SES at the supported software version
C. Avaya Communication Manager at the supported software version
D. RFA/WebLM License with signed certificate for Modular Messaging License
E. T1-QSIG cards in the Avaya Messaging Application Server (MAS) wired to the PBX
Answer: BCD

8. What is the maximum hardware configuration allowed with Modular Messaging for Microsoft Exchange?
A. five Avaya Messaging Application Server (MAS) systems handling voice processing with a sixth acting as a Supplementary Server
B. six Avaya Messaging Application Server (MAS) systems handling voice processing with the sixth acting as a Supplementary Server
C. ten Avaya Messaging Application Server (MAS) systems handling voice processing with an eleventh acting as a Supplementary Server
D. eleven Avaya Messaging Application Server (MAS) systems handling voice processing with a twelfth acting as a Supplementary Server
Answer: C

9. Which two statements are true about a customer-provided Avaya Messaging Application Server (MAS) for Modular Messaging for Microsoft Exchange that has Dialogic cards? (Choose two.)
A. Only Dialogic Analog CLAN is supported.
B. You must set the jumpers and switches as required.
C. You use the MAS software media for Dialogic Drivers.
D. The latest drivers are downloaded from the Dialogic website.
Answer: BC

10. Which three are configured using the Voice Mail System Configuration Tool? (Choose three.)
A. Auto Attendant
B. Class of Service
C. maximum mailbox size
D. the number of digits in a mailbox
Answer: ABD

免費下載132-S-816.1考古庫Demo

Pass4Side提供最新的Avaya Certification認證 132-S-816.1考古庫,其全名為:(Specialist: Modular Messaging with Microsoft Exchange Implement & Support Elective Exam). 在您決定是否購買之前 可以先下載132-S-816.1考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費132-S-816.1模擬測試題的下載鏈接

免費的132-S-816.1考古庫PDF下載鏈接

Sep 30 2009

Pass4Side VCP-410 PDF考古題

Posted by admin in VMWare

VMWare認證VCP-410考試考古庫介紹

考試代號: VCP-410
問題數量:300 Q&As

更新時間: 2009-09-30
註冊地點: Prometric/Pearson VUE
考古庫全稱:VMware Certified Professional on VI4

VMWare VCP-410學習指南

VMWare Certification認證 VCP-410考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。VMWare認證 VCP-410學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試VCP-410考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。VMWare認證 VCP-410是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的VCP-410考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他VCP-410考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師VCP-410試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加VCP-410考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費VCP-410考古庫Demo賞析

 
 
Exam : VMware VCP-410
Title : VMware Certified Professional on VI4

1. Which of the following tasks can be selected from the home page of an ESX Server (Choose Three)?
A. Download VMware vCenter Server
B. Browse Objects Managed by this Host
C. Browse Virtual Machines in this Host’s inventory
D. Browse Datastores in this Host’s inventory
E. Download VMware Web Access Client
Answer: ABD

2. Creating which of the following optional partitions would change the default partition size for /?
A. /tmp
B. /home
C. /var/log
D. /usr
Answer: D

3. What are the minimum vSphere Small Business and Medium/Enterprise Editions that include VMware Data Recovery (Choose Two)?
A. vSphere Essentials Plus
B. vSphere Standard
C. vSphere Advanced
D. vSphere Essentials
Answer: AC

4. When installing ESX 4.0, where is the Service Console file system located?
A. In a virtual disk on a local VMFS datastore
B. In a virtual disk on a local or shared VMFS datastore
C. On a local physical disk or on a mapped SAN LUN
D. On a local physical disk
Answer: A

5. Once vCenter 4.x has been installed, a License Server is required in which of the following instances?
A. A License Server is always required
B. To support ESXi 4.x Hosts
C. To support ESX 3.5 Hosts
D. A License Server is no longer required
Answer: C

6. What is the maximum number of cores that can be used with Standard licensing?
A. 8
B. 16
C. 12
D. 6
Answer: D

7. Which of the following functions cannot be performed remotely and must be performed from the ESXi Direct Console (Choose Three)?
A. Configure DNS Settings
B. Restart Management Agents
C. Test the Management Network
D. Restore a Standard Switch
E. Configure a Static IP Address
Answer: BCD

8. An ESX Administrator plans to install additional supported components on the ESX Server that would increase the memory requirements for the Service Console. Which ESX Server partition would also need to be increased during installation as a result?
A. /
B. vmfs3
C. swap
D. /boot
Answer: C

9. Additional licensing is required once the number of cores per CPU reaches which of the following?
A. 16 or more cores
B. 12 or more cores
C. 8 or more cores
D. 6 or more cores
Answer: C

10. An administrator is installing ESX 4.0 on a physical server. Which of the following components would need to be modified or replaced to support a successful installation?
A. 4 Intel PRO 1000 Network Adapters
B. 2 LSI Logic LSI7202XP-LC Fibre Channel HBAs
C. 2 AMD Opteron CPUs
D. 4GB RAM
Answer: B

11. Which of the following features is not a part of the vSphere Advanced Edition?
A. VMware Storage VMotion
B. VMware VMotion
C. VMware Data Recovery
D. VMware Fault Tolerance
Answer: A

12. Which vSphere Editions include VMware Data Recovery (Choose Two)?
A. vSphere Essentials Plus or higher
B. vSphere Advanced or higher
C. vSphere Standard or higher
D. vSphere Essentials or higher
Answer: AB

13. The vSphere 4 Host Update Utility provides a graphical user interface for (Choose Two):
A. performing a host compatibility check
B. upgrading standalone ESX/ESXi hosts
C. upgrading ESX hosts in DRS/HA clusters
D. keeping guest operating systems patched
Answer: AB

14. Which of the following partitions is specific to ESXi 4.0?
A. usr
B. vmkcore
C. scratch
D. swap
Answer: C

15. After upgrading an ESX host to vSphere 4, which of the following three actions should be taken (Choose Three)
A. restore files to the service console
B. boot into Troubleshooting Mode for proper operation
C. configure licensing
D. verify virtual machine operation
E. connect the host to vCenter if managed
Answer: CDE

16. The default swap partition size for ESX 4.0 is which of the following?
A. 800MB
B. 1.6GB
C. 544MB
D. 600MB
Answer: D

免費下載VCP-410考古庫Demo

Pass4Side提供最新的VMWare Certification認證 VCP-410考古庫,其全名為:(VMware Certified Professional on VI4). 在您決定是否購買之前 可以先下載VCP-410考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費VCP-410模擬測試題的下載鏈接

免費的VCP-410考古庫PDF下載鏈接

Sep 30 2009

Pass4Side HP0-S20 PDF考古題

Posted by admin in HP

HP認證HP0-S20考試考古庫介紹

考試代號: HP0-S20
問題數量:60 Q&As

更新時間: 2009-09-30
註冊地點: Prometric/Pearson VUE
考古庫全稱:Implementing HP BladeSystem

HP HP0-S20學習指南

HP AIS認證 HP0-S20考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。HP認證 HP0-S20學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試HP0-S20考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。HP認證 HP0-S20是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的HP0-S20考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他HP0-S20考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師HP0-S20試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加HP0-S20考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費HP0-S20考古庫Demo賞析

 
 
Exam : HP HP0-S20
Title : Implementing HP BladeSystem

1. Which ProLiant G6-series technology increases the speed at which data can be communicated between the processor and the memory DIMMs?
A. AMD Direct Connect Architecture
B. Intel Turbo Burst Technology
C. Intel QuickPath Technology
D. Intel Hyper-Threading Technology
Answer: C

2. Which tasks are part of the Evaluate Data step of the HP Troubleshooting Methodology? (Select three.)
A. analyze the mode of failure
B. gather messages from iLO logs
C. apply one change or one solution at a time
D. isolate faults to a hardware or software system
E. determine which components could cause the problem
F. check environmental conditions
Answer: ADE

3. Which features are included with the HP Modular Cooling System G2? (Select two.)
A. non-uniform airflow
B. fixed temperature set point
C. hot-swappable components
D. water leak detector
Answer: CD

4. Which options can be enabled in the HP Network Configuration Utility? (Select two.)
A. fault tolerance
B. NIC-assisted load balancing
C. switch-assisted load balancing
D. DHCP server support
Answer: AC

5. Which statements are true about the AMD Opteron server memory architecture? (Select two.)
A. AMD Opteron uses HyperTransport for Direct Memory Access (DMA) transfers.
B. Each processor has its own memory.
C. A shared memory bus interconnects the CPUs with memory.
D. AMD Opteron uses 8-way interleaved memory in conjunction with proMem technology.
Answer: AB

6. Which features does the HP iLO Advanced for BladeSystem license include? (Select two.)
A. global team collaboration
B. server migration pack
C. enhanced networking
D. headless server deployment
E. integration with LDAP services
Answer: AE

7. Which benefits are server blades designed to provide? (Select two.)
A. ultra-density
B. highest internal expansion capability
C. power-efficiency
D. highest drive density
Answer: AC

8. Which bays must be used when installing three power supplies in a c7000 to support power redundancy mode?
A. Bays 1, 2, 4
B. Bays 1, 2, 5
C. Bays 1, 3, 4
D. Bays 2, 3, 5
Answer: A

9. Which server blades are optimized for HPC (High Performance Computing) solutions? (Select two.)
A. BL2X0c
B. BL46Xc
C. BL49Xc
D. BL68Xc
E. BL8XXc
F. BL2×220c
Answer: AF

10. What can you do from the Insight Display on a c-Class BladeSystem enclosure?
A. Access the Health Summary of the enclosure.
B. Change IP addresses of iLO 2 on individual blades.
C. Power individual blades on or off.
D. Power the enclosure on or off.
Answer: A

免費下載HP0-S20考古庫Demo

Pass4Side提供最新的HP AIS認證 HP0-S20考古庫,其全名為:(Implementing HP BladeSystem ). 在您決定是否購買之前 可以先下載HP0-S20考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費HP0-S20模擬測試題的下載鏈接

免費的HP0-S20考古庫PDF下載鏈接

Sep 30 2009

Pass4Side 350-001GB2312-LAB PDF考古題

Posted by admin in Cisco

Cisco認證350-001GB2312-LAB考試考古庫介紹

考試代號: 350-001GB2312-LAB
問題數量:0 Q&As

更新時間: 2009-09-30
註冊地點: Prometric/Pearson VUE
考古庫全稱:CCIE-Routing and Switching Written exam

Cisco 350-001GB2312-LAB學習指南

CCIE認證 350-001GB2312-LAB考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。Cisco認證 350-001GB2312-LAB學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試350-001GB2312-LAB考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。Cisco認證 350-001GB2312-LAB是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的350-001GB2312-LAB考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他350-001GB2312-LAB考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師350-001GB2312-LAB試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加350-001GB2312-LAB考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費350-001GB2312-LAB考古庫Demo賞析

Exam : Cisco 350-001
       GB2312-LAB
Title : CCIE-Routing and Switching Written exam(4.1)
N1.
答案:
第一部分,桥接和排错
Briging and switching

1. 1 Sparse Mode Multicasting
* There is a multicast source for group 224.2.2.2 located at VLAN_BB2 and another source for group 224.3.3.3 located at VLAN_BB3.There are clients on VLAN_55 that would like to access these two groups.
* Configure R5,R3, Sw1,R1 and R6 to meet the following requirements
* Configure all devices using sparse mode
* R1 will be the RP for both multicast groups and R3 will be backup RP. Use the most reliable way to achieve this objective and do not configure RP information statically
* R5 needs to be able to ping both 224.2.2.2 and 224.3.3.3
RackYYR6:
ip multicast-routing
int g0/1
ip pim sparse-mode
ip igmp join-group 224.2.2.2 (这是预配置)
int g0/0
ip pim sparse-mode
ip igmp join-group 224.3.3.3 (这是预配置)
int s0/0/0
ip pim sparse-mode
ip pim nbma-mode
 
RackYYR1:
ip multicast-routing
int s0/0/0
ip pim sparse-mode
ip pim nbma-mode
int g0/0
ip pim sparse-mode
int lo200
ip pim sparse-mode
ip pim send-rp-ann LO200 sco 10 group-list 11
ip pim send-rp-dis LO200 sco 10
access-list 11 per 224.2.2.2
access-list 11 per 224.3.3.3
RackYYSw1:
ip multicast-routing
int VLAN 100
ip pim sparse-mode
int Fa0/3
ip pim sparse-mode
 
RackYYR3:
ip multicast routing
int g0/0
ip pim sparse-mode
int s0/0/0.3
ip pim sparse-mode
ip pim nbma-mode
ip pim dr-priority 200
int lo0
ip pim sparse-mode
ip pim send-rp-ann Loopback0 sco 10 group-list 33
ip pim send-rp-dis Loopback0 sco 10
access-list 33 permit 224.2.2.2
access-list 33 permit 224.3.3.3
RackYYR5:
ip multicast-routing
int s0/0/0.5
ip pim sparse-mode
ip pim nbma-mode
 
int g0/0
ip pim sparse-mode
Verify: show ip pim neighbor; show ip pim rp mapping; R5 ping group addresses 224.2.2.2 and 224.3.3.3;
5.2 Defense against Multicast Dos Attack
* There is a concern that hacker launch Dos attack against R5 with multicast group membership traffic. Configure R5 so that accept only 100 IGMP reports at any time but this limit does not apply to the group 224.3.3.3.
RackYYR5:
ip access-list extended 105
permit igmp any host 224.3.3.3
int g0/0
ip igmp limit 110 except 105
Verify: show ip igmp interface interface-id
[M1]使用前缀列表,只允许特定网段进入RIP
[M2]重分布RIP进OSPF时,度量值为加和,M-2是OSPF重新计算的度量值
[M3]Nssa
[M4]180.88.0.0/18
[M5]区域间通告汇总路由
[M6]考虑偏移列表无法使用前缀列表,这里使用访控进行定义
[M7]重分布
直连接口
[M8]作接口上对R6的汇总路由,.并利用路由图拒绝掉到OSPF汇总路由
[M9]过滤EIGRP到OSPF区域里的YY.YY.0.0/16的汇总路由
[M10]过滤掉由R3产生的单条汇总0.0.0.0,同时允许其它的明细路由
[M11]从EIGRP100中过滤掉YY.YY.0.0/16的汇总路由条目到OSPF YY
[M12]接口汇总,将所有通告给R6的YY.YY.0.0的路由汇总为单条路由.(并过滤其网段的明细路由)
[M13]

2. 1 vtp
* Sw1/Sw2/Sw3/Sw4
* VTP domain:VTP+YY
* VTP mode:Transparent
RackYYSw1/SW2/SW3/SW4:
vtp domain VTPYY
vtp mode transparent
that’s not need to use s/c mode in VTP
1.2
VLAN
Sw1:
40 VLAN_BB1
55 VLAN_55
60 VLAN_BB3
100 VLAN_100
200 VLAN_200
Sw2:
50 VLAN_BB2
100 VLAN_100
200 VLAN_200
Sw3
60 VLAN_BB3
200 VLAN_200
Sw4
200 VLAN_200
RackYYSw1:
VLAN Name Status Ports
1 default active F0/7,F0/8,F0/9,F0/11,F0/12,F0/13,F0/14Fa0/15,Fa0/17 Fa0/18,Gi0/1,Gi0/2
40 VLAN_BB1 active Fa0/4, Fa0/10
55 VLAN_55 active Fa0/5
60 VLAN_BB3 active Fa0/6
100 VLAN_100 active Fa0/1, Fa0/2
200 VLAN_200 active
RackYYSw2:
VLAN Name Status Ports
1 default active F0/4,F0/5,F0/7,F0/8,F0/9,F0/11,F0/12,F0/13,F0/14,F0/16,F0/17
F0/18,Gi0/1,Gi0/2
50 VLAN_BB2 active F0/6, F0/10
100 VLAN_100 active F0/1, F0/2
200 VLAN_200 active Po10
RackYYSw3:
VLAN Name Status Ports
1 default active F0/1,F0/2,F0/3,F0/4 F0/5, F0/6, F0/7,F0/8,F0/9,F0/11,F0/12,F0/13, F0/14, F0/15, F0/16,F0/17,F0/18,Gi0/1,Gi0/2
60 VLAN_BB3 active Fa0/10
200 VLAN_200 active
RackYYSw4:
VLAN Name Status Ports
1 default active F0/1,F0/2,F0/3,F0/4,F0/5,F0/6,F0/7,F0/8,F0/9,F0/10F0/11,F0/12
F0/13,F0/14,F0/15,F0/16,F0/17,F0/18,Gi0/1,Gi0/2
200 VLAN_200 active Po10
Verify: show vlan brief
When u done, u must verify careful.
做完的时候,可以仔细核对下,注意大小写,我做的时候只要是二层的端口全使用Swithport mode access
1.3 Port-channel between Sw1 a Sw2
* Sw1 and Sw2 layer 3 Ether channel use port-channel 21 only
* Assign YY.YY.100.1/24 to Sw1 Port-channel 21
* Assign YY.YY.100.2/24 to Sw2 Port-channel 21
* ensure interface F0/23 and F0/24 are channel member for both Switch
* Do not reply on PAgP or LACP to facilitate the connection
* Verify layer 2 and layer 3 connectivity via the channel link
RackYYSw1:
interface range FastEthernet0/23-24
shutdown
no Switchport
channel-group 21 mode on
no shutdown
interface Port-channel21
ip address YY.YY.100.1 255.255.255.0
 
RackYYSw2:
interface range FastEthernet0/23-24
shutdown
no Switchport
channel-group 21 mode on
no shutdown
interface Port-channel21
ip address YY.YY.100.2 255.255.255.0
Verify: show vtp status; show etherchannel summary; show etherchannel port-channel;
1.4 Port-channel between Sw1-Sw3 and Sw2-Sw4
* Sw1-Sw3 Sw2-Sw4 layer 2 Ether-channels use port 10 only F0/19 and F0/20 are members of the switches
* On Sw2 and Sw4 assign all interface in the EC as static-access port on VLAN_200 unconditional enable PAGP to facility the connection
* verify layer 2 connectivity via the channel link
RackYYSw1:
interface range FastEthernet0/19-20
shutdown
Switchport trunk encapsulation isl
Switchport mode trunk
channel-group 10 mode desirable
no shutdown
 
RackYYSw3:
interface range FastEthernet0/19-20
shutdown
Switchport trunk encapsulation isl
Switchport mode trunk
channel-group 10 mode desirable
no shutdown
RackYYSw2:
interface range FastEthernet0/19-20
shutdown
Switchport mode access
Switchport access VLAN 200
channel-group 10 mode desirable
no shutdown
 
RackYYSw4:
interface range FastEthernet0/19-20
shutdown
Switchport mode access
Switchport access VLAN 200
channel-group 10 mode desirable
no shutdown
Verify: show etherchannel summary; show etherchannel portchannel;
结合下面的VLAN,可以看到Sw2和Sw4的po10也在VLAN200,在你做敲channel-group 10 mode desirable之前先Switchport access VLAN 200,要不在VLAN的表中会看不到po10.
在做完的时候一定要Show一下.看看 Port-channel起来了没
1.5
* Catalyst layer 3 configuration
* Configure Sw1 and Sw2 IP address as outlined n diagram
* Connectivity to R3 uses route ports
* R1 and R2 are members of vlan 100 on Sw1 and Sw2
1.6
* Catalyst layer 3 configuration
* Configure Sw3 and Sw4 IP addressing
* Configure VLAN_200 in Sw1 with IP address YY.YY.34.1/24
* Configure VLAN_200 in Sw2 with IP address YY.YY.43.1/24
* Verify the connectivity between Sw1 and Sw2
RackYYSw1:
VLAN 100 YY.YY.12.254/24
VLAN 200 YY.YY.34.1/24
RackYYSw2:
VLAN 100 YY.YY.21.254/24
VLAN 200 YY.YY.43.1/24
RackYYSw3:
VLAN 200 YY.YY.34.254/24
RackYYSw4:
VLAN 200 YY.YY.43.254/24
RackYYSw1:
ip routing
interface VLAN100
ip address YY.YY.12.254 255.255.255.0
interface VLAN200
ip address sYY.YY.34.1 255.255.255.0
 
RackYYSw2:
ip routing
interface VLAN100
ip address YY.YY.21.254 255.255.255.0
interface VLAN200
ip address YY.YY.43.1 255.255.255.0
 
RackYYSw3:
ip routing
interface VLAN200
ip address YY.YY.34.254 255.255.255.0
RackYYSw4:
ip routing
interface VLAN200
ip address YY.YY.43.254 255.255.255.0
Verify: show ip interface brief; show ip route
RackYYSw1:
interface FastEthernet0/3
no Switchport
ip address YY.YY.13.2 255.255.255.0
 
RackYYSw2:
interface FastEthernet0/3
no Switchport
ip address YY.YY.31.2 255.255.255.0
Verify: show interface status; show ip interface brief; show ip route
1.7Catalyst feature
* Cofigure Sw1-F0/1 so that the interface will stop forwarding unicast traffic if the input rate exceeds 65 Mbps
RackYYSw1:
interface Fa0/1
Storm-control unicast level 55.00
Verify: show storm-control unicast
1.8 Catalyst tunning
* Cofigure the amount of tine a neighbou should hold CDP information sent by Sw2 before discarding it to 2 minutes
RackYYSw1:
cdp holdtime 120
Verify: show cdp
1.9 Catalyst Feature
* Configure Sw1 to control and block the flood of unknown Multicast traffic on the interface F0/5
RackYYSw1:
interface Fa0/5
Switchport block multicast
Ip Igmp snooping
或者’ip cgmp enable’
Verify: show interface interface-id switchport
第二部分:IGP和BGP
IGP
2.1 OSPF Bbackbones
* The link between Sw1 and Sw2
* All interface in VLAN_100 on Sw1 Sw2 R1 and R2
* R3 G0/0 and G0/1 and the fa0/3 on Sw1 and Sw2
* Loop back 0 interface on Sw1 Sw2 R2 and R3
* Verifying that all OSPF neighbor have built their adjacencies
RackYYR1:
Router ospf YY
network YY.YY.12.1 0.0.0.0 area 0
network YY.YY.21.1 0.0.0.0 area 0
 
RackYYR2:
Router ospf YY
network YY.YY.2.2 0.0.0.0 area 0
network YY.YY.12.2 0.0.0.0 area 0
network YY.YY.21.2 0.0.0.0 area 0
 
RackYYSw1:
Router ospf YY
network YY.YY.7.7 0.0.0.0 area 0
network YY.YY.12.254 0.0.0.0 area 0
network YY.YY.13.2 0.0.0.0 area 0
network YY.YY.100.1 0.0.0.0 area 0
 
RackYYSw2:
Router ospf YY
network YY.YY.8.8 0.0.0.0 area 0
network YY.YY.21.254 0.0.0.0 area 0
network YY.YY.31.2 0.0.0.0 area 0
network YY.YY.100.2 0.0.0.0 area 0
 
RackYYR3:
Router ospf YY
network YY.YY3.3 0.0.0.0 area 0
network YY.YY.13.1 0.0.0.0 area 0
network YY.YY.31.1 0.0.0.0 area 0
Verify: show ip ospf interface brief; show ip ospf neighbor
2.2 OSPF over NBMA
* OSPF area 11 consist of the follow interface and attributes
* The Frame Relay network between R3 R4 R5
* Loop back 0 on R4 and R5
* VLAN_55
* Ensure there is no DR/BDR
RackYYR3:
interface s0/0/0.3
ip ospf network point-to-multipoint non-broadcast
Router ospf YY
network YY.YY.11.3 0.0.0.0 area 11
nei YY.YY.11.4
nei YY.YY.11.5
 
RackYYR4:
interface s0/0/0.4
ip ospf network point-to-multipoint non-broadcast
Router ospf YY
network YY.YY.4.4 0.0.0.0 area 11
network YY.YY.11.4 0.0.0.0 area 11
RackYYR5:
interface s0/0/0.5
ip os net point-to-multipoint non-broadcast
Router ospf YY
network YY.YY.5.5 0.0.0.0 area 11
network YY.YY.11.5 0.0.0.0 area 11
network YY.YY.55.254 0.0.0.0 area 11
Verify: show ip ospf interface brief; show ip ospf neighbor
2.3 OSPF ASBR and RIP version 2
* Configure R4 to receive RIP v2 routes from Backbone 1
* When properly configured you will receives RIP v2 routes in the class B address range 199.172.Z.Z[M1]
* Configure R4 so that the external RIP routes are injected into area 11 and appear throughout that OSPF domain[M2]
* Ensure external routes originates from Autonomous Systems Boundary Routers (ASBR) outside area 11 cannot be flooded within the area[M3]
* Permit OSPF type-3 routes into area 11(在R5上看)
RackYYR4:
ip prefix-list fbb1 per 199.172.0.0/16 le 32
Router rip
version 2
no auto-summary
network 150.1.0.0
distribute-list prefix fbb1 in Fa0/0
Router ospf YY
redistribute rip metric-type 1 subnets
area 11 nssa
 
RackYYR3:
Router ospf YY
area 11 nssa
 
RackYYR5:
Router ospf YY
area 11 nssa
Verify: show ip protocol; show ip route rip; show ip ospf; show ip route ospf;
2.4 Area 34 and Area 43
* OSPF area 34 consists of the VLAN_200 interfaces on Sw1 and Sw3 and loopback 0 in Sw3
* OSPF area 43 consists of the VLAN_200 interfaces on Sw2 and Sw4 and loopback 0 in Sw4
RackYYSw1:
Router ospf YY
network YY.YY.34.1 0.0.0.0 area 34
 
RackYYSw2:
Router ospf YY
network YY.YY.43.1 0.0.0.0 area 43
 
RackYYSw3:
Router ospf YY
network YY.YY.9.9 0.0.0.0 area 34
network YY.YY.34.254 0.0.0.0 area 34
 
RackYYSw4:
Router ospf YY
network YY.YY.10.10 0.0.0.0 area 43
network YY.YY.43.254 0.0.0.0 area 43
Verify: show ip ospf interface brief; show ip ospf neighbor
2.5 OSPF ABR
* Static routes are not permitted for this question
* inject a default route into area 0 area 11 area 34 area 43
* Use fewest number of steps or commands to completes this
RackYYR3:
Router ospf YY
area 11 nssa default-information-originate
default-information originate always
Verify: show ip route ospf; show ip ospf database
2.6 OSPF Summary
* Add the following interface on R2 to Area 0
* Loopback 22 180.88.22.254/24
* Loopback 32 180.88.32.254/24
* Loopback 47 180.88.47.254/24
* Summarize the above address into a single route
* Your summary route must be compact and not waste address space[M4]
* Verify the Summary is in the OSPF routing table on R5 and you can ping all the host address
* R3、Sw 1、Sw2都要做区域间汇总。[M5]
RackYYR2:
int lo22
ip address 180.88.22.254 255.255.255.0
int lo32
ip address 180.88.32.254 255.255.255.0
int lo47
ip address 180.88.47.254 255.255.255.0
Router ospf YY
network 180.88.0.0 0.0.63.255 area 0
这里我选择直接在3个loopback接口上使用IOS12.4版本后支持的接口宣告ospf的方法。即快捷,又不会出错。
RackYYR3/Sw1/Sw2:
Router ospf YY
area 0 range 180.88.0.0 255.255.192.0
Verify; show ip ospf; show ip route ospf; show ip ospf database
(只要在OSPF中公告的loop口,ip add是24位的,我全用的是点到点类型)
2.7 RIP version 2
* Advertise all the individual YY.YY.0.0 network prefixes generated within your lab topology to backbone 1
* Instruct the backbone 1 router that your networks are 5 hops away[M6]
* Filter all other prefixes to backbone 1
RackYYR4:
Access-list 4 per YY.YY.0.0 0.0.255.255
Router rip
Redistribute ospf yy metric 1
Offset-list 4 out 4 g0/0
Distribute-list 4 out g0/0
Verify: debug ip rip
这个地方, 我用方法2: router rip
Redistribute os 8 metric 5 route-map fromOSPF
Route-map fromOSPF per 10
Match ip add prefix-list fromOSPF
Ip prefix-list fromOSPF per 8.8.0.0/16 le 32
使用一个重分发的命令就解决了3个需求。我们的口号是用最少的策略解决问题,让router的CPU消耗降到最低。并且注入到RIP database里的路由也只有8.8.0.0/16内的了。
或者使用我的方法3 : router rip
Redis os 8 route-map fromOSPF
Default-metric 5
Route-map fromOSFP per 10
Match ip add fromOSPF
Ip access-list standard fromOSPF
Per 8.8.0.0 0.0.255.255
或者使用我的方法4 : router rip
Redis os 8 route-map fromOSPF
Route-map fromOSPF per 10
Set metric 5
Distribute-list prefix fromOSPF out os 8
Ip prefix-list fromOSPF per 8.8.0.0/16 le 32
源的方法最烂; 让router执行了3次策略才完成了需求。
2.8 EIGRP
* EIGRP 100 AS 100 consists of the following interface
* The Frame Relay network between R1 and R6
* Loopback0 on R1 and R6
* The BB2 interface on R6 should appear as an external EIGRP route on R1[M7]
* R6 must have a single 16 bit prefix via R1 to the YY.YY.0.0 network. Do not use route filters or automatic summary[M8]
* Redistribute EIGRP routes into ospf area
RackYYR1:
Ip prefix-list eto per YY.YY.0.0/16
Route-map eto deny 10
Match ip add pre eto
Route-map eto per 20
[M9]
ip prefix-list ote seq 5 permit 0.0.0.0/0
route-map ote deny 10
match ip address prefix-list ote
route-map ote permit 20
[M10]
Router eigrp 100
No au
Net YY.YY.16.1 0.0.0.0
Net YY.YY.1.1 0.0.0.0
Redistribute ospf YY metric 10000 100 255 1 1500 route-map ote
Router os yy
Redistribute eigrp 100 subnets metric-type 1 route-map eto [M11]
Int s0/0/0
Ip summary ei 100 YY.YY.0.0 255.255.0.0 [M12]
 
RackYYR6:
Route-map con per 10
Match interface E0/1
Router eigrp 100
No au
Net YY.YY.16.6 0.0.0.0
Net YY.YY.6.6 0.0.0.0
Redistribute connected route-map CON metric 10000 100 255 1 1500
Verify: show ip protocol; show ip route eigrp; show ip route ospf;
2.9 EIGRP over BB3
* The backbone 3 router will be sending some class A,B and C IP prefixes
* Create a prefix-list and apply it so that the EIGRP process will only accept prefixes in the class C address might on the routing table
* Deny all routes to BB3
(这里要注意到first octet=192-200)
前缀列表 访问列表
A:0.0.0.0/1 le 32 0.0.0.0 127.255.255.255
B:128.0.0.0/2 le 32 128.0.0.0 63.255.255.255
C:192.0.0.0/3 le 32 192.0.0.0 31.255.255.255
RackYYR6:
Ip prefix-list fbb3 per 192.0.0.0/5 le 32
Ip prefix-list fbb3 per 200.0.0.0/8 le 32
Ip prefix-list tbb3 deny 0.0.0.0/0 le 32
Router eigrp 100
Net 150.3.YY.1 0.0.0.0
Distribute-list prefix fbb3 in F0/0
Distribute-list prefix tbb3 out F0/0
Verify: show ip protocol; show ip route eigrp
2.10 IPV6
R1 G0/1 2033:YY:YY:21::1
S0/0/0 2033:YY:YY:16::1(FE80::217:94FF:FE15:8C90)
R6 f0/1 2033:YY:YY:62::6
S0/3/0 2033:YY:YY:16::6(FE80::215:C6FF:FE4A:6210)
All the interface run OSPF v3
RackYYR1#show ipv6 interface brief
Gi0/0 [up/up]
FE80::ZZZZ:ZZZZ:ZZZZ //link-local address
2038:YY:YY:11::1
Serial0/0/0 [up/up]
FE80::ZZZZ:ZZZZ:ZZZZ
2038:YY:YY:61::1
RackYYR6#show ipv6 interface brief
Gi0/0 [up/up]
FE80::ZZZZ:ZZZZ:ZZZZ
2038:YY:YY:66::6
Serial0/0/0 [up/up]
FE80::ZZZZ:ZZZZ:ZZZZ
2038:YY:YY:61::6
RackYYR1#show ipv6 route
IPv6 Routing Table -7 entries
Codes: C -Connected, L -Local, S -Static, R -RIP, B -BGP U -Per-user Static route I1 -ISIS L1, I2 -ISIS L2, IA – ISIS inte area, IS -ISIS summary O – OSPF intr OI – OSPF inter, OE1 – OSPF ext 1, OE2 -OSPF ext 2 ON1 – OSPF NSSA ext 1, ON2 – OSPF NSSA ext 2
C 2038:YY:YY:11::/64 [0/0]
 via ::, Gi0/0
L 2038:YY:YY:11::1/128 [0/0]
 via ::, Gi0/0
C 2038:YY:YY:61::/64 [0/0]
 via ::, Serial0/0/0
L 2038:YY:YY:61::1/128 [0/0]
 via ::, Serial0/0/0
O 2038:YY:YY:66::/64 [110/65]
 via FE80::ZZZZ:ZZZZ:ZZZZ, Serial0/0/0
L FE80::/10 [0/0]
 via ::, Null0
L FF00::/8 [0/0]
 via ::, Null0
 
RackYYR6#show ipv6 route
IPv6 Routing Table -7 entries Codes: C -Connected, L -Local, S -Static, R -RIP, B -BGP U -Per-user Static route I1 -ISIS L1, I2 -ISIS L2, IA -ISIS inter area, IS -ISIS summary O – OSPF intra, OI – OSPF inter, OE1 – OSPF ext 1, OE2 -OSPF ext 2 ON1 – OSPF NSSA ext 1, ON2 – OSPF NSSA ext 2
O 2038:YY:YY:11::/64 [110/65]
 via FE80::ZZZZ:ZZZZ:ZZZZ, Serial0/0
C 2038:YY:YY:61::/64 [0/0]
 via ::, Serial0/0/0
L 2038:YY:YY:61::6/128 [0/0]
 via ::, Serial0/0/0
C 2038:YY:YY:66::/64 [0/0]
 via ::, Gi0/0
L 2038:YY:YY:66::6/128 [0/0]
 via ::, Gi0/0
L FE80::/10 [0/0]
 via ::, Null0
L FF00::/8 [0/0]
 via ::, Null0
 
RackYYR1:
ipv6 unicast-routing
ipv6 Router ospf YY
 Router-id YY.YY.1.1
interface Serial0/0/0
 ipv6 address 2033:YY:YY:16::1/64
 ipv6 ospf network point-to-point
 ipv6 ospf 8 area 0
 Frame-Relay map ipv6 2038:YY:YY:16::6 106 broadcast
 Frame-Relay map ipv6 "link_local" 106 broadcast
interface g0/1
 ipv6 address 2033:YY:YY:21::1/64
 ipv6 ospf 1 area 0
 
RackYYR6:
ipv6 unicast-routing
ipv6 Router ospf YY
 Router-id YY.YY.6.6
interface Serial0/0/0
 ipv6 address 2033:YY:YY:16::6/64
 ipv6 ospf network point-to-point
 ipv6 ospf 6 area 0
 Frame-Relay map ipv6 2033:YY:YY:16::1 601 broadcast
 Frame-Relay map ipv6 "link_local" 601 broadcast
interface g0/1
 ipv6 address 2033:YY:YY:62::6/64
 Ipv6 ospf 6 area 0
Verify: show ipv6 interface brief; show ipv6 route
BGP
* R1: Loopback 200: 200.1YY.101.1/32
* R2: Loopback 200: 200.1YY.102.1/32
* R3: Loopback 200: 200.YY.3.1/32
* R4: Loopback 200: 200.YY.4.1/32
* R5: Loopback 200: 200.YY.5.1/32
* R6: Loopback 200: 200.1YY.106.1/32
7.1 IBGP
* Configure IBGP as follows
* AS YY: Configure only R3 R4,and R5 to be part of the AS YY ,R3 is the Route-Reflector for this AS
* AS 1YY:Configure only R1,R2 and R6 to be part of the AS 1YY. Don’t configure RR or confederation in the AS
* You can use any IP address to form the IBGP peers
* Advertise the loopback 200 on all BGP routers through BGP and make sure you are able to ping these loopbacks from inside each AS
* Loopback 200:
* AS YY: 200.YY.X.1/32
* AS 1YY:200:1YY.10X.1/32
RackYYR3:
Router bgp YY
no auto-summary
no synchronization
bgp Router-id YY.YY.3.3
network 200.YY.3.1 mask 255.255.255.255
neighbor YY.YY.4.4 remote-as YY
neighbor YY.YY.4.4 update-source loop0
neighbor YY.YY.4.4 route-reflector-client
neighbor YY.YY.5.5 remote-as yy
neighbor YY.YY.5.5 update-source loop0
neighbor YY.YY.5.5 route-reflector-client
 
RackYYR4:
Router bgp YY
no auto-summary
no synchronization
bgp Router-id YY.YY.4.4
network 200.YY.4.1 mask 255.255.255.255
neighbor YY.YY.3.3 remote-as YY
neighbor YY.YY.3.3 update-source Loopback0
 
RackYYR5:
Router bgp YY
no auto-summary
no synchronization
bgp Router-id YY.YY.5.5
network 200.YY.5.1 mask 255.255.255.255
neighbor YY.YY.3.3 remote-as YY
neighbor YY.YY.3.3 update-source Loopback0
如果用peer-group,配置如下:
RACK08R3#router bgp 8
no synchronization
bgp router-id 8.8.3.3
bgp log-neighbor-changes
network 200.8.3.1 mask 255.255.255.255
neighbor zhenglei peer-group
neighbor zhenglei remote-as 8
neighbor zhenglei update-source Loopback0
neighbor zhenglei route-reflector-client
neighbor 8.8.4.4 peer-group zhenglei
neighbor 8.8.5.5 peer-group zhenglei
no auto-summary
 
RackYYR1:
Router bgp 10YY
no auto-summary
no synchronization
bgp Router-id YY.YY.1.1
network 200.1YY.101. 1 mask 255.255.255.255
neighbor YY.YY.2.2 remote-as 10YY
neighbor YY.YY.2.2 update-source Loopback0
neighbor YY.YY.6.6 remote-as 10YY
neighbor YY.YY.6.6 update-source Loopback0
 
RackYYR2:
Router bgp 10YY
no auto-summary
no synchronization
bgp Router-id YY.YY.2.2
network 200.1YY.102.1 mask 255.255.255.255
neighbor YY.YY.1.1 remote-as 10YY
neighbor YY.YY.1.1 update-source Loopback0
neighbor YY.YY.6.6 remote as 10YY
neighbor YY.YY.6.6 update-source Loopback0
 
RackYYR6:
Router bgp 10YY
no auto-summary
no synchronization
bgp Router-id YY.YY.6..6
network 200.1YY.106.1 mask 255.255.255.255
neighbor YY.YY.1.1 remote-as 10YY
neighbor YY.YY.1.1 update-source Loopback0
neighbor YY.YY.2.2 remote-as 10YY
neighbor YY.YY.2.2 update-source Loopback0
Verify: show ip bgp summary; show ip bgp
7.2 EGP
Configure EBGP as follows
* R6 EBGP peers with BB2 IP address 150.2.YY.254 AS 254
* R1 EBGP peers with R3
* R2 EBGP peers with R3
* You can use any IP address to form the EBGP peers
* Make sure all routers in AS YY have the EBGP routes from AS 254 via 1YY on their BGP and IP routing tables. You do not need to ping these routes
* Make sure you are able to ping the loop back 200 from all BGP routers on both AS. You are permitted to use 4 static routes within minimum mask to fulfill this Requirement
RackYYR6:
Router bgp 10YY
neighbor 150.2.YY.254 remote-as 254
neighbor 150.2.YY.254 local-as YY no-prepend
 
RackYYR1:
Router bgp 10YY
neighbor YY.YY.3.3 remote-as YY
neighbor YY.YY.3.3 ebgp-multihop 255
neighbor YY.YY.3.3 update-source Loopback0
 
RackYYR2:
Router bgp 10YY
neighbor YY.YY.3.3 remote-as YY
neighbor YY.YY.3.3 ebgp-multihop 255
neighbor YY.YY.3.3 update-source Loopback0
 
RackYYR3:
Router bgp YY
Neighbor YY.YY.1.1 remote-as 10YY
Neighbor YY.YY.2.2 remote-as 10YY
Neighbor YY.YY.1.1 update-source loop0
Neighbor YY.YY.2.2 update-source loop0
Neighbor YY.YY.1.1 ebgp-multihop 255
Neighbor YY.YY.2.2 ebgp-multihop 255
 
RackYYSw1:
Ip route 200.1YY.100.0 255.255.252.0 valn 100
Ip route 200.1yy.106.1 255.255.255.255 Y.Y.1.1
RackYYSw2:
Ip route 200.1YY.100.0 255.255.252.0 valn 100
Ip route 200.1yy.106.1 255.255.255.255 Y.Y.1.1
[M13]Verify: show ip bgp; ping all lo200 in ASYY and AS1YY
7.3 Path Selection
* Configure R1 so it informs AS YY that the routes 200.1YY.101.1 and 200.1YY.106.1 are to preferable be reached via R1
* Configure R2 so it informs AS YY ,that the routes 200.1YY.102.1 are to preferable be reached via R2
* Route filtering is not permitted, DO NOT change any attributes coming from BGP AS 254
RackYYR1: ;
ip prefix-list r2loop seq 5 permit 200.1YY.102.1/32
route-map MED permit 10
match ip address prefix r2loop
set metric 100
route-map MED permit 20
Router bgp 10YY
neighbor YY.YY.3.3 route-map MED out
 
RackYYR2:
ip prefix-list r1r6loop per 200.1yy.101.1/32
ip prefix-list r1r6loop per 200.1yy.106.1/32
route-map MED permit 10
match ip address prefix r1r6loop
set metric 100
route-map MED permit 20
Router bgp 10YY
neighbor YY.YY.3.3 route-map MED out
 
RackYYR6:
Router bgp 10YY
Neighbor YY.YY.1.1 send-community
Neighbor YY.YY.2.2 send-community
 
RackYYR1:
Router bgp 10YY
Neighbor YY.YY.2.2 send-community
Neighbor YY.YY.3.3 send-community
 
RackYYR2:
Router bgp 10YY
Neighbor YY.YY.1.1 send-community
Neighbor YY.YY.3.3 send-community
 
RackYYR3:
Router bgp YY
Neighbor YY.YY.4.4 send-community
Neighbor YY.YY.5.5 send-community
Verify:show ip bgp; show ip bgp community
第三部分: IP Feature
(组播8分,安全8分,QOS8分,IP特性8分,合计32分)
IP IOS feature
3.1 Exception handling
* Configure R4 to enable exception handling
* Filename:R4-DUMP Username:ccie Password:cisco
* Ftp address: 150.1.YY.254
RackYYR4:
ip ftp username ccie
ip ftp password cisco
exception protocol ftp
exception dump150.1.YY.254
exception corefile R4-DUMP
3.2 System logging
? Buffer alert critical emergencies and error
? Set the buffer size to 8192
? Indicate the date and time for each logged entry
RackYYR5:
logging on
logging buffered 8192 errors
clock timezone GMT 8
clock set hh:mm:ss month year
service timestamps log datetime local-time year show-timezone
Verify: show logging;
(所有设备的时间好像是都预先配置好的,我最后看到所有的设备都一个时间,和windows的时间相差无几)
3.3 DHCP
* Configure R5 to provide the following parameters for DHCP client on VLAN_55
* IP address
* DNS server YY.YY.55.60 and YY.YY.55.67
* Domain:cisco.com
* Default gateway
* Hosts must retain DHCP assigned address 10 days
* Permit only secure ARP entries to be installed in R5"s ARP table
RackYYR5:
Service dhcp
ip dhcp excluded address YY.YY.55.254
ip dhcp excluded address YY.YY.55.60
ip dhcp excluded address YY.YY.55.67
ip dhcp pool cisco
network YY.YY.55.0 255.255.255.0
default-router YY.YY.55.254
dns-server YY.YY.55.60 YY.YY.55.67
domain-name ccie.com
lease 10
update arp
Security
6.1 Tracing Traffic Source to Device under Attack
* It is suspected that Dos attack is being launched at host 150.3.YY.254 select an appropriate device to configure so that you can start tracing the source of this attack.
* Your solution must meet the following criteria
* The result of the trace must be sent to syslog once a day
* This device is limited to trace to one IP address only
* DO NOT configure ACL to achieve this
RackYYR5:
ip source-track 150.1.YY.254
ip source-track address-limit 1
ip source-track syslog-interval 1440
Verify: show ip source-track; show ip source-track
6.2 IP Fragment Attacking
* R4上收到了一个来自BB1,源是随要地址的攻击,目的地是一个web服务器:10.1.Y.5要求
* R4阻止这些攻击流量,并允许其他流量通过
Rack11R4:
ip access-list extended FRAGMENT
deny ip any host 10.1.yy.5 fragment
permit ip any any
int g0/0
ip access-group FRAGMENT in
6.3 Catalyst Security
* On Sw1-Fa0/7 configure 802.1.x authentication meeting the following When clients that do not
RackYYSw1:
aaa new-model
aaa authentication dot1x default group radius
aaa authorization network default group radius
dot1x system-auth-control
dot1x guest-vlan supplicant
int Fa0/7
Switchport mode access
dot1x port-control auto
dot1x guest-vlan 55
dot1x host-mode multi-host
Verify: show dot1x all; show dot1x interface interface-id details
QOS
4.1 Congestion Avoidance Notication
* Configure R1-S0/0/0 such that is out bound traffic has utilized 75% of total bandwidth.
* R1 should sign that the network is congested and the recipients need to slow down sending packets.
* DO NOT configure Frame Relay BECN or FECN for this question
RackYYR1:
Ip tcp ecn
Policy-map QOS
class class-default
bandwidth percent 75
random-detect
random-detect ecn
interface s0/0/0
no random-detect
service-policy output QOS
Verify: show policy-map interface interface-id
4.2 Traffic policing
* Client on VLAN_BB1 and VLAN_55 access a URL located on VLAN_BB2 frequently. This URL is http://www.this website.com/directory.
* Select one suitable router to configure, so as to conserve bandwidth meeting the following criteria.
* Traffic from this URL back to these clients should not exceed 640000 bits per second.
* If the files download from this URL are image file then drop the traffic
* You may assume image the names end with the suffix:*.gif*.jpg or *.jpeg
RackYYR6:
ip cef
ip access-list extended TRAFFIC
permit ip 150.2.YY.0 0.0.0.255 150.1.YY.0 0.0.0.255
permit ip 150.2.YY.0 0.0.0.255 YY.YY.55.0 0.0.0.255
class-map match-all url
match access-group name TRAFFIC
match protocol http host www.thiSwebsite.com
match protocol http url /directory /*
class-map match-all pic
match class-map url
match protocol http url *.jpg|*.jpeg|*.gif
policy-map NBAR
class pic
drop
class url
police cir 64000
interface Gi0/1
service-policy input NBAR
ip nbar protocol-discovery
Verify: show policy-map interface interface-id
4.3 Discard Eligible and Traffic Shaping
* The Frame Relay link on R5 is experiencing heavy congesting. Configure R5 so that the Frame Relay provider does not drop any routing protocol packets during
* congesting and if the number of packets in R5"s Frame Relay interface queue exceeds 10,then the traffic rate will reduced to 32000 bps.
RackYYR5:
access-list 105 deny ospf any any
access-list 105 deny tcp any eq 179 any
access-list 105 deny tcp any any eq 179
access-list 105 deny pim any any
access-list 105 permit ip any any
frame-relay de-list 1 protocol ip list 105
interface s0/0.5
frame-relay de-group 1 503
map-class frame-relay FRTS
Frame-Relay adaptive-shaping interface-congestion 10
Frame-Relay mincir 32000
interface Serial0/0
Frame-Relay traffic-shaping
interface Serial0/0.5
Frame-Relay interface-dlci 503
class FRTS
Verify: show frame-relay pvc dlci
Multicast
5.1 Sparse Mode Multicasting
* There is a multicast source for group 224.2.2.2 located at VLAN_BB2 and another source for group 224.3.3.3 located at VLAN_BB3.There are clients on VLAN_55 that would like to access these two groups.
* Configure R5,R3, Sw1,R1 and R6 to meet the following requirements
* Configure all devices using sparse mode
* R1 will be the RP for both multicast groups and R3 will be backup RP. Use the most reliable way to achieve this objective and do not configure RP information statically
* R5 needs to be able to ping both 224.2.2.2 and 224.3.3.3
RackYYR6:
ip multicast-routing
int g0/1
ip pim sparse-mode
ip igmp join-group 224.2.2.2 (这是预配置)
int g0/0
ip pim sparse-mode
ip igmp join-group 224.3.3.3 (这是预配置)
int s0/0/0
ip pim sparse-mode
ip pim nbma-mode
 
RackYYR1:
ip multicast-routing
int s0/0/0
ip pim sparse-mode
ip pim nbma-mode
int g0/0
ip pim sparse-mode
int lo200
ip pim sparse-mode
ip pim send-rp-ann LO200 sco 10 group-list 11
ip pim send-rp-dis LO200 sco 10
access-list 11 per 224.2.2.2
access-list 11 per 224.3.3.3
RackYYSw1:
ip multicast-routing
int VLAN 100
ip pim sparse-mode
int Fa0/3
ip pim sparse-mode
 
RackYYR3:
ip multicast routing
int g0/0
ip pim sparse-mode
int s0/0/0.3
ip pim sparse-mode
ip pim nbma-mode
ip pim dr-priority 200
int lo0
ip pim sparse-mode
ip pim send-rp-ann Loopback0 sco 10 group-list 33
ip pim send-rp-dis Loopback0 sco 10
access-list 33 permit 224.2.2.2
access-list 33 permit 224.3.3.3
RackYYR5:
ip multicast-routing
int s0/0/0.5
ip pim sparse-mode
ip pim nbma-mode
 
int g0/0
ip pim sparse-mode
Verify: show ip pim neighbor; show ip pim rp mapping; R5 ping group addresses 224.2.2.2 and 224.3.3.3;
5.2 Defense against Multicast Dos Attack
* There is a concern that hacker launch Dos attack against R5 with multicast group membership traffic. Configure R5 so that accept only 100 IGMP reports at any time but this limit does not apply to the group 224.3.3.3.
RackYYR5:
ip access-list extended 105
permit igmp any host 224.3.3.3
int g0/0
ip igmp limit 110 except 105
Verify: show ip igmp interface interface-id
[M1]使用前缀列表,只允许特定网段进入RIP
[M2]重分布RIP进OSPF时,度量值为加和,M-2是OSPF重新计算的度量值
[M3]Nssa
[M4]180.88.0.0/18
[M5]区域间通告汇总路由
[M6]考虑偏移列表无法使用前缀列表,这里使用访控进行定义
[M7]重分布
直连接口
[M8]作接口上对R6的汇总路由,.并利用路由图拒绝掉到OSPF汇总路由
[M9]过滤EIGRP到OSPF区域里的YY.YY.0.0/16的汇总路由
[M10]过滤掉由R3产生的单条汇总0.0.0.0,同时允许其它的明细路由
[M11]从EIGRP100中过滤掉YY.YY.0.0/16的汇总路由条目到OSPF YY
[M12]接口汇总,将所有通告给R6的YY.YY.0.0的路由汇总为单条路由.(并过滤其网段的明细路由)
[M13]

3. 1 Congestion Avoidance Notication
* Configure R1-S0/0/0 such that is out bound traffic has utilized 75% of total bandwidth.
* R1 should sign that the network is congested and the recipients need to slow down sending packets.
* DO NOT configure Frame Relay BECN or FECN for this question
RackYYR1:
Ip tcp ecn
Policy-map QOS
class class-default
bandwidth percent 75
random-detect
random-detect ecn
interface s0/0/0
no random-detect
service-policy output QOS
Verify: show policy-map interface interface-id
4.2 Traffic policing
* Client on VLAN_BB1 and VLAN_55 access a URL located on VLAN_BB2 frequently. This URL is http://www.this website.com/directory.
* Select one suitable router to configure, so as to conserve bandwidth meeting the following criteria.
* Traffic from this URL back to these clients should not exceed 640000 bits per second.
* If the files download from this URL are image file then drop the traffic
* You may assume image the names end with the suffix:*.gif*.jpg or *.jpeg
RackYYR6:
ip cef
ip access-list extended TRAFFIC
permit ip 150.2.YY.0 0.0.0.255 150.1.YY.0 0.0.0.255
permit ip 150.2.YY.0 0.0.0.255 YY.YY.55.0 0.0.0.255
class-map match-all url
match access-group name TRAFFIC
match protocol http host www.thiSwebsite.com
match protocol http url /directory /*
class-map match-all pic
match class-map url
match protocol http url *.jpg|*.jpeg|*.gif
policy-map NBAR
class pic
drop
class url
police cir 64000
interface Gi0/1
service-policy input NBAR
ip nbar protocol-discovery
Verify: show policy-map interface interface-id
4.3 Discard Eligible and Traffic Shaping
* The Frame Relay link on R5 is experiencing heavy congesting. Configure R5 so that the Frame Relay provider does not drop any routing protocol packets during
* congesting and if the number of packets in R5"s Frame Relay interface queue exceeds 10,then the traffic rate will reduced to 32000 bps.
RackYYR5:
access-list 105 deny ospf any any
access-list 105 deny tcp any eq 179 any
access-list 105 deny tcp any any eq 179
access-list 105 deny pim any any
access-list 105 permit ip any any
frame-relay de-list 1 protocol ip list 105
interface s0/0.5
frame-relay de-group 1 503
map-class frame-relay FRTS
Frame-Relay adaptive-shaping interface-congestion 10
Frame-Relay mincir 32000
interface Serial0/0
Frame-Relay traffic-shaping
interface Serial0/0.5
Frame-Relay interface-dlci 503
class FRTS
Verify: show frame-relay pvc dlci
Multicast
5.1 Sparse Mode Multicasting
* There is a multicast source for group 224.2.2.2 located at VLAN_BB2 and another source for group 224.3.3.3 located at VLAN_BB3.There are clients on VLAN_55 that would like to access these two groups.
* Configure R5,R3, Sw1,R1 and R6 to meet the following requirements
* Configure all devices using sparse mode
* R1 will be the RP for both multicast groups and R3 will be backup RP. Use the most reliable way to achieve this objective and do not configure RP information statically
* R5 needs to be able to ping both 224.2.2.2 and 224.3.3.3
RackYYR6:
ip multicast-routing
int g0/1
ip pim sparse-mode
ip igmp join-group 224.2.2.2 (这是预配置)
int g0/0
ip pim sparse-mode
ip igmp join-group 224.3.3.3 (这是预配置)
int s0/0/0
ip pim sparse-mode
ip pim nbma-mode
 
RackYYR1:
ip multicast-routing
int s0/0/0
ip pim sparse-mode
ip pim nbma-mode
int g0/0
ip pim sparse-mode
int lo200
ip pim sparse-mode
ip pim send-rp-ann LO200 sco 10 group-list 11
ip pim send-rp-dis LO200 sco 10
access-list 11 per 224.2.2.2
access-list 11 per 224.3.3.3
RackYYSw1:
ip multicast-routing
int VLAN 100
ip pim sparse-mode
int Fa0/3
ip pim sparse-mode
 
RackYYR3:
ip multicast routing
int g0/0
ip pim sparse-mode
int s0/0/0.3
ip pim sparse-mode
ip pim nbma-mode
ip pim dr-priority 200
int lo0
ip pim sparse-mode
ip pim send-rp-ann Loopback0 sco 10 group-list 33
ip pim send-rp-dis Loopback0 sco 10
access-list 33 permit 224.2.2.2
access-list 33 permit 224.3.3.3
RackYYR5:
ip multicast-routing
int s0/0/0.5
ip pim sparse-mode
ip pim nbma-mode
 
int g0/0
ip pim sparse-mode
Verify: show ip pim neighbor; show ip pim rp mapping; R5 ping group addresses 224.2.2.2 and 224.3.3.3;
5.2 Defense against Multicast Dos Attack
* There is a concern that hacker launch Dos attack against R5 with multicast group membership traffic. Configure R5 so that accept only 100 IGMP reports at any time but this limit does not apply to the group 224.3.3.3.
RackYYR5:
ip access-list extended 105
permit igmp any host 224.3.3.3
int g0/0
ip igmp limit 110 except 105
Verify: show ip igmp interface interface-id
[M1]使用前缀列表,只允许特定网段进入RIP
[M2]重分布RIP进OSPF时,度量值为加和,M-2是OSPF重新计算的度量值
[M3]Nssa
[M4]180.88.0.0/18
[M5]区域间通告汇总路由
[M6]考虑偏移列表无法使用前缀列表,这里使用访控进行定义
[M7]重分布
直连接口
[M8]作接口上对R6的汇总路由,.并利用路由图拒绝掉到OSPF汇总路由
[M9]过滤EIGRP到OSPF区域里的YY.YY.0.0/16的汇总路由
[M10]过滤掉由R3产生的单条汇总0.0.0.0,同时允许其它的明细路由
[M11]从EIGRP100中过滤掉YY.YY.0.0/16的汇总路由条目到OSPF YY
[M12]接口汇总,将所有通告给R6的YY.YY.0.0的路由汇总为单条路由.(并过滤其网段的明细路由)
[M13]

4. 1 Exception handling
* Configure R4 to enable exception handling
* Filename:R4-DUMP Username:ccie Password:cisco
* Ftp address: 150.1.YY.254
RackYYR4:
ip ftp username ccie
ip ftp password cisco
exception protocol ftp
exception dump150.1.YY.254
exception corefile R4-DUMP
3.2 System logging
? Buffer alert critical emergencies and error
? Set the buffer size to 8192
? Indicate the date and time for each logged entry
RackYYR5:
logging on
logging buffered 8192 errors
clock timezone GMT 8
clock set hh:mm:ss month year
service timestamps log datetime local-time year show-timezone
Verify: show logging;
(所有设备的时间好像是都预先配置好的,我最后看到所有的设备都一个时间,和windows的时间相差无几)
3.3 DHCP
* Configure R5 to provide the following parameters for DHCP client on VLAN_55
* IP address
* DNS server YY.YY.55.60 and YY.YY.55.67
* Domain:cisco.com
* Default gateway
* Hosts must retain DHCP assigned address 10 days
* Permit only secure ARP entries to be installed in R5"s ARP table
RackYYR5:
Service dhcp
ip dhcp excluded address YY.YY.55.254
ip dhcp excluded address YY.YY.55.60
ip dhcp excluded address YY.YY.55.67
ip dhcp pool cisco
network YY.YY.55.0 255.255.255.0
default-router YY.YY.55.254
dns-server YY.YY.55.60 YY.YY.55.67
domain-name ccie.com
lease 10
update arp
Security
6.1 Tracing Traffic Source to Device under Attack
* It is suspected that Dos attack is being launched at host 150.3.YY.254 select an appropriate device to configure so that you can start tracing the source of this attack.
* Your solution must meet the following criteria
* The result of the trace must be sent to syslog once a day
* This device is limited to trace to one IP address only
* DO NOT configure ACL to achieve this
RackYYR5:
ip source-track 150.1.YY.254
ip source-track address-limit 1
ip source-track syslog-interval 1440
Verify: show ip source-track; show ip source-track
6.2 IP Fragment Attacking
* R4上收到了一个来自BB1,源是随要地址的攻击,目的地是一个web服务器:10.1.Y.5要求
* R4阻止这些攻击流量,并允许其他流量通过
Rack11R4:
ip access-list extended FRAGMENT
deny ip any host 10.1.yy.5 fragment
permit ip any any
int g0/0
ip access-group FRAGMENT in
6.3 Catalyst Security
* On Sw1-Fa0/7 configure 802.1.x authentication meeting the following When clients that do not
RackYYSw1:
aaa new-model
aaa authentication dot1x default group radius
aaa authorization network default group radius
dot1x system-auth-control
dot1x guest-vlan supplicant
int Fa0/7
Switchport mode access
dot1x port-control auto
dot1x guest-vlan 55
dot1x host-mode multi-host
Verify: show dot1x all; show dot1x interface interface-id details
QOS
4.1 Congestion Avoidance Notication
* Configure R1-S0/0/0 such that is out bound traffic has utilized 75% of total bandwidth.
* R1 should sign that the network is congested and the recipients need to slow down sending packets.
* DO NOT configure Frame Relay BECN or FECN for this question
RackYYR1:
Ip tcp ecn
Policy-map QOS
class class-default
bandwidth percent 75
random-detect
random-detect ecn
interface s0/0/0
no random-detect
service-policy output QOS
Verify: show policy-map interface interface-id
4.2 Traffic policing
* Client on VLAN_BB1 and VLAN_55 access a URL located on VLAN_BB2 frequently. This URL is http://www.this website.com/directory.
* Select one suitable router to configure, so as to conserve bandwidth meeting the following criteria.
* Traffic from this URL back to these clients should not exceed 640000 bits per second.
* If the files download from this URL are image file then drop the traffic
* You may assume image the names end with the suffix:*.gif*.jpg or *.jpeg
RackYYR6:
ip cef
ip access-list extended TRAFFIC
permit ip 150.2.YY.0 0.0.0.255 150.1.YY.0 0.0.0.255
permit ip 150.2.YY.0 0.0.0.255 YY.YY.55.0 0.0.0.255
class-map match-all url
match access-group name TRAFFIC
match protocol http host www.thiSwebsite.com
match protocol http url /directory /*
class-map match-all pic
match class-map url
match protocol http url *.jpg|*.jpeg|*.gif
policy-map NBAR
class pic
drop
class url
police cir 64000
interface Gi0/1
service-policy input NBAR
ip nbar protocol-discovery
Verify: show policy-map interface interface-id
4.3 Discard Eligible and Traffic Shaping
* The Frame Relay link on R5 is experiencing heavy congesting. Configure R5 so that the Frame Relay provider does not drop any routing protocol packets during
* congesting and if the number of packets in R5"s Frame Relay interface queue exceeds 10,then the traffic rate will reduced to 32000 bps.
RackYYR5:
access-list 105 deny ospf any any
access-list 105 deny tcp any eq 179 any
access-list 105 deny tcp any any eq 179
access-list 105 deny pim any any
access-list 105 permit ip any any
frame-relay de-list 1 protocol ip list 105
interface s0/0.5
frame-relay de-group 1 503
map-class frame-relay FRTS
Frame-Relay adaptive-shaping interface-congestion 10
Frame-Relay mincir 32000
interface Serial0/0
Frame-Relay traffic-shaping
interface Serial0/0.5
Frame-Relay interface-dlci 503
class FRTS
Verify: show frame-relay pvc dlci
Multicast
5.1 Sparse Mode Multicasting
* There is a multicast source for group 224.2.2.2 located at VLAN_BB2 and another source for group 224.3.3.3 located at VLAN_BB3.There are clients on VLAN_55 that would like to access these two groups.
* Configure R5,R3, Sw1,R1 and R6 to meet the following requirements
* Configure all devices using sparse mode
* R1 will be the RP for both multicast groups and R3 will be backup RP. Use the most reliable way to achieve this objective and do not configure RP information statically
* R5 needs to be able to ping both 224.2.2.2 and 224.3.3.3
RackYYR6:
ip multicast-routing
int g0/1
ip pim sparse-mode
ip igmp join-group 224.2.2.2 (这是预配置)
int g0/0
ip pim sparse-mode
ip igmp join-group 224.3.3.3 (这是预配置)
int s0/0/0
ip pim sparse-mode
ip pim nbma-mode
 
RackYYR1:
ip multicast-routing
int s0/0/0
ip pim sparse-mode
ip pim nbma-mode
int g0/0
ip pim sparse-mode
int lo200
ip pim sparse-mode
ip pim send-rp-ann LO200 sco 10 group-list 11
ip pim send-rp-dis LO200 sco 10
access-list 11 per 224.2.2.2
access-list 11 per 224.3.3.3
RackYYSw1:
ip multicast-routing
int VLAN 100
ip pim sparse-mode
int Fa0/3
ip pim sparse-mode
 
RackYYR3:
ip multicast routing
int g0/0
ip pim sparse-mode
int s0/0/0.3
ip pim sparse-mode
ip pim nbma-mode
ip pim dr-priority 200
int lo0
ip pim sparse-mode
ip pim send-rp-ann Loopback0 sco 10 group-list 33
ip pim send-rp-dis Loopback0 sco 10
access-list 33 permit 224.2.2.2
access-list 33 permit 224.3.3.3
RackYYR5:
ip multicast-routing
int s0/0/0.5
ip pim sparse-mode
ip pim nbma-mode
 
int g0/0
ip pim sparse-mode
Verify: show ip pim neighbor; show ip pim rp mapping; R5 ping group addresses 224.2.2.2 and 224.3.3.3;
5.2 Defense against Multicast Dos Attack
* There is a concern that hacker launch Dos attack against R5 with multicast group membership traffic. Configure R5 so that accept only 100 IGMP reports at any time but this limit does not apply to the group 224.3.3.3.
RackYYR5:
ip access-list extended 105
permit igmp any host 224.3.3.3
int g0/0
ip igmp limit 110 except 105
Verify: show ip igmp interface interface-id
[M1]使用前缀列表,只允许特定网段进入RIP
[M2]重分布RIP进OSPF时,度量值为加和,M-2是OSPF重新计算的度量值
[M3]Nssa
[M4]180.88.0.0/18
[M5]区域间通告汇总路由
[M6]考虑偏移列表无法使用前缀列表,这里使用访控进行定义
[M7]重分布
直连接口
[M8]作接口上对R6的汇总路由,.并利用路由图拒绝掉到OSPF汇总路由
[M9]过滤EIGRP到OSPF区域里的YY.YY.0.0/16的汇总路由
[M10]过滤掉由R3产生的单条汇总0.0.0.0,同时允许其它的明细路由
[M11]从EIGRP100中过滤掉YY.YY.0.0/16的汇总路由条目到OSPF YY
[M12]接口汇总,将所有通告给R6的YY.YY.0.0的路由汇总为单条路由.(并过滤其网段的明细路由)
[M13]

5. 1 OSPF Bbackbones
* The link between Sw1 and Sw2
* All interface in VLAN_100 on Sw1 Sw2 R1 and R2
* R3 G0/0 and G0/1 and the fa0/3 on Sw1 and Sw2
* Loop back 0 interface on Sw1 Sw2 R2 and R3
* Verifying that all OSPF neighbor have built their adjacencies
RackYYR1:
Router ospf YY
network YY.YY.12.1 0.0.0.0 area 0
network YY.YY.21.1 0.0.0.0 area 0
 
RackYYR2:
Router ospf YY
network YY.YY.2.2 0.0.0.0 area 0
network YY.YY.12.2 0.0.0.0 area 0
network YY.YY.21.2 0.0.0.0 area 0
 
RackYYSw1:
Router ospf YY
network YY.YY.7.7 0.0.0.0 area 0
network YY.YY.12.254 0.0.0.0 area 0
network YY.YY.13.2 0.0.0.0 area 0
network YY.YY.100.1 0.0.0.0 area 0
 
RackYYSw2:
Router ospf YY
network YY.YY.8.8 0.0.0.0 area 0
network YY.YY.21.254 0.0.0.0 area 0
network YY.YY.31.2 0.0.0.0 area 0
network YY.YY.100.2 0.0.0.0 area 0
 
RackYYR3:
Router ospf YY
network YY.YY3.3 0.0.0.0 area 0
network YY.YY.13.1 0.0.0.0 area 0
network YY.YY.31.1 0.0.0.0 area 0
Verify: show ip ospf interface brief; show ip ospf neighbor
2.2 OSPF over NBMA
* OSPF area 11 consist of the follow interface and attributes
* The Frame Relay network between R3 R4 R5
* Loop back 0 on R4 and R5
* VLAN_55
* Ensure there is no DR/BDR
RackYYR3:
interface s0/0/0.3
ip ospf network point-to-multipoint non-broadcast
Router ospf YY
network YY.YY.11.3 0.0.0.0 area 11
nei YY.YY.11.4
nei YY.YY.11.5
 
RackYYR4:
interface s0/0/0.4
ip ospf network point-to-multipoint non-broadcast
Router ospf YY
network YY.YY.4.4 0.0.0.0 area 11
network YY.YY.11.4 0.0.0.0 area 11
RackYYR5:
interface s0/0/0.5
ip os net point-to-multipoint non-broadcast
Router ospf YY
network YY.YY.5.5 0.0.0.0 area 11
network YY.YY.11.5 0.0.0.0 area 11
network YY.YY.55.254 0.0.0.0 area 11
Verify: show ip ospf interface brief; show ip ospf neighbor
2.3 OSPF ASBR and RIP version 2
* Configure R4 to receive RIP v2 routes from Backbone 1
* When properly configured you will receives RIP v2 routes in the class B address range 199.172.Z.Z[M1]
* Configure R4 so that the external RIP routes are injected into area 11 and appear throughout that OSPF domain[M2]
* Ensure external routes originates from Autonomous Systems Boundary Routers (ASBR) outside area 11 cannot be flooded within the area[M3]
* Permit OSPF type-3 routes into area 11(在R5上看)
RackYYR4:
ip prefix-list fbb1 per 199.172.0.0/16 le 32
Router rip
version 2
no auto-summary
network 150.1.0.0
distribute-list prefix fbb1 in Fa0/0
Router ospf YY
redistribute rip metric-type 1 subnets
area 11 nssa
 
RackYYR3:
Router ospf YY
area 11 nssa
 
RackYYR5:
Router ospf YY
area 11 nssa
Verify: show ip protocol; show ip route rip; show ip ospf; show ip route ospf;
2.4 Area 34 and Area 43
* OSPF area 34 consists of the VLAN_200 interfaces on Sw1 and Sw3 and loopback 0 in Sw3
* OSPF area 43 consists of the VLAN_200 interfaces on Sw2 and Sw4 and loopback 0 in Sw4
RackYYSw1:
Router ospf YY
network YY.YY.34.1 0.0.0.0 area 34
 
RackYYSw2:
Router ospf YY
network YY.YY.43.1 0.0.0.0 area 43
 
RackYYSw3:
Router ospf YY
network YY.YY.9.9 0.0.0.0 area 34
network YY.YY.34.254 0.0.0.0 area 34
 
RackYYSw4:
Router ospf YY
network YY.YY.10.10 0.0.0.0 area 43
network YY.YY.43.254 0.0.0.0 area 43
Verify: show ip ospf interface brief; show ip ospf neighbor
2.5 OSPF ABR
* Static routes are not permitted for this question
* inject a default route into area 0 area 11 area 34 area 43
* Use fewest number of steps or commands to completes this
RackYYR3:
Router ospf YY
area 11 nssa default-information-originate
default-information originate always
Verify: show ip route ospf; show ip ospf database
2.6 OSPF Summary
* Add the following interface on R2 to Area 0
* Loopback 22 180.88.22.254/24
* Loopback 32 180.88.32.254/24
* Loopback 47 180.88.47.254/24
* Summarize the above address into a single route
* Your summary route must be compact and not waste address space[M4]
* Verify the Summary is in the OSPF routing table on R5 and you can ping all the host address
* R3、Sw 1、Sw2都要做区域间汇总。[M5]
RackYYR2:
int lo22
ip address 180.88.22.254 255.255.255.0
int lo32
ip address 180.88.32.254 255.255.255.0
int lo47
ip address 180.88.47.254 255.255.255.0
Router ospf YY
network 180.88.0.0 0.0.63.255 area 0
这里我选择直接在3个loopback接口上使用IOS12.4版本后支持的接口宣告ospf的方法。即快捷,又不会出错。
RackYYR3/Sw1/Sw2:
Router ospf YY
area 0 range 180.88.0.0 255.255.192.0
Verify; show ip ospf; show ip route ospf; show ip ospf database
(只要在OSPF中公告的loop口,ip add是24位的,我全用的是点到点类型)
2.7 RIP version 2
* Advertise all the individual YY.YY.0.0 network prefixes generated within your lab topology to backbone 1
* Instruct the backbone 1 router that your networks are 5 hops away[M6]
* Filter all other prefixes to backbone 1
RackYYR4:
Access-list 4 per YY.YY.0.0 0.0.255.255
Router rip
Redistribute ospf yy metric 1
Offset-list 4 out 4 g0/0
Distribute-list 4 out g0/0
Verify: debug ip rip
这个地方, 我用方法2: router rip
Redistribute os 8 metric 5 route-map fromOSPF
Route-map fromOSPF per 10
Match ip add prefix-list fromOSPF
Ip prefix-list fromOSPF per 8.8.0.0/16 le 32
使用一个重分发的命令就解决了3个需求。我们的口号是用最少的策略解决问题,让router的CPU消耗降到最低。并且注入到RIP database里的路由也只有8.8.0.0/16内的了。
或者使用我的方法3 : router rip
Redis os 8 route-map fromOSPF
Default-metric 5
Route-map fromOSFP per 10
Match ip add fromOSPF
Ip access-list standard fromOSPF
Per 8.8.0.0 0.0.255.255
或者使用我的方法4 : router rip
Redis os 8 route-map fromOSPF
Route-map fromOSPF per 10
Set metric 5
Distribute-list prefix fromOSPF out os 8
Ip prefix-list fromOSPF per 8.8.0.0/16 le 32
源的方法最烂; 让router执行了3次策略才完成了需求。
2.8 EIGRP
* EIGRP 100 AS 100 consists of the following interface
* The Frame Relay network between R1 and R6
* Loopback0 on R1 and R6
* The BB2 interface on R6 should appear as an external EIGRP route on R1[M7]
* R6 must have a single 16 bit prefix via R1 to the YY.YY.0.0 network. Do not use route filters or automatic summary[M8]
* Redistribute EIGRP routes into ospf area
RackYYR1:
Ip prefix-list eto per YY.YY.0.0/16
Route-map eto deny 10
Match ip add pre eto
Route-map eto per 20
[M9]
ip prefix-list ote seq 5 permit 0.0.0.0/0
route-map ote deny 10
match ip address prefix-list ote
route-map ote permit 20
[M10]
Router eigrp 100
No au
Net YY.YY.16.1 0.0.0.0
Net YY.YY.1.1 0.0.0.0
Redistribute ospf YY metric 10000 100 255 1 1500 route-map ote
Router os yy
Redistribute eigrp 100 subnets metric-type 1 route-map eto [M11]
Int s0/0/0
Ip summary ei 100 YY.YY.0.0 255.255.0.0 [M12]
 
RackYYR6:
Route-map con per 10
Match interface E0/1
Router eigrp 100
No au
Net YY.YY.16.6 0.0.0.0
Net YY.YY.6.6 0.0.0.0
Redistribute connected route-map CON metric 10000 100 255 1 1500
Verify: show ip protocol; show ip route eigrp; show ip route ospf;
2.9 EIGRP over BB3
* The backbone 3 router will be sending some class A,B and C IP prefixes
* Create a prefix-list and apply it so that the EIGRP process will only accept prefixes in the class C address might on the routing table
* Deny all routes to BB3
(这里要注意到first octet=192-200)
前缀列表 访问列表
A:0.0.0.0/1 le 32 0.0.0.0 127.255.255.255
B:128.0.0.0/2 le 32 128.0.0.0 63.255.255.255
C:192.0.0.0/3 le 32 192.0.0.0 31.255.255.255
RackYYR6:
Ip prefix-list fbb3 per 192.0.0.0/5 le 32
Ip prefix-list fbb3 per 200.0.0.0/8 le 32
Ip prefix-list tbb3 deny 0.0.0.0/0 le 32
Router eigrp 100
Net 150.3.YY.1 0.0.0.0
Distribute-list prefix fbb3 in F0/0
Distribute-list prefix tbb3 out F0/0
Verify: show ip protocol; show ip route eigrp
2.10 IPV6
R1 G0/1 2033:YY:YY:21::1
S0/0/0 2033:YY:YY:16::1(FE80::217:94FF:FE15:8C90)
R6 f0/1 2033:YY:YY:62::6
S0/3/0 2033:YY:YY:16::6(FE80::215:C6FF:FE4A:6210)
All the interface run OSPF v3
RackYYR1#show ipv6 interface brief
Gi0/0 [up/up]
FE80::ZZZZ:ZZZZ:ZZZZ //link-local address
2038:YY:YY:11::1
Serial0/0/0 [up/up]
FE80::ZZZZ:ZZZZ:ZZZZ
2038:YY:YY:61::1
RackYYR6#show ipv6 interface brief
Gi0/0 [up/up]
FE80::ZZZZ:ZZZZ:ZZZZ
2038:YY:YY:66::6
Serial0/0/0 [up/up]
FE80::ZZZZ:ZZZZ:ZZZZ
2038:YY:YY:61::6
RackYYR1#show ipv6 route
IPv6 Routing Table -7 entries
Codes: C -Connected, L -Local, S -Static, R -RIP, B -BGP U -Per-user Static route I1 -ISIS L1, I2 -ISIS L2, IA – ISIS inte area, IS -ISIS summary O – OSPF intr OI – OSPF inter, OE1 – OSPF ext 1, OE2 -OSPF ext 2 ON1 – OSPF NSSA

Pass4Side官方網站最新的350-001GB2312-LAB考古庫詳細信息

Sep 30 2009

Pass4Side 642-741 PDF考古題

Posted by admin in Cisco

Cisco認證642-741考試考古庫介紹

考試代號: 642-741
問題數量:62 Q&As

更新時間: 2009-09-30
註冊地點: Prometric/Pearson VUE
考古庫全稱:Implementing Cisco Unified Wireless Voice Networks

Cisco 642-741學習指南

Others認證 642-741考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。Cisco認證 642-741學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試642-741考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。Cisco認證 642-741是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的642-741考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他642-741考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師642-741試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加642-741考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費642-741考古庫Demo賞析

 
 
Exam : Cisco 642-741
Title : Implementing Cisco Unified Wireless Voice Networks

1. Which protocol is used by multicast to prevent loops?
A. OSPF
B. RIP
C. RPF
D. BGP
E. EIGRP
Answer: C

2. Which statement describes the WLCv5.2 delivery of a multicast packet from a wired PC source on VLAN_X to a respective wireless client using SSID_X, using a WLAN controller enabled for multicast?
A. A packet is delivered to Cisco WLC and forwarded via multicast to all of its associated APs, and finally to all wireless clients of that Cisco WLC, via wireless multicast.
B. A packet is delivered to Cisco WLC and forwarded via unicast to all of its associated APs, and finally to all wireless clients of that Cisco WLC, via wireless unicast.
C. A packet is delivered to Cisco WLC and forwarded via multicast to all of its associated APs, discarded at APs without SSID_X joined wireless clients, and forwarded at APs with SSID_X joined wireless clients via wireless multicast.
D. A packet is delivered to Cisco WLC and forwarded via unicast to all of its associated APs, discarded at APs without SSID_X joined wireless clients, and forwarded at APs with SSID_X joined wireless clients via wireless multicast.
E. A packet is delivered to Cisco WLC and forwarded via multicast to all of its associated APs, discarded at APs without SSID_X joined wireless clients, and forwarded at APs with SSID_X joined wireless clients via wireless unicast.
F. A packet is delivered to Cisco WLC and forwarded via unicast to all of its associated APs, discarded at APs without SSID_X joined wireless clients, and forwarded at APs with SSID_X joined wireless clients via wireless unicast.
Answer: C

3. Which two statements are correct if IGMP snooping is enabled on a Cisco WLC? (Choose two.)
A. The router IGMP table is updated with the IP address of the wireless clients as the last reporter.
B. The IGMP packets from the wireless clients are forwarded to the router without modifications.
C. The IGMP packets from the wireless clients are received at the Cisco WLC, which in turn generates a query for the client.
D. The IGMP packets from the wireless clients are received at the WLC and are used to update the router via Cisco Group Management Protocol update from the Cisco WLC.
E. The router IGMP table is updated with the IP address of the Cisco WLC as the last reporter.
Answer: CE

4. What frame type is used to signal TSPEC reservation from a client?
A. RSVP
B. ADDTS
C. 802.11 association information elements
D. WMM capabilities exchange
Answer: B

5. What two benefits result from Cisco WLC configuration of DCA for 5-GHz VoWLAN deployments? (Choose two.)
A. Avoid channels with microwave oven noise.
B. Manually remove channels not supported by the VoWLAN clients.
C. Avoid 802.11n 40-MHz wide channels.
D. Automatically avoid nearby radar.
Answer: BD

6. Which two statements are correct regarding multicast implementation using a WLAN controller (v2) and AP? (Choose two.)
A. Multicast traffic is sent out on Cisco APs at the highest mandatory data rate.
B. Multicast traffic is sent out on Cisco APs at the highest supported data rate.
C. On Cisco APs, multicast traffic and beacons are sent out at the same data rates to maintain a common cell size for normal data as well as multicast data.
D. If there is more than one mandatory data rate, multicast traffic will be sent at the highest mandatory rate and beacons will be sent at the lowest mandatory rate.
E. On Cisco APs, multicast traffic will be sent out at the highest data rate that a client can maintain with the AP.
Answer: AD

7. What must be true about the client before upstream traffic stream metrics can be displayed on the Cisco WLC?
A. must be Cisco Compatible Extensions version 2
B. must be Cisco Compatible Extensions version 3
C. must be Cisco Compatible Extensions version 4
D. must be associated to a Platinum QoS WLAN
E. must be associated to an access point on a Cisco WLC with code version 5.0 or newer
Answer: C

8. Which statement is correct for both the LWAPP and CAPWAP AP upstream 802.1Q tagged wired QoS priority for a non-WMM-associated client frame that is H-REAP locally switched running v5.2?
A. Wireless client WMM UP classification is translated to a wired DSCP priority.
B. Wireless client 802.11p classification is translated to a wired DSCP priority.
C. Wireless client WMM UP classification is translated to a wired 802.1p CoS priority.
D. Wireless client 802.11p classification is translated to a wired 802.1p CoS priority.
E. WLAN configured QoS level is used to set the wired DSCP priority.
F. Wired 802.1p CoS priority is not set.
Answer: F

9. Which two messages can carry the TSPEC from client to the AP? (Choose two.)
A. probe request
B. association request
C. authentication request
D. reassociation request
Answer: BD

10. On the Cisco Aironet Access Points connected to a Cisco Unified Wireless LAN controller, which TCLAS queue transmits RTP packets with correct 802.11e QoS markings?
A. UP
B. VO
C. VI
D. BK
E. BE
Answer: B

免費下載642-741考古庫Demo

Pass4Side提供最新的Others認證 642-741考古庫,其全名為:(Implementing Cisco Unified Wireless Voice Networks). 在您決定是否購買之前 可以先下載642-741考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費642-741模擬測試題的下載鏈接

免費的642-741考古庫PDF下載鏈接

Sep 30 2009

Pass4Side FM0-301 PDF考古題

Posted by admin in FileMaker

FileMaker認證FM0-301考試考古庫介紹

考試代號: FM0-301
問題數量:120 Q&As

更新時間: 2009-09-30
註冊地點: Prometric/Pearson VUE
考古庫全稱:Filemaker7 Developer Essentials Exam

FileMaker FM0-301學習指南

FileMaker Certification認證 FM0-301考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。FileMaker認證 FM0-301學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試FM0-301考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。FileMaker認證 FM0-301是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的FM0-301考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他FM0-301考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師FM0-301試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加FM0-301考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費FM0-301考古庫Demo賞析

 
 
Exam : FileMaker FM0-301
Title : Filemaker7 Developer Essentials Exam

1. Which three statements about field validation are true in FileMaker Pro 7? (Choose three.)
A. Fields can only be validated by a single criterion.
B. Field validation warnings may be triggered by scripts.
C. Users can be prevented from overriding the validation warning.
D. Users can be presented with a specific message that will see when a field fails validation.
E. A script can be specified to run when manually entered field data fails validation.
Answer: BCD

2. Consider two FileMaker Pro 7 files, Alpha and Beta, where a table from Beta appears as an externally referenced table occurrence on Alpha’s Relationships Graph. Which three statements are true? (Choose three.)
A. Layouts in Alpha can display data from Beta.
B. Alpha can contain multiple valid file references to Beta.
C. It is impossible to lock records in both Alpha and Beta simultaneously.
D. Layouts from Beta cannot be displayed in the same window as layouts from Alpha.
E. A table occurrence from Beta is required on Alpha’s Relationships Graph in order to call a script in Beta from Alpha.
Answer: ABD

3. A database has two tables, Planet and Moon. Moons are related to a single planet and their relationship is set to delete related records in the Moon table when a Planet record is deleted. Which two things happen when the Planet table is deleted from the Tables tab of the Define Database dialog? (Choose two.)
A. All data in the Planet table are deleted.
B. All records in the Moon table are deleted.
C. All records in the Moon table remain unaffected.
D. All records in the Moon table are deleted if the option to "Also remove occurrences of these tables in the graph" was selected when deleting the Planet table.
E. All table occurrences of both Planet and Moon tables are removed if the option to "Also remove occurrences of these tables in the graph" was selected when deleting the Planet table.
Answer: AC

4. Which three statements are true about field indexing in FileMaker Pro 7? (Choose three.)
A. Indexing improves the speed at which finds are performed.
B. Value lists require at least one of any field they reference to be indexed.
C. To establish a relationship between two fields, both fields are required to be indexed.
D. A value index, used in establishing relationships, stores up to 60 primary characters or digits per return-delimited line.
E. Using Unicode or ASCII as the default language by which a field is indexed causes sorts on that field to be case sensitive.
Answer: ABE

5. If a field in FileMaker Pro 7 has been set to validate Always, which three actions will trigger validation on that field? (Choose three.)
A. importing data into that field
B. exporting data from that field
C. editing data in the field using Instant Web Publishing
D. clicking into the field, then immediately exiting the field
E. attempting to change the value of the field using a Set Field[ ] script step
Answer: ACE

6. Click the Exhibit button.
Given the FileMaker Pro 7 Relationships Graph shown in the exhibit, which table occurrence should be assigned to a layout that contains a portal that shows all students for all of a teacher’s classes?
A. Classes
B. Advisors
C. Teachers
D. Enrollment
Answer: C

7. A number field in FileMaker Pro 7 called AmountPaid is set to auto-enter the following formula:.
The Do not replace existing value of field (if any) option is unchecked.
Which statement is true?
A. The calculation will only be evaluated the first time a value is entered into AmountPaid .
B. A user will not be able to manually edit the field once the calculation has been evaluated.
C. If the value in the AmountDue field is changed, the AmountPaid field will be re-evaluated.
D. The calculation will prevent a user from entering an incorrect value into the AmoundPaid field.
Answer: C

8. Click the Exhibit button
Consider a FileMaker Pro 7 database with two tables called Salesperson and Order, and a relationship between the two tables based on a SalespersonID field. The relationship is configured as shown in the exhibit. There is a layout called Salesperson Detail, based on the Salesperson table occurrence, with a portal showing Order records via the above relationship.
Which three statements are true? (Choose three.)
A. Deleting a Salesperson record also deletes all related Order records.
B. It is possible to create new Order records by importing data into the Salesperson table.
C. It is possible to create new Salesperson records by importing data into the Order table.
D. Users may create new Order records by entering data into the portal on the Salesperson Detail layout
E. It is possible to create a new Salesperson record using a Set Field [ ] script step in a script that runs in the context of the Order table.
F. It is possible to create a new Salesperson record by typing into a related salesperson field displayed on a layout that is based on the Order table.
Answer: DEF

9. Click the Exhibit button.
You have a FileMaker Pro 7 layout based on the table occurrence of Classes. You have a portal showing records from the table occurrence Students.
What happens if you place the field Students::Name into the portal?
A. The field displays &lt;Field Missing&gt; .
B. The field displays an enrolled student’s name in each row of the portal.
C. The field displays the first matching student’s name in every portal row.
D. The field displays an enrolled student’s name in each row of the portal only if the student name is calculated in the Enrollment table.
Answer: B

10. Which statement is true in FileMaker Pro 7?
A. The Save record changes automatically layout option does not apply to users with [Full Access] privileges.
B. On a layout by layout basis, you can specify whether record changes made in Browse mode will be saved automatically.
C. On a layout by layout basis, you can specify whether changes made to the layout when exiting Layout mode will be saved automatically.
D. If the Save record changes automatically option has been turned off for a layout, then users will be prompted to save their changes only when exiting the layout.
Answer: B

11. What is the maximum number of characters that can be entered or imported into a text field in FileMaker Pro 7?
A. 64 thousand
B. 1 million
C. 1 billion
D. 1 trillion
E. Number of characters is limited only by disk space.
Answer: C

12. Click the Exhibit button.
You want to build a FileMaker Pro 7 database that models a business organizational chart. One person may manage no one or many people. One person may be managed by at most one other person.
You want to build the system in such a way that a single layout showing information about a person can display both the name of the current person’s manager (if any) and the names of all people managed by the current person.
What is the minimum number of tables you must define in the Tables tab of the Define Database dialog to construct the layout?
A. one
B. two
C. three
D. four
Answer: A

13. Consider a FileMaker Pro 7 database with the following tables and fields:
Using only Cartesian (cross or x ) relationships between occurrences of these tables, sorting if necessary, which two actions can be performed? (Choose two.)
A. determine the mode of the order amount
B. determine the date of the most recent order
C. display all records from the Customer table in a portal
D. create a value list that shows all orders for a chosen customer
E. create a portal to show one record for each product that has ever been ordered
Answer: BC

14. Which two statements about relationships are true in FileMaker Pro 7? (Choose two.)
A. The &gt; operator only works using numeric match fields.
B. You can build a relationship using multiple match fields.
C. It is possible to create a valid relationship where one match field is unindexed.
D. A table occurrence must be connected to at least one other table occurrence.
E. When enabling the option, "Allow creation of records in this table via this relationship", only =, &gt;=, &lt;= will properly populate match keys.
Answer: BC

15. What is the maximum number of files that can be hosted on FileMaker Server 7?
A. 125
B. 250
C. 350
D. 500
E. The number is limited only by server hardware.
Answer: A

免費下載FM0-301考古庫Demo

Pass4Side提供最新的FileMaker Certification認證 FM0-301考古庫,其全名為:(Filemaker7 Developer Essentials Exam). 在您決定是否購買之前 可以先下載FM0-301考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費FM0-301模擬測試題的下載鏈接

免費的FM0-301考古庫PDF下載鏈接

Sep 25 2009

Pass4Side 000-001 PDF考古題

Posted by admin in IBM

IBM認證000-001考試考古庫介紹

考試代號: 000-001
問題數量:123 Q&As

更新時間: 2009-09-25
註冊地點: Prometric/Pearson VUE
考古庫全稱:Fund of Applying Maximo Enterprise Asset Mgmt Sol ‘09

IBM 000-001學習指南

IBM certifications I認證 000-001考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。IBM認證 000-001學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試000-001考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。IBM認證 000-001是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的000-001考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他000-001考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師000-001試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加000-001考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費000-001考古庫Demo賞析

 
 
Exam : IBM 000-001
Title : Fund of Applying Maximo Enterprise Asset Mgmt Sol ‘09

1. What will happen to associated preventive maintenance (PM) records when an asset is decommissioned?
A. There is no automatic method to change the PM(s) status to INACTIVE.
B. The PM(s) will become in INACTIVE if ‘Change the Status of All Associated PM(s) to Inactive?’ is checked while decommissioning the asset.
C. The only way to change the status of the PM(s) to INACTIVE is to remove the assets from the PM(s) and then change the status of the PM(s) to INACTIVE.
D. If the ‘Change the Status of All Associated PM(s) to Inactive?’ is not selected during decommissioning, the PM(s) status will remain ACTIVE; however, work order cannot be generated from the PM having a decommissioned asset.
Answer: B

2. With which three other business initiatives does Enterprise Asset Management-a business paradigm-integrate strategic planning? (Choose three.)
A. sales
B. operations
C. maintenance
D. balance sheet
E. human resources
F. capital investment decision-making
Answer: BCF

3. Which three benefits do Enterprise Asset Management solutions provide? (Choose three.)
A. Reduce asset life.
B. Increase productivity.
C. Increase risk and costs.
D. Improve return on assets.
E. Reduce total cost of ownership.
F. Minimize collection on warranty claims.
Answer: BDE

4. A competitor in the IBM Maximo Asset Management (IMAM) domain claims that their product contains pre-built workflows and common tasks that span and integrate across asset applications.
What should a solution advisor do when a customer is considering such a solution?
A. Dispute the vendor’s claims that these pre-built workflows even exist.
B. Inform the organization that workflow is an unimportant component in asset .
C. Inform the organization that all vendors have the same pre-built workflows incorporated in their products.
D. Inform the customer that if current business processes do not exactly match these workflows, customization is required.
Answer: D

5. What is a rotating item?
A. A rotating item is an individual item that is defined with a common item number. An item is designated as rotating because one wants to be able to create individual asset records by using the information (Classification, Specification,and Item Assembly Structure) contained on the item record.
B. A rotating item is a set of items that are defined with a specific code. An item is designated as rotating because one does not want to be able to create individual asset records by using the information (Classification, Specification, and Item Assembly Structure) contained on the item record.
C. A rotating item is a set of kits that are defined with a specific description and GL. An item is designated as rotating because one has the single cost to manage prefers to be able to create individual asset records by using the information (Classification, Specification, and Item Assembly Structure) contained on the assembly record.
D. A rotating item is an individual item that is defined with a common item number and can be a spare part. An item is designated as rotating because one wants to be able to create multiple asset records by using the information (Classification, Specification, and Item Assembly Structure) contained on the item set records.
Answer: A

6. A customer’s plant maintenance manager invites a solution advisor to discuss Enterprise Asset Management in general and how it might help the maintenance group work more effectively and efficiently.
What should the solution advisor do in the first meeting with the plant maintenance manager?
A. Ask the plant maintenance manager about the company’s history, competition, and market value.
B. Ask the plant maintenance manager about their background, education, and professional experience.
C. Ask the plant maintenance manager about current systems in use, issues with the system,and key areas where the manager wants to see improvements.
D. Ask the plant maintenance manager about the number of employees, union representation, and how IBM Maximo Asset Management can represent employees and their skill sets.
Answer: C

7. What are two common reporting requirements? (Choose two.)
A. the database connectivity method
B. the number of users in the solution
C. the number of reports being installed
D. ability to send completed reports by e-mail
E. reporting output available in Microsoft Excel
Answer: DE

8. A company just hired a new plant maintenance manager, and they are concerned about the number of corrupt asset records in the present system. In future they want to prevent this from happening. When implementing the new solution, what is recommended?
A. All maintenance personnel have full access to all records.
B. All maintenance personnel have read-only access to all data.
C. Only a very limited number of personnel have full access to static data records, but all maintenance personnel are able to enter work order data.
D. Maintenance personnel should not be using the system, and should only write entries on printed work orders and hire input clerks to enter these into the system.
Answer: C

9. Which application is installed with IBM Enterprise Asset Management for providing reporting capability?
A. Open Database Platform
B. External Report Integration
C. Business Objects/Crystal Reports
D. Business Intelligence Reporting Tool
Answer: D

10. Which two aspects of the client’s environment will help determine sizing of the solution? (Choose two.)
A. the number of users
B. the number of locations
C. the number of types of hardware
D. the number of security protocols
E. the number of types of operating systems
Answer: AB

11. When discussing plant maintenance with plant maintenance managers, frequently the topic of using preventive maintenance (PM) comes up. If this is used extensively and the PM work orders are regularly completed, what is told by this about the operation?
A. It is likely that equipment will break down frequently.
B. It is likely that equipment will break down infrequently.
C. It shows that maintenance is performed on an as needed basis.
D. It shows that there are frequent crises when it comes to maintaining equipment.
Answer: B

12. Which two internet browsers are supported with IBM Maximo Asset Management V7.1? (Choose two.)
A. Opera
B. Netscape
C. Mozilla Firefox
D. Google Chrome
E. Microsoft Internet Explorer
Answer: CE

13. Enterprise Asset Management packages offer a wide range of capabilities. Which three areas of capability are covered by IBM Maximo Asset Management solutions? (Choose three)
A. work orders
B. human resources
C. inventory control
D. preventive maintenance
E. facilities schedule management
F. customer relationship management
Answer: ACD

14. What is a feature of the Integration Framework?
A. Allow bulk importing of XML or flat files.
B. Allow bulk importing from Excel spreadsheets.
C. Allow bulk importing from external/legacy system.
D. Allow bulk importing from one database platform to another.
Answer: A

15. Which aspect of the client’s environment restricts how an asset management tool can be deployed?
A. which database servers are in use
B. which types of hardware are in use
C. which operating systems are in use
D. which authentication and security protocols are in use
Answer: D

免費下載000-001考古庫Demo

Pass4Side提供最新的IBM certifications I認證 000-001考古庫,其全名為:(Fund of Applying Maximo Enterprise Asset Mgmt Sol ‘09 ). 在您決定是否購買之前 可以先下載000-001考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費000-001模擬測試題的下載鏈接

免費的000-001考古庫PDF下載鏈接

Sep 23 2009

Pass4Side 1Y0-A11 PDF考古題

Posted by admin in Citrix

Citrix認證1Y0-A11考試考古庫介紹

考試代號: 1Y0-A11
問題數量:104 Q&As

更新時間: 2009-09-23
註冊地點: Prometric/Pearson VUE
考古庫全稱:Basic Administration for Citrix NetScaler 9.0

Citrix 1Y0-A11學習指南

Citrix Other Certification認證 1Y0-A11考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。Citrix認證 1Y0-A11學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試1Y0-A11考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。Citrix認證 1Y0-A11是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的1Y0-A11考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他1Y0-A11考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師1Y0-A11試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加1Y0-A11考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費1Y0-A11考古庫Demo賞析

 
 
Exam : Citrix 1Y0-A11
Title : Basic Administration for Citrix NetScaler 9.0

1. Scenario: A network administrator is deploying a NetScaler system in an environment with a single subnet using this IP information:
subnet: 192.168.10.32 netmask: 255.255.255.224 default gateway: 192.168.10.40 The administrator already set up the NSIP and MIP addresses using the command line interface.
Which command could the administrator use to complete this set up successfully?
A. add route 0.0.0.0 0.0.0.0 192.168.10.32
B. add route 0.0.0.0 0.0.0.0 192.168.10.40
C. add route 0.0.0.0 0.0.0.0 192.168.10.62
D. add route 192.168.10.0 255.255.255.224 192.168.10.32
E. add route 192.168.10.0 255.255.255.224 192.168.10.62
Answer: B

2. An administrator has just enabled caching and wants to make sure that this will positively impact server performance. Which information can the administrator get from the Dashboard to determine whether server performance was positively affected by enabling caching?
A. Client connection count increases
B. Server side request rate increases
C. Client connection count decreases
D. Server side request rate decreases
Answer: D

3. Which SNMP trap must an administrator configure to be informed when the response time for a monitor probe that had exceeded the set threshold returns to normal?
A. entityup
B. entitydown
C. monRespTimeoutAboveThresh
D. monRespTimeoutBelowThresh
Answer: D

4. A NetScaler system is running with high CPU usage frequently.
Which log can the administrator view to determine if the high CPU is being caused by the processes running in the user space?
A. syslog
B. nswlog
C. newnslog
D. nsconmsg
Answer: C

5. An administrator configured cache redirection and needs to provide a report of how that feature is functioning in the network environment.
What can the administrator use to see a graphical representation of the statistics for the vserver performing the cache redirection?
A. The monitor view for the service bound to the correct vserver
B. The chart option in the Dashboard once the correct vserver is selected
C. The chart option in the Dashboard for the service bound to the correct vserver
D. The request and response rates option in the Dashboard once te correct vserver is selected
Answer: B

6. An administrator should configure Link Aggregation on a 7000 NetScaler system when __________. (Choose the correct option to complete the sentence.)
A. redundancy on a half duplex operation is required
B. redundancy on an operation across multiple data rates is required
C. the bandwidth requirements inbound to or outbound from the Netscaler are greater than 1 Gb/sec
D. the bandwidth requirements inbound to or outbound from the Netscaler are greater than 8 Gb/sec
Answer: C

7. A company is planning on implementing NetScaler systems in high availability pairs.
Which entry in the NS.CONF file of the secondary system needs to be unique from those of the primary system?
A. VMAC
B. VIP address
C. MIP address
D. NSIP address
Answer: D

8. An administrator is configuring a compression policy and does NOT want HTTP responses to be compressed.
Which step should the administrator take to achieve this?
A. Use the appropriate default compression policy
B. Configure the compression policy for HTTP requests only
C. Remove the "Accept-Encoding" header from the HTTP responses
D. Use Re-write to remove "Accept-Encoding" header from the HTTP requests
Answer: D

9. Scenario: An administrator is planning the necessary configurations on a NetScaler system for an environment that requires the NetScaler system to advertise virtual IP addresses, directly connected routes and static routes on the upstream routers.
What must the administrator ensure is configured on the NetScaler system for this environment?
A. Static Routes
B. Link Load Balancing
C. Route Health Injection
D. Front-end Health Check
Answer: C

10. Scenario: An administrator installed a NetScaler system and configured the NSIP and MIP for the system. The NetScaler system will be used primarily for load balancing in this environment.
Which additional step must the administrator take to ensure that the NetScaler system can perform the necessary server load balancing in this environment?
A. Disable USIP mode on both nodes
B. Use the MIP as the NSIP for a high availability environment
C. Create VIPs for the front-end connections to the back-end servers
D. Enable USNIP mode for the front-end connections to the back-end servers
Answer: C

11. Scenario: An administrator must set up a NetScaler system network with USIP mode enabled. The NetScaler must be able to preserve client IP addresses in TCP/IP packets reaching the back-end servers except for connections coming from particular IP addresses that are defined in an ACL. In the case of connections coming from the IP addresses defined in the ACL, the packets reaching the back-end servers should receive the NetScaler IP address instead of the client IP address. On which entity should RNAT be configured to meet the requirements in this scenario according to best practices?
A. ACL
B. Client
C. Virtual server
D. Back-end server
Answer: A

12. How can an administrator configure a health check for a server receiving HTTP traffic so that it monitors the responses of the server to actual client requests as opposed to probes whenever possible?
A. Use the default TCP monitor
B. Configure an HTTP-ECV monitor
C. Configure an HTTP-Inline monitor
D. Use the TCP monitor with the transparent parameter selected
E. Configure an HTTP monitor with the transparent parameter selected
Answer: C

13. Scenario: An administrator needs to create a health check that will mark an HTTP service down if the bound monitor probe fails. The administrator wants to create a monitor and configure the health check so that a trap is sent if the monitor probe reply exceeds 20 milliseconds.
How can the administrator create the monitor for this health check using the command line interface?
A. set mon monitor-HTTP-1 HTTP -interval 20 milli
B. add lb mon monitor-HTTP-1 HTTP -interval 20 milli
C. set mon monitor-HTTP-1 HTTP -resptimeout 20 milli
D. add lb mon monitor-HTTP-1 HTTP -resptimeout 20 milli
Answer: D

14. Where in the configuration utility can an administrator configure a NetScaler high availability pair to ensure that specific interfaces are NOT monitored?
A. The root of the System node
B. The root of the Network node
C. The interface sub node in the System node
D. The interface sub node in the Network node
Answer: D

15. An SNMP manager attempted to poll for an OID but received the error message: "response timeout." Which option could the administrator have misconfigured for SNMPv2 to cause this error message?
A. SNMP trap
B. SNMP user
C. SNMP group
D. SNMP community
Answer: D

16. Which event would trigger a failover in a high availability pair?
A. The primary appliance reboots.
B. A forced synchronization event fails.
C. A monitored interface fails on the secondary node.
D. The default gateway does not return a heartbeat packet from the primary node.
Answer: A

免費下載1Y0-A11考古庫Demo

Pass4Side提供最新的Citrix Other Certification認證 1Y0-A11考古庫,其全名為:(Basic Administration for Citrix NetScaler 9.0). 在您決定是否購買之前 可以先下載1Y0-A11考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費1Y0-A11模擬測試題的下載鏈接

免費的1Y0-A11考古庫PDF下載鏈接

Sep 23 2009

Pass4Side EX0-106 PDF考古題

Posted by admin in EXIN,Inc

EXIN,Inc認證EX0-106考試考古庫介紹

考試代號: EX0-106
問題數量:232 Q&As

更新時間: 2009-09-23
註冊地點: Prometric/Pearson VUE
考古庫全稱:SCNS Tactical Perimeter Defense

EXIN,Inc EX0-106學習指南

EXIN Inc Certification認證 EX0-106考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。EXIN,Inc認證 EX0-106學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試EX0-106考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。EXIN,Inc認證 EX0-106是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的EX0-106考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他EX0-106考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師EX0-106試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加EX0-106考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費EX0-106考古庫Demo賞析

 
 
Exam : EXIN EX0-106
Title : SCNS Tactical Perimeter Defense

1. You are working on your companys IPTables Firewall; you wish to create a rule to address traffic using ports 1024 through 2048. Which of the following would you use during the creation of your rule?
A. p:1024 P:2048
B. P:1024 p2048
C. p=1024-2048
D. 1024-2048
E. 1024:2048
Answer: E

2. During your review of the logs of your Cisco router, you see the following line. What is the meaning of this line?
%SYS-5-CONFIG_I: Configured from console by vty1 (172.16.10.1)
A. A normal, but noteworthy event
B. An informative message
C. A warning condition has occurred
D. A debugging message
E. An error condition has occurred
Answer: A

3. For the new Snort rules you are building, it will be required to have Snort examine inside the content of the packet. Which keyword is used to tell Snort to ignore a defined number of bytes before looking inside the packet for a content match?
A. Depth
B. Offset
C. Nocase
D. Flow_Control
E. Classtype
Answer: B

4. You have just installed a new Intrusion Detection System in your network. You are concerned that there are functions this system will not be able to perform. What is a reason an IDS cannot manage hardware failures?
A. The IDS can only manage RAID 5 failures.
B. The IDS cannot be programmed to receive SNMP alert messages.
C. The IDS cannot be programmed to receive SNMP trap messages.
D. The IDS cannot be programmed to respond to hardware failures.
E. The IDS can only inform you that an event happened.
Answer: E

5. You are configuring the rules on your firewall, and need to take into consideration that some clients in the network are using automatic addressing. What is the IP address range reserved for internal use for APIPA in Microsoft networks?
A. 169.254.0.0 /4
B. 169.254.0.0 /16
C. 169.254.0.0 /8
D. 169.254.0.0 /0
E. 168.255.0.0 /16
Answer: B

6. If you capture an 802.11 frame, and the ToDS bit is set to zero and the FromDS bit is set to zero, what type of WLAN is this frame a part of?
A. Mesh
B. Broadcast
C. Infrastructure
D. Hierarchical
E. Ad Hoc
Answer: E

7. In order to perform promiscuous mode captures using the Wireshark capture tool on a Windows Server 2003 machine, what must first be installed?
A. IPv4 stack
B. IPv6 stack
C. WinPcap
D. Nothing, it will capture by default
E. At least two network adapters
Answer: C

8. At a policy meeting you have been given the task of creating the firewall policy. What are the two basic positions you can take when creating the policy?
A. To deny all traffic and permit only that which is required.
B. To permit only IP traffic and filter TCP traffic
C. To permit only TCP traffic and filter IP traffic
D. To permit all traffic and deny that which is required.
E. To include your internal IP address as blocked from incoming to prevent spoofing.
Answer: AD

9. You are monitoring the network traffic on your Frame-Relay Internet connection. You notice a large amount of unauthorized traffic on port 21. You examine the packets, and notice there are no files being transferred. Traffic on what other port must be examined to view any file contents?
A. 20
B. 119
C. 23
D. 80
E. 2021
Answer: A

10. You are introducing a co-worker to the security systems in place in your organization. During the discussion you begin talking about the network, and how it is implemented. You mention something in RFC 791, and are asked what that is. What does RFC 791 specify the standards for?
A. IP
B. TCP
C. UDP
D. ICMP
E. Ethernet
Answer: A

11. You have been given the task of building the new wireless networks for your office, and you need to verify that your equipment will not interfere with other wireless equipment frequencies. What wireless standard allows for up to 11 Mbps transmission rates and operates in the 2.4GHz range?
A. 802.11b
B. 802.11e
C. 802.11a
D. 802.11i
E. 802.11g
Answer: A

12. The exhibit represents a simple routed network. Node 7 is a Windows 2000 Professional machine that establishes a TCP communication with Node 10, a Windows 2003 Server. The routers are Cisco 2500 series running IOS 12.
While working at Node 10, you run a packet capture. Packets received by Node 10, and sent from Node 7 will reveal which of the following combination of source IP and source Physical addresses:
A. Source IP address 10.0.10.115, Source Physical address for Node 7
B. Source IP address 50.0.50.1, Source Physical address for Node 7
C. Source IP address for Router D’s Int E0, Source Physical address for Node 7
D. Source IP address 10.0.10.115, Source Physical address Router D’s Int E0
E. Source IP addresses for both Nodes 7 and Router D’s Int E0, Source Physical address for both Nodes 7 and Router D’s Int E0.
Answer: D

13. You are planning on implementing a token-based authentication system in your network. The network currently is spread out over four floors of your building. There are plans to add three branch offices. During your research you are analyzing the different types of systems. Which of the following are the two common systems token-based authentication uses?
A. Challenge/Response
B. Random-code
C. Time-based
D. Challenge/Handshake
E. Password-Synch
Answer: AC

14. There are several options available to you for your new wireless networking technologies, and you are examining how different systems function. What transmission system uses short bursts combined together as a channel?
A. Frequency Hopping Spread Spectrum (FHSS)
B. Direct Sequence Spread Spectrum (DSSS)
C. Lamar Anthell Transmission (LAT)
D. Digital Band Hopping (DBH)
E. Digital Channel Hopping (DCH)
Answer: A

15. You have recently taken over the security of a mid-sized network. You are reviewing the current configuration of the IPTables firewall, and notice the following rule:
ipchains -A input -p TCP -d 0.0.0.0/0 12345 -j DENY
What is the function of this rule?
A. This rule for the output chain states that all incoming packets from any host to port 12345 are to be denied.
B. This rule for the input chain states that all incoming packets from any host to port 12345 are to be denied.
C. This rule for the input chain states that any TCP traffic from any address destined for any IP address and to port 12345 is to be denied.
D. This rule for the output chain states that any TCP traffic from any address destined for any IP address and to port 12345 is to be denied.
E. This rule for the input chain states that all TCP packets inbound from any network destined to any network is to be denied for ports 1, 2, 3, 4, and 5.
Answer: C

16. You have implemented an IPSec policy, using only AH. You are analyzing your network traffic in Network Monitor, which of the following statements are true about your network traffic?
A. You will not be able to view the data in the packets, as it is encrypted.
B. You will not be able to identify the upper layer protocol.
C. You will be able to view the unencrypted data in the packets.
D. You will be able to identify the encryption algorithm in use.
E. You will not be able to view the packet header.
Answer: C

免費下載EX0-106考古庫Demo

Pass4Side提供最新的EXIN Inc Certification認證 EX0-106考古庫,其全名為:(SCNS Tactical Perimeter Defense). 在您決定是否購買之前 可以先下載EX0-106考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費EX0-106模擬測試題的下載鏈接

免費的EX0-106考古庫PDF下載鏈接

Sep 23 2009

Pass4Side EX0-107 PDF考古題

Posted by admin in EXIN,Inc

EXIN,Inc認證EX0-107考試考古庫介紹

考試代號: EX0-107
問題數量:233 Q&As

更新時間: 2009-09-23
註冊地點: Prometric/Pearson VUE
考古庫全稱:SCNP Strategic Infrastructure Security

EXIN,Inc EX0-107學習指南

EXIN Inc Certification認證 EX0-107考試已經證明了它在全世界的廣泛性和重要性,因此明白這項認證考試的世界各地的人必須具備與認證考試相關領域所需的技能和知識。EXIN,Inc認證 EX0-107學習指南的目的是檢查考生的能力和他對概念的意識。很多時候練習測試EX0-107考試都已經被修改過了,刪掉了許多過時的東西,而那些需求是在考試課程。當應用到時候你所學的知識的時候,就會鑒定出你所學到的東西以及對所學知識的應用是多麽的恰到好處。EXIN,Inc認證 EX0-107是在IT行業的知名品牌,所以如果您通過了這樣一個知名公司舉行的一次考試,你可以想象你將來的事業會做的多麽好。

想要通過這個考試當然存在很多困難。你所要做的就是準備好充足的勇氣和信心,而這些都來源與你平時訓練的好壞.建議大家可以去Pass4side這個網站看一下,它的EX0-107考試是為了測試您在這方面的知識的掌握程度,最好的部分是它可以使你不斷更新你所學的知識,不斷進步。如果你知道所有的概念和如何使用他們的時候才是你真正掌握了Pass4side的用意。這門考試檢查了您的能力和一旦你通過這次考驗你將成為最優秀的人才,其他EX0-107考試的Pass4side結算值得註意的影響就是你的薪水將直線上升這大概也是每個人都希望獲得的,所以要找一些好的資源才行。

Pass4Side考題大師EX0-107試題都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正確率100%,只要您使用Pass4Side的考試考古庫參加EX0-107考試,保證您一次輕松通過考試;

售後服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程優質售後服務,只有客戶滿意了,才能發展。客戶至上是Pass4Side考題大師的一貫宗旨;

免費EX0-107考古庫Demo賞析

 
 
Exam : Exin EX0-107
Title : SCNP Strategic Infrastructure Security

1. You have become the lead security professional for a mid-sized organization. You are currently studying DNS issues, and configuration options. You come across the concepts of DNS Spoofing, and investigate more. What is DNS Spoofing?
A. DNS Spoofing is when the DNS client submits a false DNS request to the DNS server, and the DNS server responds with correct data.
B. DNS Spoofing is the DNS client submits a DNS request to the DNS server using a bogus IP address, and the DNS server responds to the incorrect host.
C. DNS Spoofing is when a DNS Server responds to an unauthorized DNS client, providing that client with name resolution.
D. DNS Spoofing is when a DNS client is forced to make a DNS query to an imposter DNS server, which send the client to an imposter resource.
E. DNS spoofing is when a DNS server provides name resolution to clients that are located in a different IP subnet than the server itself.
Answer: D

2. To maintain the security of your network you routinely run several checks of the network and computers. Often you use the built-in tools, such as netstat. If you run the following command: netstat -e
which of the following will be the result?
A. Displays all connections and listening ports
B. Displays Ethernet statistics
C. Displays addresses and port numbers in numerical form
D. Shows connections for the protocol specified
E. Displays per-protocol statistics
Answer: B

3. To increase the security of your network and systems, it has been decided that EFS will be implemented in the appropriate situations. Two users are working on a common file, and often email this file back and forth between each other. Is this a situation where the use of EFS will create effective security, and why (or why not)?
A. No, the security will remain the same since both users will share the same key for encryption.
B. Yes, since the file will be using two keys for encryption the security will increase.
C. No, the security will remain the same since both users will share the same key for decryption.
D. Yes, since the file will be using two keys for decryption the security will increase.
E. No, EFS cannot be used for files that are shared between users.
Answer: E

4. What is a problem with symmetric key cryptography?
A. It is slower than asymmetric key cryptography
B. Secure distribution of the public key
C. There is a lack of encryption protocols that can use symmetric key cryptography
D. Secure distribution of a secret key
E. Symmetric key cryptography is reserved for the NSA
Answer: D

5. You have just downloaded a new file, called scnpfile.tar.gz. You are going to verify the file prior to un-archiving the file. Which command do you need to type to un-compress the file, prior to un-archiving?
A. tar xvf scnpfile.tar.gz
B. tar -zxvf scnpfile.tar.gz
C. gunzip scnpfile.tar.gz
D. gunzip -xvf scnpfile.tar.gz
E. gunzip -zxvf scnpfile.tar.gz
Answer: C

6. You have just become the senior security professional in your office. After you have taken a complete inventory of the network and resources, you begin to work on planning for a successful security implementation in the network. You are aware of the many tools provided for securing Windows 2003 machines in your network. What is the function of Secedit.exe?
A. This tool is used to set the NTFS security permissions on objects in the domain.
B. This tool is used to create an initial security database for the domain.
C. This tool is used to analyze a large number of computers in a domain-based infrastructure.
D. This tool provides an analysis of the local system NTFS security.
E. This tool provides a single point of management where security options can be applied to a local computer or can be imported to a GPO.
Answer: C

7. In order for your newly written security policy to have any weight, it must be implemented. Which of the following are the three components of a successful Security Policy Implementation in an organization?
A. Policy Monitoring
B. Policy Design
C. Policy Committee
D. Policy Enforcement
E. Policy Documentation
Answer: ABD

8. Attackers have the ability to use programs that are able to reveal local passwords by placing some kind of a pointer/cursor over the asterisks in a program’s password field. The reason that such tools can uncover passwords in some Operating Systems is because:
A. the passwords are simply masked with asterisks
B. the etc/passwd file is on a FAT32 partition
C. the passwords are decrypted on screen
D. the password text is stored in ASCII format
E. the etc/passwd file is on a FAT16 partition
Answer: A

9. What type of cipher is used by an algorithm that encrypts data one bit at a time?
A. 64-bit encryption Cipher
B. Block Cipher
C. Stream Cipher
D. Diffuse Cipher
E. Split Cipher
Answer: C

10. During the review of the security logs you notice some unusual traffic. It seems that a user has connected to your Web site ten times in the last week, and each time has visited every single page on the site. You are concerned this may be leading up to some sort of attack. What is this user most likely getting ready to do?
A. Mirror the entire web site.
B. Download entire DNS entries.
C. Scan all ports on a web server.
D. Perform a Distributed Denial of Service attack through the Web server.
E. Allow users to log on to the Internet without an ISP.
Answer: A

11. During a one week investigation into the security of your network you work on identifying the information that is leaked to the Internet, either directly or indirectly. One thing you decide to evaluate is the information stored in the Whois lookup of your organizational website. Of the following, what pieces of information can be identified via this method?
A. Registrar
B. Mailing Address
C. Contact Name
D. Record Update
E. Network Addresses (Private)
Answer: ABCD

12. What is the name of the informational page that is relevant to a particular command in Linux?
A. Readme Page
B. Lnx_nfo Page
C. Man Page
D. X_Win Page
E. Cmd_Doc Page
Answer: C

13. Recently, you have seen an increase in intrusion attempts and in network traffic. You decide to use Snort to run a packet capture and analyze the traffic that is present. Looking at the example, what type of traffic did Snort capture in this log file?
A. Windows 2000 Ping Request
B. Windows NT 4.0 Ping Request
C. Linux Ping Request
D. Linux Ping Response
E. Windows NT 4.0 Ping Response
Answer: B

14. As per the guidelines in the ISO Security Policy standard, what is the purpose of the section on Physical and Environmental Security?
A. The objectives of this section are to avoid breaches of any criminal or civil law, statutory, regulatory or contractual obligations and of any security requirements, and to ensure compliance of systems with organizational security policies and standards.
B. The objectives of this section are to prevent unauthorized access, damage and interference to business premises and information; to prevent loss, damage or compromise of assets and interruption to business activities; to prevent compromise or theft of information and information processing facilities.
C. The objectives of this section are to provide management direction and support for information security.
D. The objectives of this section are to maintain appropriate protection of corporate assets and to ensure that information assets receive an appropriate level of protection.
E. The objectives of this section are to control access to information, to prevent unauthorized access to information systems, to ensure the protection of networked services, and to prevent unauthorized computer access.
Answer: B

15. You are aware of the significance and security risk that Social Engineering plays on your company. Of the following Scenarios, select those that, just as described, represent potentially dangerous Social Engineering:
A. A writer from a local college newspapers calls and speaks to a network administrator. On the call the writer requests an interview about the current trends in technology and offers to invite the administrator to speak at a seminar.
B. An anonymous caller calls and wishes to speak with the receptionist. On the call the caller asks the receptionist the normal business hours that the organization is open to the public.
C. An anonymous caller calls and wishes to speak with the purchaser of IT hardware and software. On the call the caller lists several new products that the purchaser may be interested in evaluating. The caller asks for a time to come and visit to demonstrate the new products.
D. An email, sent by the Vice President of Sales and Marketing, is received by the Help Desk asking to reset the password of the VP of Sales and Marketing.
E. An email is received by the Chief Security Officer (CSO) about a possible upgrade coming from the ISP to a different brand of router. The CSO is asked for the current network’s configuration data and the emailer discusses the method, plan, and expected dates for the rollover to the new equipment.
Answer: DE

16. In the process of public key cryptography, which of the following is true?
A. Only the public key is used to encrypt and decrypt
B. Only the private key can encrypt and only the public key can decrypt
C. Only the public key can encrypt and only the private key can decrypt
D. The private key is used to encrypt and decrypt
E. If the public key encrypts, then only the private key can decrypt
Answer: E

免費下載EX0-107考古庫Demo

Pass4Side提供最新的EXIN Inc Certification認證 EX0-107考古庫,其全名為:(SCNP Strategic Infrastructure Security). 在您決定是否購買之前 可以先下載EX0-107考古庫的部分演示. Pass4side是全球唯一提供所有IT認證考試考古庫demo免費下載的廠商 ,以下為免費EX0-107模擬測試題的下載鏈接

免費的EX0-107考古庫PDF下載鏈接

友情鏈接 | Examsoon  思科熱門認證考試題庫  IT認證考古題  考古題考試模擬軟件  IT認證研究  CCNA全真認證題  ST0-94X  000-979  640-802  70-647  642-357  HP0-J43  HP0-P14