Skillset can help you prepare! Sign up for your free Skillset account and take the first steps towards your certification.
Refer to the exhibit. An ACL is configured on Router R1. One of the ACLs requirements is to prevent PC "C1" to communicate directly with PC "C2". For some reason C1 is able to communicate with C2 and all other traffic cannot flow normally. Which two lines need to be modified or added in order to solve the problem? (Choose two)
Set the interface fa0/1 as outbound interface instead.
Modify the second line to "ip access-group 101 out".
Configure "access-list 101 permit ip any any" as the last line in the ACL.
Change the statement in third line "access-list 101 permit ip host " to "deny ip host "
Modify the third line to "access-list 101 permit ip any 192.168.90.0 0.0.0.255.
The existing ACL will permit the traffic from host 192.168.90.100 to host 192.168.93.90. As the question states the traffic should be prevented or prohibited, therefore we need to set the command "deny" instead of "permit". The implicit deny at the end of any ACL will deny all other traffic, therefore the line "access-list 101 permit ip any any" must be included. For more information refer to: http://www.cisco.com/c/en/us/support/docs/security/ios-firewall/23602-confaccesslists.html
Study thousands of practice questions that organized by skills and ranked by difficulty.
Create a tailored training plan based on the knowledge you already possess.
Know when you’re ready for the high-stakes exam. Have the confidence that you will pass on your first attempt.