Ensurepass.com : Ensure you pass the IT Exams
2018 Mar Cisco Official New Released 400-251
100% Free Download! 100% Pass Guaranteed!
http://www.EnsurePass.com/400-251.html
CCIE Security Written Exam (v5.0)
Question No: 211 – (Topic 2)
What is the purpose of enabling the IP option selective Drop feature on your network routers?
-
To protect the internal network from IP spoofing attacks.
-
To drop IP fragmented packets.
-
To drop packet with a TTL value of Zero.
-
To protect the network from DoS attacks.
Answer: D
Question No: 212 – (Topic 2)
What are two action you can take to protect against DDOS attacks on cisco router and switches?(Choose two)
-
Rate limit SYN packets
-
Filter the RFC-1918 address space
-
configuration IP snooping
-
implement MAC address filtering
-
Configuration PIM-SM
Answer: A,B
Question No: 213 – (Topic 2)
Refer to the Exhibit. which service or feature must be enabled on 209.165.200.255 produce the given output?
-
The finger service
-
A BOOTp server
-
A TCP small server
-
The PAD service
Answer: C
Question No: 214 – (Topic 2)
Refer to the exhibit, what Is the effect of the given command sequence?
-
The router telnet to the on port 2002
-
The AP console port is shut down.
-
A session is opened between the router console and the AP.
-
The router telnet to the router on port 2002.
Answer: C
Question No: 215 – (Topic 2)
Class
-map nbar_rtp
Match protocol rtp payload-type “0,1,4-0x10, 10001b – 10010b,64”
The above NBAR configuration matches RTP traffic with which payload types? A)
B)
C)
D)
-
Option A
-
Option B
-
Option C
-
Option D Answer: A
Question No: 216 – (Topic 2)
Which VPN technology is based on GDOI (RFC 3547)?
-
MPLS Layer 3 VPN
-
MPLS Layer 2 VPN
-
GET VPN
-
IPsec VPN
Answer: C
Question No: 217 – (Topic 2)
Refer to the exhibit you have configured two route-map instances on R1 which passes traffic from switch 1 on both VLAN 1 and VLAN 2.You wish to ensure that*the first route- map instance matches packets from VLAN 1 and sets next hop to 3232::2/128.* the second route-map instance matches packets from VLAN 2 and sets the next hop to
3232::3/128 What feature can you implement on R1 to make this configuration possible?
-
PBR
-
BGP local-preference
-
BGP next-hop
-
VSSP
-
GLBP
Answer: C
Question No: 218 DRAG DROP – (Topic 2)
Drag each step in the SCEP workflow on the left into the correct order of operations on the right?
Answer:
Explanation:
Step 1: Obtain and validate CA cert.
Step 2: Generate a certificate signing request for the CA.
Step 3: Sent a request to SCEP server to confirm that the cert was signed. Step 4: Re- enroll the client and replace the existing certificate.
Step 5: Check Certificate revocation list.
Question No: 219 DRAG DROP – (Topic 2)
Drag and drop each step in the SCEP process on the left into the correct order of operations on the right.
Answer:
Explanation:
A:5,B:4,C:2,D:3,E:1,F:6.
Question No: 220 – (Topic 2)
Which of these is a core function of the risk assessment process? (Choose one.)
-
performing regular network upgrades
-
performing network optimization
-
performing network posture validation
-
establishing network baselines
-
prioritizing network roll-outs
Answer: C
100% Ensurepass Free Download!
–Download Free Demo:400-251 Demo PDF
100% Ensurepass Free Guaranteed!
–400-251 Dumps
EnsurePass | ExamCollection | Testking | |
---|---|---|---|
Lowest Price Guarantee | Yes | No | No |
Up-to-Dated | Yes | No | No |
Real Questions | Yes | No | No |
Explanation | Yes | No | No |
PDF VCE | Yes | No | No |
Free VCE Simulator | Yes | No | No |
Instant Download | Yes | No | No |
100-105 Dumps VCE PDF
200-105 Dumps VCE PDF
300-101 Dumps VCE PDF
300-115 Dumps VCE PDF
300-135 Dumps VCE PDF
300-320 Dumps VCE PDF
400-101 Dumps VCE PDF
640-911 Dumps VCE PDF
640-916 Dumps VCE PDF
70-410 Dumps VCE PDF
70-411 Dumps VCE PDF
70-412 Dumps VCE PDF
70-413 Dumps VCE PDF
70-414 Dumps VCE PDF
70-417 Dumps VCE PDF
70-461 Dumps VCE PDF
70-462 Dumps VCE PDF
70-463 Dumps VCE PDF
70-464 Dumps VCE PDF
70-465 Dumps VCE PDF
70-480 Dumps VCE PDF
70-483 Dumps VCE PDF
70-486 Dumps VCE PDF
70-487 Dumps VCE PDF
220-901 Dumps VCE PDF
220-902 Dumps VCE PDF
N10-006 Dumps VCE PDF
SY0-401 Dumps VCE PDF