itgle.com

That REMOVE ANY LIST ON THE V/L AFTER EACH WATCH END means that ______.A.any list,no matter where it is posted,shall be removed prior to ending his watch by the OOWB.the vessel should not be removedC.any and all lists on board the vessel should be taken o

题目

That REMOVE ANY LIST ON THE V/L AFTER EACH WATCH END means that ______.

A.any list,no matter where it is posted,shall be removed prior to ending his watch by the OOW

B.the vessel should not be removed

C.any and all lists on board the vessel should be taken off

D.the inclination of the vessel should be corrected prior to ending his watch by the OOW


相似考题
参考答案和解析
正确答案:D
更多“That REMOVE ANY LIST ON THE V/L AFTER EACH WATCH END means that ______.A.any list,no matte ”相关问题
  • 第1题:

    只封禁一台地址为193.62.40.230主机的access—list的正确配置是——。

    A.access—list 110 permit ip any any access—list 110 deny ip host 193.62.40.230 any access—list 1 10 deny ip any host 193.62.40.230

    B.access—list 110 denv ip host 193.62.40.230 any access—list 110 deny ip any host 193.62.40.230 access—-list 110 permit ip any any

    C.access—list 110 deny ip host 193.62.40.230 any aCCeSS—list 110 deny ip any host 193.62.40.230

    D.access—list 110 deny ip host 193.62.40.230 any access—list 110 permit ip any any access—list 110 deny ip any host 193.62.40.230


    正确答案:B
    解析:考查配置访问控制列表ACL,需要特别注意的是ACI。语句顺序。因为路由器接口执行,哪条ACI.是按配置的访问控制列表中的条件语句,从第一条开始顺序执行的。数据包只有在跟第一个判断条件不匹配时,才能交给ACI.中的下一个条件语句进行比较。经判断知,答案选B)。

  • 第2题:

    在 Cisco 路由器匕用扩展访问控制列表封禁 1P 地址为 211.102.33.24 的主机,正确的配置语句是

    A )

    access-list 99 deny ip host 211.102.33.24 any

    access-list 99 deny ip any host 211.102.33.24

    access-list 99 permit ip any any

    B )

    access-list 100 permit ip any any

    access-list 100 deny ip host 211.102.33.24 any

    access-list 100 deny ip any host 211.102.33.24

    C )

    access-list 199 deny ip host 211.102.33.24 any

    access-list 199 deny ip any host 211.102.33.24

    access-list 199 permit ip any any

    D )

    access-list 166 deny ip host 211.102.33.24 any

    access-list 166 permit ip any any


    正确答案:C

  • 第3题:

    只封禁一台IP地址为203.168.47.59主机的access-list的正确配置是(41) 。

    A.access-list 110permit ip any any access-list 110deny ip host 203.168.47.59 any access-list 110deny ip any host 203.168.47.59

    B.access-list 110deny ip host 203.168.47.59any access-list 110deny ip any host 203.168.47.59 access-list 110permit ip any any

    C.access-list 110deny ip host 203.168.47.59 any access-list 110deny ip any host 203.168.47.59

    D.access-list 110deny ip host 203.168.47.59 any access-list 110permit ip any any access-list 110deny ip any host 203.168.47.59


    正确答案:B
    解析:访问控制列表(ACL)用于过滤流入和流出路由器接口的数据包。它是一种基于接口的控制列表,可根据网络管理员制订的访问控制准则来控制接口对数据包的接收和拒绝,具有包过滤功能,能做到限制网络流量、限制用户和设备对网络的访问,减少网络欺骗和拒绝服务,以提高网络的安全性。
      IP访问控制列表是一个连续的列表,至少由一个“permit(允许)”语句和一个或多个“deny(拒绝)”语句组成。ACL列表用名字(Name)或表号(Number)标识和引用。配置IP访问控制列表的首要任务就是使用命令“access-list”定义一个访问控制列表。在配置过滤规则时,需要注意的是ACL语句的顺序。因为路由器接口执行哪一条ACL是按照配置的访问控制列表中的条件语句(准则),从第1条开始顺序执行的。数据包只有在跟前一个判断条件不匹配时,才能被交给ACL中的下一个条件语句进行比较。可见, ACL语句的先后顺序非常重要。例如,只封禁一台地址为203.168.47.59主机的access-list的正确配置如下:
      access-list 110 deny ip host
      access-list 110 deny ip any host 203.168.47.59
      access-list 110 permit ip any any
      如果将“access-list 110 permit ip any any”放在ACL规则的最前面(见选项A),则其后两条deny语句将不起作用,即不能按照预期的应用需求正确地控制数据包的接收与拒绝。
      选项C的ACL规则中,缺少“permit(允许)”语句,它将封禁全网所有的通信。
      选项D的ACL规则,将封禁地址为203.168.47.59的主机对外的单向通信,允许其他主机或路由器访问203.168.47.59的主机。

  • 第4题:

    若要求路由器的某接口上只封禁ICMP协议,但允许159.67.183.0/24子网的ICMP数据包通过,那么使用的access-list命令是______。

    A.access-list 120 deny icmp 159.67.183.0 0.0.0.255 any access-list 120 permit ip any any

    B.access-list 10 permit icmp 159.67.183.0 0.0.0.255 any access-list 10 deny icmp any any access-list 10 permit ip any any

    C.access-list 99 permit icmp 159.67.183.0 0.0.0.255 any access-list 99 deny icmp any any

    D.access-list 110 permit icmp 159.67.183.0 0.0.0.255 any access-list 110 deny icmp any any access-list 110 permit ip any any


    正确答案:D
    解析:依题意,允许159.67.183.0/24子网的ICMP数据包通过该路由器的某接口,相应的配置语句是:access-list 110 permit icmp 159.67.183.0 0.0.0.255 any。
      注意到题目“在该路由器接口上只封禁ICMP协议”中“只”字的要求,需要先使用命令access-list 110 deny icmp any any,再使用命令access-list 110 permit ip any any才能完成这一要求。
      选项A中的“access-list 120 deny icmp 159.67.183.0 0.0.0.255 any”表示,禁止159.67.183.0/24子网的ICMP数据包通过,因此选项A不符合题意要求。
      选项B中的“10”和选项C中的“99”都是标准访问控制列表的表号,而标准访问控制列表的配置命令是access-list access-list-number {permit|deny} source-address wildcard-mask。而选项B和选项C的配置语句中包含了目的IP地址范围(any),不符合标准访问控制列表的语法格式,因此可排除选项B和选项C。

  • 第5题:

    ()means a list of the people employed by a company showing how much each one earns.

    A. expertise

    B. franchise

    C. payroll

    D. reluctant


    正确答案:C

  • 第6题:

    只封禁一台地址为193.62.40.230主机的access-1ist的正确配置是( )。

    A.acess-list 110permit ip any anyaccess-list 110 deny ip host 193.62.40.230 anyaccess-list 110 deny ip any host 193.62.40.230

    B.access-list 110 deny ip host 193.62.40.230anyaccess-list110 deny ip any host 193.62.40.230access-list 110 permit ip any any

    C.access-list 110 deny ip host 193.62.40.230 anyaccess-list110 deny ip any host 193.62.40.230

    D.access-list 110 deny ip host 193.62.40.230 anyaccess-fist 110permit ip any anyaccess-list 110 deny ip any host 193.62.40.230


    正确答案:B
    IP访问控制列表是一个连续的列表,至少由一个“permit”语句和一个或多个“deny”语句组成。配置IP访问控制列表的首要任务就是使用命令“access-list”定义一个访问控制列表。在配置过滤规则时,需要注意ACL语句的顺序,因为路由器接口执行哪一条ACL是按照配置的访问控制列表中的条件语句、并从第1条开始顺序执行的。选项A中将“access.1ist110permitipanyany”放在ACL最前面,其后的两条deny语句将不起作用,即不能按照预期的需求正确地控制数据包的接受与拒绝。选项C的ACL规则中缺少“permit”语句,它将封禁全网所有的通信,与题意不符。选项D的ACL规则将封禁地址为l93.62.40.230的主机对外的单向通信,允许其他主机或路由器访问193.62.40.230的主机,与题意不符。综上可知B项正确。

  • 第7题:

    下面ACL语句中,表达“禁止外网和内网之间互相ping”的是 () 。

    • A、access-list 101 permit any any
    • B、access-list 101 permit icmp any any
    • C、access-list 101 deny any any
    • D、access-list 101 deny icmp any any

    正确答案:D

  • 第8题:

    You need to remove any Microsoft Windows Internet Explorer 7 add-ons in Microsoft Windows Vista computers that do not have prior approval from the following authorities: Microsoft  System manufacturer  Service provider What should you do? ()

    • A、Remove any add-ons that are not found in the list of downloaded ActiveX controls.
    • B、Remove any add-ons that are not found in the list of add-ons used by Windows Internet Explorer 7.
    • C、Remove any add-ons that are not found in the list of add-ons that run without requiring permission.
    • D、Remove any add-ons that are not found in the list of add-ons that are at present loaded in Windows Internet Explorer 7.

    正确答案:C

  • 第9题:

    单选题
    Which item represents the standard IPACL?()
    A

    access-list 50 deny 192.168.1.10.0.0.255

    B

    access-list 110 permit ip any any

    C

    access-list 2500 deny tcp any host 192.168.1.1 eq22

    D

    access-list 101 deny tcp any host 192.168.1.1


    正确答案: C
    解析: 暂无解析

  • 第10题:

    单选题
    You need to remove any Microsoft Windows Internet Explorer 7 add-ons in Microsoft Windows Vista computers that do not have prior approval from the following authorities: Microsoft  System manufacturer  Service provider What should you do? ()
    A

    Remove any add-ons that are not found in the list of downloaded ActiveX controls.

    B

    Remove any add-ons that are not found in the list of add-ons used by Windows Internet Explorer 7.

    C

    Remove any add-ons that are not found in the list of add-ons that run without requiring permission.

    D

    Remove any add-ons that are not found in the list of add-ons that are at present loaded in Windows Internet Explorer 7.


    正确答案: A
    解析: 暂无解析

  • 第11题:

    单选题
    A network administrator wants to add a line to an access list that will block only Telnet access by the hosts on subnet 192.168.1.128/28 to the server at 192.168.1.5. What command should be issued to accomplish this task?()
    A

    access-list 101 deny tcp 192.168.1.128 0.0.015 192.168.1.5 0.0.0.0 eq 23 access-list 101 permit ip any any

    B

    access-list 1 deny tcp 192.168.1.128 0.0.0.15 host 192.168.1.5 eq 23 access-list 1 permit ip any any

    C

    access-list 1 deny tcp 192.168.1.128 0.0.0.255 192.168.1.5 0.0.0.0 eq 21 access-list 1 permit ip any any

    D

    access-list 101 deny tcp 192.168.1.128 0.0.0.240 192.168.1.5 0.0.0.0 eq 23 access-list 101 permit ip any any

    E

    access-list 101 deny ip 192.168.1.128 0.0.0.240 192.158.1.5 0.0.0.0 eq 23 access-list 101 permit ip any any

    F

    access-list 101 deny ip 192.168.1.128 0.0.0.15 192.168.1.5 0.0.0.0 eq 23 access-list 101 permit ip any any


    正确答案: B
    解析: 暂无解析

  • 第12题:

    单选题
    That REMOVE ANY LIST ON THE V/L AFTER EACH WATCH END means that().
    A

    any list,no matter where it is posted,shall be removed prior to ending his watch by the OOW

    B

    the vessel should not be removed

    C

    any and all lists on board the vessel should be taken off

    D

    the inclination of the vessel should be corrected prior to ending his watch by the OOW


    正确答案: D
    解析: 暂无解析

  • 第13题:

    ( 22 )只封禁一台地址为 193.62.40.230 主机的 access-list 的正确配置是

    A ) access-list 110 permit ip any any

    access-list 110 deny ip host 193.62.40.230 any

    access-list 110 deny ip any host 193.62.40.230

    B ) access-list 110 deny ip host 193.62.40.230 any

    access-list 110 deny ip any host 193.62.40.230

    access-list 110 permit ip any any

    C ) access-list 110 deny ip host 193.62.40.230 any

    access-list 110 deny ip any host 193.62.40.230

    D ) access-list 110 deny ip host 193.62.40.230 any

    access-list 110 permit ip any any

    access-list 110 deny ip any host 193.62.40.230


    正确答案:B

  • 第14题:

    用扩展访问控制列表配置封禁ICMP协议,只允许l68.27.95.0/24子网的ICMP数据包通过路由器,正确的配置是(61) 。

    A.access-list 90 deny icmp l68.27.95.0 255.255.255.0 any access-list 90 deny icmp any anyaccess—list 90 permit ip any any

    B.access-list l00 permit icmp l68.27.95.0 0.0.0.255 any access-list l00 permit ip any any

    C.access—list l l o permit icmp l68.27.95.0 255.255.255.0 any access—list l lo deny icmp any any

    D.access-list l20 permit icmp l68.27.95.0 0.0.0.255 any access—list l20 deny icmp any any access—list l20 permit ip any any


    正确答案:D
    要点解析:路由器扩展ACL(访问控制列表)的表号范围是l00~199、2000~2699。而选项A的ACL号“90”属于标准ACL的表号范围,据此可先排除选项A。 
    在全局配置模式下,使用命令access.1ist access.1ist-number{permit  l deny}protocol source wildcar
    D.mask destination wildcar
    D.mask『operator][operand]配置标准访问控制列表。依题意,允许168.27.95.0/24子网的ICMP数据包通过该路由器的某接口,相应的配置语句是:access.1ist ll0 permit icmp l68.27.95.0 0.0.0.255 any。 
    注意到题目“在该路由器接口上只封禁ICMP协议”中“只”字的要求,需要先使用命令  access.1ist llo deny icmp any any,再使用命令access.1ist llo permit ip any any才能完成这一要求。  选项8中缺少了封禁ICMP协议的命令access—list llo deny icmp any any。 
    选项c有两个错误之处:①配置语句中使用的是子网掩码255.255.255.0,而正确的配置语句应该使用的是访问控制列表通配符(Wildcard—Mask)形式,即0.0.0.255;②缺少命令access—list  ll0 permit ip any any,它将封禁除l68.27.95.0/24子网的ICMP数据包通过之外的所有通信。 

  • 第15题:

    要禁止内网中IP地址为198.168.46.8的PC访问外网,正确的ACL规则是(11)。

    A.access-list 1 permit ip 192.168.46.00.0.0.255 any access-list 1 deny ip host 198.168.46.8 any

    B.access-list 1 permit ip host 198.168.46.8 any access-list 1 deny ip 192.168.46.00.0.0.255 any

    C.access-list 1 deny ip 192.168.46.00.0.0.255 any access-list 1 permit ip host 198.168.46.8 any

    D.access-list 1 deny ip host 198.168.46.8 any access-list 1 permitip 192.168.46.00.0.0.255 any


    正确答案:D
    D 解析:这是一道要求掌握标准访问控制列表的具体应用的理解题。本题的解答思路如下。
    最简单的访问控制列表就是标准访问控制列表。它是通过使用IP包中的源IP地址进行过滤,使用访问控制列表号1~99宋创建相应的ACL。其具体的语法格式如下:

    例如,access-list 1 deny ip host 198.168.46.8 any配置语句可将所有来自198.168.46.8地址的数据包丢弃。对于标准访问控制列表而言,可以省略默认的关键词host。换言之,语句access-list 1 deny ip host 198.168.46.8 any与语句access-list 1deny中198.168.46.8 any是等价的。
    当然也可以用网段来表示ip地址>,以实现对某个网段的数据包的过滤。例如,access-list 1 permit ip 192.168.46.00.0.0.255 any配置语句,允许所有来自198.168.46.0/24网段内所有计算机的数据包通过防火墙。其中,0.0.0.255是子网掩码255.255.255.0的反向掩码。

  • 第16题:

    封禁ICMP协议,只转发212.78.170.166/27所在子网的所有站点的ICMP数据包,正确的access-list配置是______。

    A) Router(config)#access-list 110 permit icmp 212.78.170.166 0.0.0.0 any

    Router(config)#access-list 110 deny icmp any any

    Router(config)#access-list 110 permit ip any any

    B) Router(config)#access-list 110 permit icmp 212.78.170.0 255.255.255.224 any

    Router(config)#access-list 110 permit ip any any

    Router(config)#access-list 110 deny icmp any any

    C) Router(config)#access-list 110 perimt iemp 212.78.170.0 0.0.0.255 any

    Router(config)#access-list 110 deny icmp any any

    Router(config)#access-list 110 permit ip any any

    D) Router(config)#access-list 110 permit icmp 212.78.170.160 0.0.0.31 any

    Router(config)#access-list 110 deny icmp any any

    Router(config)#access-list 110 permit ip any any

    A.

    B.

    C.

    D.


    正确答案:D

  • 第17题:

    定义一个用于封禁ICMP协议而只允许转发l66.129.130.0/24子网的ICMP数据包的访问控制列表,Cisc0路由器的正确配置是( )。

    A.access-list 198 permit icmp 166.129.130.0 255.255.255.0 anyaccess-list 198 deny iemp any anyaccess-list 198 permit ip any any

    B.access-list 198 permit icmp 166.129.130.0 0.0.0.255 anyaccess-list 198 deny iemp any anyaccess-list 198 permit ip any any

    C.access-list 99 permit icmp 166.129.130.0 0.0.0.255 anyaccess-list 99 deny iemp any anyaccess-list 99 permit ip any any

    D.access-list 100 permit icmp 166.129.130.0 0.0.0.255 anyaccess-list 100 permit ip any anyaccess-list 100 deny icmp any any


    正确答案:B
    标准访问控制列表标号为1~99,1300~1999。100~199,2000~2699为扩展控制列表。标准访问控制列表只能检查数据包的源地址,因此其功能有很大的局限性,扩展访问控制列表可以检查数据包的源地址和目的地址,还可以对数据包头中的协议进行过滤,如IP协议,ICMP协议和TCP协议等,因此排除C。访问控制列表的通配符是子网掩码的反码。所以A项错误。而D项先执行"access-list100per-mitipanyany",那么所有的IP地址都不禁封,而后面命令的将不执行,D项错。所以选B。

  • 第18题:

    只封禁一台地址为193.62.40.230主机的access-list的正确配置是

    A.access-list 110 permit ip any any access-list 110 deny ip host 193.62.40.230 any access-list 110 deny ip any host 193.62.40.230

    B.access-list 110 deny ip host 193.62.40.230any access-list 110 deny ip any host 193.62.40.230 access-list 110 permit ip any any

    C.access-list 110 deny ip host 193.62.40.230 any access-list 110 deny ip any host 193.62.40.230

    D.access-list 110 deny ip host 193.62.40.230 any access-list 110 permit ip any any access-list 110 deny ip any host 193.62.40.230


    正确答案:B

  • 第19题:

    Which command is used to list information about each physical volume in volume group testvg?()

    • A、lsvg -p testvg
    • B、lspv -v testvg
    • C、lslv -l testvg
    • D、lsattr -v testvg

    正确答案:A

  • 第20题:

    单选题
    在Cisco路由器上,用扩展访问控制列表封禁IP地址为211.102.33.24的主机,正确的配置语句是(  )。
    A

    access-list 99 deny ip host 211.102.33.24 any
    access-list 99 deny ip any host 211.102.33.24
    access-list 99 permit ip any any

    B

    access-list 100 permit ip any any
    access-list 100 deny ip host 211.102.33.24 any
    access-list 100 deny ip any host 211.102.33.24

    C

    access-list 199 deny ip host 211.102.33.24 any
    access-list 199 deny ip any host 211.102.33.24
    access-list 199 permit ip any any

    D

    access-list l66 deny ip host 211.102.33.24 any
    access-list 166 permit ip any any


    正确答案: B
    解析:
    根据全局配置模式下封禁IP地址语句,C项正确。

  • 第21题:

    单选题
    Which of the following IOS commands can detect whether the SQL slammer virus propagates in yournetworks?()
    A

    access-list 100 permit any any udp eq 1434

    B

    access-list 100 permit any any udp eq 1434 log

    C

    access-list 110 permit any any udp eq 69

    D

    access-list 110 permit any any udp eq 69 log

    E

    None of above.


    正确答案: B
    解析: 暂无解析

  • 第22题:

    单选题
    A network administrator wants to add a line to an access list that will block only Telnet access by the hosts on subnet 192.168.1.128/28 to the server at 192.168.1.5.What command should be issued to accomplish this task?()
    A

    access-list 101 deny tcp192.168.1.1280.0.0.15192.168.1.50.0.0.0eq23 access-list 101 permit ip any any

    B

    access-list 101 deny tcp192.168.1.1280.0.0.240192.168.1.50.0.0.0eq23 access-list101permit ip any any

    C

    access-list 1 deny tcp192.168.1.1280.0.0.255192.168.1.50.0.0.0eq21 access-list1permit ip any any

    D

    access-list 1 deny tcp192.168.1.1280.0.0.15host192.168.1.5eq23 access-list1permit ip any any


    正确答案: D
    解析: 暂无解析

  • 第23题:

    单选题
    以下的访问控制列表中,()禁止所有Telnet访问子网10.10.1.0/24。
    A

    access-list 15deny telnet any 10.10.1.0  0.0.0.255 eq 23

    B

    access-listl  l5 denyu卸any l0.10.1.0 eq telnet

    C

    access-list 115deny tcp any 10.10.1.0  0.0.0.255 eq 23

    D

    access-list 15deny udp any 10.10.1.0  255.255.255.0 eq 23


    正确答案: A
    解析: 暂无解析