Cisco Exam Questions

Which two statements are true about Unicast Reverse Path Forwarding Loose Mode?

Which two statements are true about Unicast Reverse Path Forwarding Loose Mode? (Choose
two.)

A.
It is used in multihome network scenarios.

B.
It can be used with BGP to mitigate DoS and DDoS.

C.
It does not need to have CEF enabled.

D.
It is enabled via the interface level command ip verify unicast reverse-path.

E.
It cannot be used with “classification” access lists.

Explanation:
The Unicast Reverse Path Forwarding Loose Mode feature creates a new option for Unicast
Reverse Path Forwarding (Unicast RPF), providing a scalable anti-spoofing mechanism suitable
for use in multihome network scenarios. This mechanism is especially relevant for Internet Service
Providers (ISPs), specifically on routers that have multiple links to multiple ISPs. In addition,
Unicast RPF (strict or loose mode), when used in conjunction with a Border Gateway Protocol
(BGP) “trigger, ” provides an excellent quick reaction mechanism that allows network traffic to be
dropped on the basis of either the source or destination IP address, giving network administrators
an efficient tool for mitigating denial of service (DoS) and distributed denial of service (DDoS)
attacks.

http://www.cisco.com/en/US/docs/ios/12_2t/12_2t13/feature/guide/ft_urpf.html