โ† All ACL Flashcard Decks

Rule Configuration & Permissions Management Flashcards

7 cards from real ACL practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Rule Configuration & Permissions Management flashcards as text
  1. In a filesystem ACL, what does a 'mask' entry control?

    Answer: The maximum effective permissions for named users, named groups, and the owning group

    The POSIX ACL mask entry limits the maximum effective permissions for named users, named groups, and the owning group, acting as an upper bound.

  2. Which statement about ACL rule evaluation order is TRUE for most router implementations?

    Answer: Rules are evaluated in the order they are configured, top to bottom

    Most router ACL implementations evaluate rules sequentially from top to bottom, stopping at the first match regardless of rule specificity.

  3. An administrator wants to log all packets that match a particular ACL deny rule. What keyword should be added to the ACL entry in Cisco IOS?

    Answer: log

    Appending the 'log' keyword to an ACL entry causes the router to generate a syslog message each time a packet matches that entry.

  4. What is a 'time-based ACL' used for?

    Answer: Applying ACL rules only during specified time periods using a time-range

    Time-based ACLs reference a time-range object to activate or deactivate specific rules during defined periods, enabling schedule-based access control.

  5. Which of the following ACL rules would correctly permit all ICMP echo (ping) requests from host 192.168.5.10 to any destination?

    Answer: permit icmp host 192.168.5.10 any echo

    ICMP is a Layer 3 protocol (not TCP/UDP); the correct syntax specifies 'icmp' as the protocol and 'echo' as the ICMP message type.

  6. What is the effect of applying an ACL with only deny statements and no explicit permit on a router interface?

    Answer: All traffic is blocked because the implicit deny-all at the end denies everything not explicitly permitted

    Every ACL ends with an implicit 'deny any,' so an ACL with only deny rules still blocks all traffic because nothing ever matches a permit.

  7. An extended ACL uses the keyword 'any' in the source field. What does this represent?

    Answer: 0.0.0.0 with wildcard mask 255.255.255.255

    'any' is shorthand for source address 0.0.0.0 with wildcard mask 255.255.255.255, which matches every possible IP address.