Hi All,

I would appreciate the correct solutions (as expected in the lab grading)
for below points on various sections of the labs.

1) if a question asked to authenticate and authorized on particular telnet
connection ie line 1 & 3 and not to authtenticate on line say 5, will the
following solution is correct (assumed we have already configured aaa)

line vty 1 (or 3)
login authentication xxxx (aaa method)
authorization exec xxxx
authorization command xx xxxx
!
line vty 5
login authentication yyyy (aaa method, none)

2) when configuring IP NBAR do we need to add the following command in
addition service-police under the interface.
 interface x/x
  ip nbar protocol-discovery
  service-policy input <pm-name>

3)  when configuring customs signature...and asked that signature should
protect tunneling over http (such as P2P or instant messaging), do we need
to configure any additional configuration apart from configuring service
http type engine matching any patern (using regex) and service-port 80..
because still I'm confused how does protect tunneling over http for
P2P/instant messaging etc.

Thanks in advance...
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to