HPE6-A45 Exam QuestionsBrowse all questions from this exam

HPE6-A45 Exam - Question 70


Refer to the exhibit.

A network administrator needs to alter myACL so that it permits all traffic that arrives in VLAN 2 and is destined to 10.1.10.0/24. Besides this change, the ACL must continue to act as it does now. The administrator plans this new rule: permit ip any 10.1.10.0/24

How should the administrator apply this rule to meet all requirements?

Show Answer
Correct Answer: B

To ensure that the new rule permits all traffic destined for 10.1.10.0/24 while maintaining the current ACL functionality, the rule must be added before the current third rule, which is a deny rule. This arrangement ensures that the new permit rule is considered before any deny rules that would otherwise block the traffic. Resequencing the ACL with more space allows the administrator to add the new rule at the appropriate position, specifically before the sequence ID of the current third rule.

Discussion

1 comment
Sign in to comment
MekkElekOption: B
Sep 9, 2020

A. Apply the new rule without a rule ID to ensure that the switch applies the automatic processing order to it. B. Resequence the ACL with more space, then add the new rule with a sequence ID before the ID for the current third rule. C. Remove the ACL from the VLAN and re-apply it as an inbound VLAN ACL (VACL). Then, add the new rule with any ID higher than 2. D. Enable ACL grouping on the switch. Add the new rule in a new ACL. Then, group the new ACL with myACL. B is correct.