Ensurepass.com : Ensure you pass the IT Exams
2018 Aug Cisco Official New Released 300-206
100% Free Download! 100% Pass Guaranteed!
Implementing Cisco Edge Network Security Solutions
Question No: 111
In which way are management packets classified on a firewall that operates in multiple context mode?
-
by their interface IP address
-
by the routing table
-
by NAT
-
by their MAC addresses
Answer: A
Question No: 112
Which two option are protocol and tools are used by management plane when using cisco ASA general management plane hardening ?
-
Unicast Reverse Path Forwarding
-
NetFlow
-
Routing Protocol Authentication
-
Threat detection
-
Syslog
-
ICMP unreachables
-
Cisco URL Filtering
Answer: B,E Explanation:
http://www.cisco.com/web/about/security/intelligence/firewall-best-practices.html
Question No: 113
What can an administrator do to simultaneously capture and trace packets in a Cisco ASA?
-
Install a Cisco ASA virtual appliance.
-
Use the trace option of the capture command.
-
Use the trace option of the packet-tracer command.
-
Install a switch with a code that supports capturing, and configure a trunk to the Cisco ASA.
Answer: B
Question No: 114
Which statement about the Cisco ASA botnet traffic filter is true?
-
The four threat levels are low, moderate, high, and very high.
-
By default, the dynamic-filter drop blacklist interface outside command drops traffic with a threat level ofhigh or very high.
-
Static blacklist entries always have a very high threat level.
-
A static or dynamic blacklist entry always takes precedence over the static whitelist entry.
Answer: C
Question No: 115
Which statement about Cisco ASA NetFlow v9 (NSEL) is true?
-
NSEL events match all traffic classes in parallel
-
NSEL is has a time interval locked at 20 seconds and is not user configurable
-
NSEL tracks flow-create, flow-teardown, and flow-denied events and generates appropriate NSEL datarecords
-
You cannot disable syslog messages that have become redundant because of NSEL
-
NSEL tracks the flow continuously and provides updates every 10 second
-
NSEL provides stateless IP flow tracking that exports all record od a specific flow
Answer: C Explanation:
http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/monitor
_nsel.html
Question No: 116
When access rule properties are configured within ASDM, which traffic direction type is required by global and management access rule?
-
Any
-
Both in and out
-
In
-
Out
Answer: C
Question No: 117
Which product can manage licenses, updates, and a single signature policy for 15 separate IPS appliances?
-
Cisco Security Manager
-
Cisco IPS Manager Express
-
Cisco IPS Device Manager
-
Cisco Adaptive Security Device Manager
Answer: A
Question No: 118
In which two modes is zone-based firewall high availability available? (Choose two.)
-
IPv4 only
-
IPv6 only
-
IPv4 and IPv6
-
routed mode only
-
transparent mode only
-
both transparent and routed modes
Answer: C,D
Question No: 119
Refer to the exhibit.
What is the effect of this configuration?
-
The firewall will inspect IP traffic only between networks 192.168.1.0 and 192.168.2.0.
-
The firewall will inspect all IP traffic except traffic to 192.168.1.0 and 192.168.2.0.
-
The firewall will inspect traffic only if it is defined within a standard ACL.
-
The firewall will inspect all IP traffic.
Answer: A
Question No: 120
Prior to a software upgrade, which Cisco Prime Infrastructure feature determines if the devices being upgraded have sufficient RAM to support te new software ?
-
Software Upgrade Report
-
Image Management Report
-
Upgrade Analysis Report
-
Image Analysis Report
Answer: C Explanation:
http://www.cisco.com/c/en/us/td/docs/net_mgmt/prime/infrastructure/2- 0/user/guide/prime_infra_ug/ maint_images.html
100% Ensurepass Free Download!
–300-206 PDF
100% Ensurepass Free Guaranteed!
–300-206 Dumps
EnsurePass | ExamCollection | Testking | |
---|---|---|---|
Lowest Price Guarantee | Yes | No | No |
Up-to-Dated | Yes | No | No |
Real Questions | Yes | No | No |
Explanation | Yes | No | No |
PDF VCE | Yes | No | No |
Free VCE Simulator | Yes | No | No |
Instant Download | Yes | No | No |