ETExamTower
Q45Security

Refer to the exhibit. Which privilege level is assigned to the VTY users?

Question exhibit
← → navigate · a answer
Community votes
A
88% (7)
D
13% (1)
B
0% (0)
C
0% (0)
Discussion · 23
11
The answer is letter "A": 1. https://www.oreilly.com/library/view/hardening-cisco-routers/0596001665/ch04.html "Default Privilege Levels The bottom and least privileged level is level 0. This is the only other level besides 1 and 15 that is configured by default on Cisco routers. Next is level 1, the default user level. This level gives the user many more commands that let the user display router information, telnet to other systems, and test network connectivity with ping and traceroute. Level 2, which is not enabled by default, adds a few additional show and clear commands, but gives no chance for a user to reconfigure the router. Finally, level 15 allows full access to all router commands."
11
if we assume that the enable password is set, then the vty will have the privilege of 15. If enable password is not set, then the vty privilege level will be 1. I would assume that there is no enable password existing since it's not shown. I would choose A
5
How do you know that the connection was made through the VTY line to execute the command and not the Console line
4
Scratch that, Lines (CON, AUX, VTY) default to level 1 privileges. https://www.oreilly.com/library/view/hardening-cisco-routers/0596001665/ch04.html
4
this comment actually made me laugh out loud
A 3
Selected Answer: A show run all , will show the default privilege of the con & vty line con 0 exec-timeout 10 0 timeout login response 30 privilege level 1 line vty 0 4 exec-timeout 10 0 timeout login response 30 privilege level 1 flush-at-activation
3
i think you studying the wrong CCNP. The default is 1 and NOT 15.
A 3
Selected Answer: A The configuration snippet provided doesn't explicitly mention a privilege level for VTY users. However, based on the configuration shown: The line vty 0 4 and line vty 5 15 configurations set passwords for VTY lines but don't explicitly assign privilege levels. By default, when a privilege level isn't configured explicitly for VTY lines, they default to privilege level 1. Therefore, looking at the provided configuration, the correct answer would be: A. 1
2
http://resources.intenseschool.com/ccna-security-solutions-to-facs-enable-secret-and-privilege-levels/
2
the answer is 15, not 1. # is level 15 and > level one. You cant run show commands in user exc mode.
2
I think the answer is A - 1. Some people are saying it is D -15 because you need level 15 privilege to do the 'show run' command, but that assumes the output was produced from a vty connection. If you look at the config for console and aux, they have priv 15 set, which means we can probably assume the show run command was run from the con or aux lines, and not the vty line (because it has the default privilege of 1). For that reason, I think it's A.
A 2
Selected Answer: A sw1# sw1#telnet 192.168.255.55 Trying 192.168.255.55 ... Open User Access Verification Password: cisco_R5>show privilege Current privilege level is 1 <<<<<<<<<<<<<<<<<<<<<<< cisco_R5> cisco_R5>ena Password: cisco_R5#sh runn | i aaa no aaa new-model cisco_R5#sh runn | s line line con 0 exec-timeout 60 0 logging synchronous line aux 0 line vty 0 4 password 777 login transport input telnet cisco_R5# cisco_R5#show users Line User Host(s) Idle Location 0 con 0 idle 00:01:21 * 2 vty 0 idle 00:00:00 192.168.255.2 Interface User Mode Idle Peer Address cisco_R5#
D 2
Selected Answer: D D. 15 In the given configuration, the "line vty 0 4" and "line vty 5 15" commands are used to configure the virtual terminal lines (VTY) for remote access. The "login" command is enabled under both VTY lines, which means that authentication is required for VTY access. Since the privilege level is not explicitly specified under the VTY lines, it defaults to the highest privilege level, which is 15. Therefore, VTY users will have privilege level 15 when accessing the router.
A 2
Selected Answer: A The answer A is correct.
1
Answer is Level 15 privilege mode, Level 1 is an executive mode
1
I agree with A being the correct answer.
1
Book: CCNP and CCIE Enterprise Core ENCOR 350-401 Official Cert Guide Page: 761 Privilege level 1: Also known as User EXEC mode. The command prompt in this mode includes a greater-than sign (R1>). From this mode it is not possible to make configuration changes; in other words, the command configure terminal is not available.
1
its 15, you cant do ''sh run'' in level 1 :) plus the sign is ''#'' not ''>'' https://learningnetwork.cisco.com/s/blogs/a0D3i000002eeWTEAY/cisco-ios-privilege-levels
1
Given answer is correct, Lines (CON, AUX, VTY) default to level 1 privileges
1
All of the levels are called privilege levels, even though Level 15 has nicknames ("enabled mode" and "privileged mode").
1
enable mode == 15 cisco_R5#show privilege Current privilege level is 15 cisco_R5#
A 1
Selected Answer: A Tested in Packet Tracer: If the privilege level doesn't show up under the line settings, then it's set to '1'.
A 1
Selected Answer: A The image says user connect via the physical console port or the auxiliary port. the router automatically drops you straight into Privileged EXEC mode (the R1# prompt). Thus, able to do show commands. VTY lines has no specific privilege level command set. means, that when you connect remotely (via Telnet or SSH), the router defaults to Privilege Level 1 (User EXEC mode).