background image
Answers to Review Questions
501
22.
C. Telnet access to the router is restricted by using either a standard
or extended IP access list to the VTY lines on the router. The com-
mand
access-class
is used to apply the access list to the VTY lines.
23.
A. The wildcard mask is optional when configuring a standard
access list. If a wildcard mask is not specified, the router interprets the
statement to be that the list is to match all bits of the source address.
24.
D. The only command that shows which access lists have been
applied to an interface is
show
ip
interface
Ethernet
0
. The com-
mand
show
access-lists
displays all configured access lists, and
show
ip
access-lists
displays all configured IP access lists, but nei-
ther command indicates whether the displayed access lists have been
applied to an interface.
25.
C. If neither the keyword
in
nor
out
is used when applying an access
list to an interface, the access list will be applied outbound by default.
If you have planned to implement security inbound to the interface,
ensure that you have used the
in
keyword.
Copyright ©2002 SYBEX, Inc., Alameda, CA
www.sybex.com