Question No: 111 DRAG DROP – (Topic 2)


Click the Task button.

The NAT function of the Solaris IP Filter software can provide various functions. Match the ipnat configuration keyword with its function.

Note: Not all ipnat keywords are used.

Question No: 112 DRAG DROP – (Topic 2)

Click the Task button.

You have recently received a new Sun server that will be deployed as an Internet firewall. You have been tasked with creating a redirection rule that translates your internal IP addresses to a single externally routeable IP address.

The IP address on the Internet facing interface, ge0, is assigned by DHCP. Internal IP addresses are part of the subnet.

Place the keywords in the correct location in the NAT rule to accomplish this task. Note: Not all keywords are used.

Question No: 113 – (Topic 2)

The administrator of a Solaris system that functions as a router wants to modify the default configuration of the in.routed daemon. In which in.routed configuration file, should the administrator modify the time interval in which Router Discovery Advertisements are transmitted?

  1. /etc/gateways

  2. /etc/system

  3. /etc/inet/routing.conf

  4. /etc/defaultrouter

Answer: A

Question No: 114 – (Topic 2)

After connecting a new server to a network switch, you discover that the server is NOT able to communicate with other servers on the same network. You run snoop on the new server and find that it is returning traffic for a network different than the one to which you want to connect the server. Which can be the source of the problem?

  1. The server is configured with the wrong IP address.

  2. A switch port is configured for the wrong VLAN.

  3. ARP cache on the server is stale.

  4. The DHCP server is returning incorrect network settings.

  5. Network cable is longer than allowed.

Answer: B

Question No: 115 – (Topic 2)

As a connectionless protocol in peer-to-peer communications, UDP interacts with which adjacent and corresponding layers of the TCP/IP model?

  1. Ethernet and Hardware

  2. Hardware, Network, and Internet

  3. Application, Transport, Internet, and Network

  4. Transport, Application, and Internet

Answer: D

Question No: 116 – (Topic 2)

After configuring and enabling Solaris IP Filter on your workstation, you want to confirm that it is correctly blocking packets. The filtering rules you have configured are:

pass in quick from any to any port = 22 pass in quick from any to any port = 80 pass out all keep state

block in any

Which command can you use to see if packets are being blocked?

  1. ipmon

  2. tail -f /var/adm/messages

  3. ipfstat

  4. netstat -f ipf

Answer: C

Question No: 117 – (Topic 2)

You are an administrator for a web-hosting organization. Each website your company supports has its own IP address. You want to assign each IP address to its own virtual interface on your server. Your server needs to support more websites than the default number of virtual interfaces on the Solaris OS. Which command should you use to change the maximum number of configurable virtual interfaces so that your strategy can be implemented?

  1. ifconfig

  2. route

  3. inetinit

  4. ndd

  5. netstat

Answer: D

Question No: 118 – (Topic 2)

A Solaris IP Filter rule with the keyword quick bypasses the normal rule checking sequence by immediately acting on the network packet if it matches the rule. When does a packet that matches a Solaris IP Filter rule with the quick keyword continue to be processed?

  1. when the rule passes the packet to a numbered group where it matches a later rule

  2. when an earlier rule is also applied to the packet, negating the quick option

  3. when the quick keyword matching is disabled with the ipf command

  4. when the packet is originally redirected by the NAT layer

Answer: A

Question No: 119 – (Topic 2)

You are creating a plan to increase network security. Which two network topologies and devices should be phased out? (Choose two.)

  1. hub

  2. bus

  3. switch

  4. bridge

  5. VLAN

Answer: A,B

Question No: 120 – (Topic 2)

Your workstation is suddenly unable to communicate with hosts on other subnets However, you can still ping hosts on the same network. No changes have been made to the workstation and it has not been rebooted.

The routing table on the workstation contains:

Routing Table: IPv4

Destination Gateway Flags Ref Use Interface

———- ——— — — —– ——- U 1 3 hme0 U 1 0 hme0 UH 23 2304 lo0

What is a possible cause of this problem?

  1. The /etc/defaultrouter file is deleted.

  2. A router stopped broadcasting RDISC packets.

  3. inetd has core dumped.

  4. The switch to which the workstation is connected failed.

Answer: B

