exam questions

Exam 350-701 All Questions

View all questions & answers for the 350-701 exam

Exam 350-701 topic 1 question 687 discussion

Actual exam question from Cisco's 350-701
Question #: 687
Topic #: 1
[All 350-701 Questions]

A network engineer must create an access control list on a Cisco Adaptive Security Appliance firewall to permit TCP DNS traffic to the internet from the organization’s inside network 192.168.1.0/24. Which IOS command must be used to implement the access control list?

  • A.
  • B.
  • C.
  • D.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
dorf05
3 weeks, 5 days ago
Selected Answer: A
A and D are correct because one uses the port number (53), and the other uses the service name (domain)
upvoted 1 times
...
certprep2021
2 months ago
Selected Answer: D
tested in lab R1(config)#access-list 101 permit tcp 192.168.1.0 0.0.0.255 eq domain any running-config: ! access-list 101 permit tcp 192.168.1.0 0.0.0.255 eq domain any ! ! ! !
upvoted 1 times
...
badorka
2 months, 1 week ago
answer A and D are correct
upvoted 1 times
...
Surfside92
2 months, 2 weeks ago
Selected Answer: A
b and c are missing destination ip address or 'any' so they are wrong d - the syntax is incorrect. a - correct syntax https://community.cisco.com/t5/network-security/acl-for-dns-service/td-p/1553125
upvoted 1 times
...
luismg
3 months, 3 weeks ago
Selected Answer: D
The answer may be D but is wrong access-list 102 permit tcp 192.168.1.0 0.0.0.255 any eq 53
upvoted 1 times
...
klu16
4 months, 3 weeks ago
Selected Answer: D
https://www.cisco.com/c/en/us/support/docs/ip/access-lists/26448-ACLsamples.html
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago