exam questions

Exam 300-410 All Questions

View all questions & answers for the 300-410 exam

Exam 300-410 topic 1 question 375 discussion

Actual exam question from Cisco's 300-410
Question #: 375
Topic #: 1
[All 300-410 Questions]



Refer to the exhibit. A network administrator is tasked to permit http and https traffic only toward the internet from the User1 laptop to adhere to company’s security policy. The administrator can still ping to www.cisco.com. Which interface should the access list 101 be applied to resolve this issue?

  • A. Interface G0/0 in the outgoing direction.
  • B. Interface G0/0 in the incoming direction.
  • C. Interface S1/0 in the outgoing direction.
  • D. Interface G0/48 in the incoming direction.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
[Removed]
9 months ago
Selected Answer: B
B is correct standard ACL = closest to the destination extended ACL = closest to the source
upvoted 4 times
bk989
7 months, 3 weeks ago
B is correct but not because of the reason you gave.
upvoted 3 times
bk989
7 months, 3 weeks ago
actually I see what you area saying now, and yes you have a point
upvoted 1 times
...
...
...
[Removed]
9 months ago
Selected Answer: B
B is correct standard ACL = closest to the destination extended ACL = closest to the source
upvoted 1 times
bk989
7 months, 3 weeks ago
B is correct but not because of the reason you gave.
upvoted 1 times
...
...
b8os5h
1 year, 5 months ago
Selected Answer: B
NAT should be enabled.In the S1/0 output direction, the ACL is after SNAT conversion (192.168.10.0 -> 200.193.22.94), so it does not match the ACL101 condition.
upvoted 3 times
...
inteldarvid
1 year, 9 months ago
Selected Answer: B
Correct B
upvoted 1 times
...
puipuimolcar
1 year, 11 months ago
Why is C incorrect?
upvoted 1 times
HungarianDish_111
1 year, 10 months ago
C is not incorrect, just not that optimal, as traffic that should be blocked by the ACL anyways is transiting the router unnecessarily. Making the router use more resources.
upvoted 4 times
...
RouterToRooter
1 year, 4 months ago
That will stop the administrator from being able to ping Cisco.com
upvoted 2 times
...
...
bolbolskanes
2 years, 3 months ago
The given answer is correct, but the question needs to be corrected: "The administrator still CAN NOT ping to www.cisco.com.
upvoted 2 times
forccnp
2 years, 1 month ago
tasked to permit http and https traffic only toward the internet. Not icmp
upvoted 4 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago