H12-821_V1.0 · Question #799
ACL is essentially a packet filter. Only when ACL is applied in the business module can ACL take effect.
The correct answer is A. TRUE. Option A is correct because an ACL is a set of permit/deny rules that functions as a packet filter, but simply defining an ACL has no effect on traffic - it must be explicitly applied within a business (service) module such as NAT, firewall policy, QoS, or an interface traffic…
Question
Options
- ATRUE
- BFALSE
How the community answered
(41 responses)- A85% (35)
- B15% (6)
Explanation
Option A is correct because an ACL is a set of permit/deny rules that functions as a packet filter, but simply defining an ACL has no effect on traffic - it must be explicitly applied within a business (service) module such as NAT, firewall policy, QoS, or an interface traffic policy before it begins filtering packets. This two-step model (define, then apply) is fundamental to how ACLs work across most networking platforms, including Huawei devices commonly covered by this type of exam. Option B is wrong because it implies an ACL can take effect on its own, which is not the case - an unapplied ACL is inert, like a rulebook that no one is reading. A helpful memory tip: think of an ACL as a filter cartridge - manufacturing the cartridge (creating the ACL) does nothing until you insert it into a faucet (apply it to a module); only then does water (traffic) actually get filtered.
Topics
Community Discussion
No community discussion yet for this question.