單項(xiàng)選擇題

Using a policy with the policy-rematch flag enabled, what happens to the existing and newsessions when you change the policy action from permit to deny?()

A.The new sessions matching the policy are denied. The existing sessions are dropped.
B.The new sessions matching the policy are denied. The existing sessions, not being allowed to carry any traffic, simply timeout.
C.The new sessions matching the policy might be allowed through if they match another policy. The existing sessions are dropped.
D.The new sessions matching the policy are denied. The existing sessions continue until they are completed or their timeout is reached.

題目列表

你可能感興趣的試題

單項(xiàng)選擇題

Based on the configuration shown in the exhibit, what will happen to the traffic matching thesecurity policy?()
[edit schedulers]
user@host# showscheduler now {
monday all-day;
tuesday exclude;
wednesday {
start-time 07:00:00 stop-time 18:00:00;
}
thursday {
start-time 07:00:00 stop-time 18:00:00;
}
}
[edit security policies from-zone Private to-zone External]
user@host# showpolicy allowTransit {
match {
source-address PrivateHosts;
destination-address ExtServers;
application ExtApps;
}
then {
permit {
tunnel {
ipsec-vpn myTunnel;
}
}
}
scheduler-name now;
}

A.The traffic is permitted through the myTunnel IPsec tunnel only on Tuesdays.
B.The traffic is permitted through the myTunnel IPsec tunnel daily, with the exception of Mondays.
C.The traffic is permitted through the myTunnel IPsec tunnel all day on Mondays and Wednesdays between 7:00 am and 6:00 pm, and Thursdays between 7:00 am and 6:00 pm.
D.The traffic is permitted through the myTunnel IPsec tunnel all day on Mondays and Wednesdays between 6:01 pm and 6:59 am, and Thursdays between 6:01 pm and 6:59 am

微信掃碼免費(fèi)搜題