exam questions

Exam 300-410 All Questions

View all questions & answers for the 300-410 exam

Exam 300-410 topic 1 question 164 discussion

Actual exam question from Cisco's 300-410
Question #: 164
Topic #: 1
[All 300-410 Questions]


Refer to the exhibit. While monitoring VTY access to a router, an engineer notices that the router does not have any filter and anyone can access the router with username and password even though an ACL is configured.
Which command resolves this issue?

  • A. access-class INTERNET in
  • B. ip access-group INTERNET in
  • C. ipv6 traffic-filter INTERNET in
  • D. ipv6 access-class INTERNET in
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
TECH3K3
Highly Voted 2 years, 6 months ago
Selected Answer: D
Answer is D: IPv6 access-class vs IPv6 traffic-filter The difference depends on whether you want to filter IPv6 traffic sent *to* the router or *through* the router. The 'ipv6 traffic-filter' command is used to filter IPv6 traffic flowing through an interface: Command reference (with example): http://www.cisco.com/en/US/docs/ios/ipv6/command/reference/ipv6_09.html#wp2297000 The 'ipv6 access-class' command is used to filter IPv6 traffic destined to the router (i.e. management traffic). Command reference (with example): http://www.cisco.com/en/US/docs/ios/ipv6/command/reference/ipv6_05.html#wp2274594
upvoted 18 times
...
piojo
Highly Voted 2 years, 8 months ago
Selected Answer: D
Simulated in a lab. It also can be applied to the vty with ipv6 access-class command. So, examine if the access-list applied via ipv6 access-class permit tcp traffic to port 23 (or 22 when ssh) from / to the desired IPs.
upvoted 5 times
...
Sammy3637
Most Recent 2 weeks, 1 day ago
Selected Answer: D
"While monitoring VTY access to a router' Its confusing but after reading if few times , it appears , acl needs to be applied on the VTY lines , therefore , option D suits the best otherwise for the interface , it will be option A
upvoted 1 times
...
[Removed]
6 months, 2 weeks ago
Selected Answer: D
D is correct
upvoted 2 times
[Removed]
6 months ago
VTY line = access-class interface line = traffic-filter
upvoted 3 times
...
...
Fenix7
6 months, 3 weeks ago
Answer is D c) ipv6 traffic-filter -> it's used under the interface d) ipv6 access-class -> it's used under the VTY line
upvoted 1 times
...
asans
1 year, 1 month ago
Selected Answer: C
Both C and D works to filter telnet access but in this case the acl, INTERNET, is not only dealing with telnet traffic but http and hosts as well and so it has to be applied at the interface using ipv6 traffic-filter in. C is the correct answer
upvoted 2 times
...
asans
1 year, 1 month ago
Both C and D works to filter telnet access but in this case the acl, INTERNET, is not only dealing with telnet traffic but http and hosts as well and so it has to be applied at the interface using ipv6 traffic-filter in. C is the correct answer
upvoted 1 times
...
Wh00py
1 year, 5 months ago
Answer is D: https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_acl/configuration/xe-16/sec-data-acl-xe-16-book/ip6-acls-xe.html
upvoted 1 times
...
Cyril_the_Squirl
1 year, 5 months ago
How can so many people get it wrong? traffic-filter command is the ipv6 equivalent for ip access-group for applying access-list to an interface
upvoted 1 times
...
Slinky
1 year, 10 months ago
This is being applied to the vty lines, so the answer is D
upvoted 1 times
...
chikuwan
2 years, 6 months ago
Selected Answer: D
first, you should define ipv6 access-list in grobal configuration mode,and ipv6 traffic-filter is when you want to apply it in a interface, and when in conditio of a vty ,the command wull be access-list, the answer is D,given answer is correct
upvoted 4 times
...
Nhan
2 years, 8 months ago
C is correct answer, the ipv6 access-list need to be applied on an interface using ip filter command
upvoted 1 times
...
timtgh
2 years, 8 months ago
C is right,
upvoted 1 times
...
Kimaf
2 years, 9 months ago
Selected Answer: C
This is the right command to apply to the interface.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago