HOTSPOT
You have been tasked with implementing an ACL on the router that will:
1.
Permit the most commonly used secure remote access technologies from the management network to all other local network segments.
2.
Ensure the user subnet cannot use the most commonly used remote access technologies in the Linux and Windows Server segments.
3.
Prohibit any traffic that has not been specifically allowed.
INSRUCTIONS
Use the drop-downs to complete the ACL.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.
Hot Area:
Which of the following technologies requires a username and password to authenticate to a backbone network?
A. PPPoE
B. MPLS
C. ATM
D. SIP
A network engineer is creating a method for customers to access the company's application in a web browser. Which of the following cloud models should the customers use to access the application?
A. PaaS
B. SaaS
C. MaaS
D. IaaS
Which of the following storage types allows for the connection of storage devices that are located several miles apart?
A. SFTP
B. InfiniBand
C. eSATA
D. iSCSI
A network technician is utilizing DHCP. The technician has set a six-day lease time for all hosts. After which of the following time intervals should the hosts attempt to FIRST renew their address?
A. Two days
B. Three days
C. Six days
D. Seven days
A company is implementing a new firewall. The firewall is configured to allow only TCP ports 80 and 443 to exit the network and allow the same traffic back into the network using inbound stateful packet filtering. Users are not able to access URLs of common websites they visit. Which of the following is the MOST likely cause of the issue?
A. Stateful packet filtering only allows connections that originate outside the network to enter.
B. Web browsing uses UDP and not TCP ports 80 and 443.
C. The firewall does not allow UDP port 53 to enter and exit the network.
D. TCP 80 and 443 should be allowed inbound and stateful inspection should be allowed outbound.
A network administrator is unable to identify the root cause of a network incident because insufficient evidence about the threat actor's actions was logged. The administrator notes that the server receiving and storing the events was not compromised by any attack and is properly communicating with all network devices.
Which of the following can the administrator employ to improve network access accountability?
A. Activate the audit logs on the network server and resources.
B. Configure SNMP on the network server.
C. Deploy a central SIEM server into the network.
D. Collect traffic statistics from the servers using NetFlow data.
Which of the following is the MOST appropriate use case for the deployment of a clientless VPN?
A. Secure web access to internal corporate resources.
B. Upgrade security via the use of an NFV technology.
C. Grant out-of-band access for partners accessing corporate resources.
D. Increase VPN availability by using a SDWAN technology.
A website administrator is concerned the company's static website could be defaced by hacktivists or used as a pivot point to attack internal systems. Which of the following should a network security administrator recommend to assist with detecting these activities?
A. Implement file integrity monitoring.
B. Change the default credentials.
C. Use SSL encryption.
D. Update the web-server software.
A technician wants to install a WAP in the center of a room that provides service in a radius surrounding a radio. Which of the following antenna types should the AP utilize?
A. Omni
B. Directional
C. Yagi
D. Parabolic
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your N10-008 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.