Huawei
H12-821_V1.0 · Question #420
The ACL configuration of a router is as shown in the figure. [Huawei] acl adv 3000 [Huawei-acl-adv-3000] rule 3 deny tcp source 192.168.1.0 0.0.0.255 destination 10.167.12.1 0 destination-port eq 23…
The correct answer is D. Accessing all hosts in the 10.167.12.0/24 network segment through remote desktop from the 192.168.1.0/24 network segment is allowed. See the full explanation below for the reasoning.
Question
The ACL configuration of a router is as shown in the figure.
[Huawei] acl adv 3000
[Huawei-acl-adv-3000] rule 3 deny tcp source 192.168.1.0 0.0.0.255 destination 10.167.12.1 0 destination-port eq 23
[Huawei-acl-adv-3000] rule 5 permit tcp source 192.168.1.0 0.0.0.255 destination 10.167.12.1 0 destination-port eq 22
[Huawei-acl-adv-3000] quit
[Huawei]interface GigabitEthernet 0/0/0
[Huawei-GigabitEthernet0/0/0] ip address 192.168.1.255 255.255.0
[Huawei-GigabitEthernet0/0/0] traffic filter outbound acl 3000
[Huawei-GigabitEthernet0/0/0] quit
[Huawei]
Based on the content analysis in the figure, which of the following descriptions is correct?
Options
- AAccessing all hosts in the 10.167.12.0/24 network segment through Telnet from the 192.168.1.0/24 network segment is allowed
- BAccessing from all hosts in the 10.167.12.1 address through SSH from the 192.168.1.0/24 network segment is denied.
- CTraffic in this device from the 192.168.1.0/24 network segment to the host address other than 10.167.12.1 is not allowed to pass.
- DAccessing all hosts in the 10.167.12.0/24 network segment through remote desktop from the 192.168.1.0/24 network segment is allowed
How the community answered
(27 responses)- A4% (1)
- B11% (3)
- C4% (1)
- D81% (22)
Community Discussion
No community discussion yet for this question.