Question 96
If you deploy Free Mobility, in the logic architecture of Free Mobility, which of the following options should be concerned by the administrator?
Question 97
In the terminal host check strategy, you can check whether the important subkeys and key values of the registry meet the requirements to control the terminal host's Access, which of the following check results will be recorded as violations? (multiple choice)
Question 98
A network adopts 802.1X to authenticate access users. The admission control device is deployed at the convergence layer. After the deployment is complete, the test-aaa command is used successfully on the admission control device, but the user can't access the network.
Which of the following may be the cause of the fault? (Multiple choices)
Question 99
Check the policy delivered by the Agile Controller-Campus server on the switch as follows:
<SW>display acl all
Total nonempty ACL number is 3
Advanced ACL Auto PGM_OPEN_POLICY_3999 , 0 rule
Acl's step is 5
Ucl-group ACL Auto_PGM_U2 9996 , 1 rule
Acl's step is 5
rule 1 permit ip source ucl-group name Common_user destination ucl-group name Mail_Server(match-counter 0) Ucl-group ACL Auto_PGM_U1 9997 , 2 rules Acl's step is 5 rule 1 permit ip source ucl-group name VIP destination ucl-group name Mail_Server (match-counter 0) rule 2 permit ip source ucl-group name VIP destination ucl-group name Internet_WWW (match-counter 0) Ucl-group ACL Auto_PGM 9998 , 1 rule Acl's step is 5 rule 1 deny ip source ucl-group 0 (match-counter 0) Lid-group ACL Auto_PGM_PREFER_POLICY 9999 , 0 rule Acl's step is 5 Which of the following are correct for this strategy? (Multiple choices)
Question 100
Use hardware SACG access control, the result of viewing the session table on hardware SACG is as follows:
<FW>display firewall session table verbose:
tcpVPN: public-->public
Zone: untrust-->trust TTL: 00:10:00 Left: 00:05:27
Interface: GigabitEthernet0/0/1 NextHop:192.168.200.11 MAC:00-0c-29-d4-47-d2
<--packets: 316ytes:9516-->packets:33bytes:17277
192.168.0.119:1574-->192.168.200.11:15080
tcpVPN: public-->public
Zone: untrust-->trust TTL: 00:10:00 Left: 00:02:20
Interface: GigabitEthernet0/0/1 NextHop:192.168.100.1 MAC: 00-0c-29-a4-37-c2
<--packets:31bytes:9516-->packets:336ytes:17277
192.168.0.119:1671-->192.168.100.1:8443
Which of the following statements are correct? (Multiple choices)
