HPE6-A45 Exam QuestionsBrowse all questions from this exam

HPE6-A45 Exam - Question 15


Network administrators need to track when traffic matches deny entry in an ACL applied to a port. They want the alert to be sent to a syslog server that is already set up to send logs.

What should administrators do to enable alerts?

Show Answer
Correct Answer: A

To enable alerts when traffic matches a deny entry in an ACL, network administrators should specify the log option for the ACL entry and enable ACL debugging. The log option ensures that any matches to this ACL rule are logged, and enabling ACL debugging allows these logs to be appropriately captured and sent to the configured syslog server.

Discussion

9 comments
Sign in to comment
EdwinHOption: A
Mar 31, 2020

Correct is A. The option B have as debug destination the session (cli session) not syslog server

LeTanOption: D
Sep 23, 2020

D right sent to a syslog server

rjoseppOption: B
Aug 22, 2019

Correct is B

barsoom1980Option: A
May 12, 2020

correct is A

GiGiWRCOption: A
May 26, 2020

A is the correct one.

helpmmgOption: B
Mar 19, 2020

Yes B: Sw(config)# logging ipaddresshere Sw(config)# logging facility syslog Sw(config)# debug destination loggin Sw(config)# debug acl

udo2020
Oct 3, 2020

In B there is only the "debug destination session" option. Does it also log to a syslog server? I don't think so...

DGriffOption: A
Aug 28, 2020

A. Use the debug command to direct ACL logging output to the current console session and/or to a Syslog server. Note that you must also use the logging <ip-addr> command to specify the addresses of Syslog servers to which you want log messages sent.

udo2020Option: A
Sep 15, 2020

It is clearly A because the log option is a requirement and w/o that acl logging doesn't work.

m0ng00seOption: A
Oct 29, 2020

Correct answer is A