Q42Security
Refer to the exhibit. A network engineer needs to block Telnet traffic from hosts in the range 10.100.2.248 through 10.100.2.255 to network 10.100.3.0, while allowing all other traffic. Which configuration must the engineer apply?
← → navigate · a answer
Community votes
Discussion · 6
11
range of 10.100.2.248 - 255, It should be 10.100.2.248 0.0.0.7
2
Why not use the ACL like this
access-list 101 deny tcp 10.100.2.248 0.0.0.7 10.100.3.0 eq 23
?
1
this question is very easy because
A- dont use statement (deny)
C- block SSH , not Telnet
D- block ICMP and permit everything
1
Yep, that's a typo in the question.
10.100.2.248/29
B 1
Selected Answer: B
Telnet → port 23
block 10.100.2.248~10.100.2.255 → deny
permit everything else → any any
1
A lot of type-O's on these tests. None of the answer options reference the range that is specified mentioned in the question.