5.0 Security Fundamentals
Access Control Lists Practice Questions
Standard and extended ACLs, placement, and wildcard masks.
Author-reviewed by LabFabric · 6 September 2026 · Report a content issue
One solved question, so you can see how these are marked
An outbound interface leads only to the protected IPv4 subnet. Which simplest ACL type can allow forwarded traffic from hosts 172.16.1.1 and 172.16.2.1 while denying other sources on that interface?
A standard access list, since it can match specific source addresses and includes an implicit deny
A standard ACL filters based only on source address, which is enough to permit two specific hosts and rely on the implicit deny any at the end to block everyone else, as long as it is applied close to the destination.
Every question in the set below is marked like this. The answers stay hidden until you pick one.
Find related practice in the CCNA path