Sie sind auf Seite 1von 4

New VCE and PDF Exam Dumps from PassLeader

➢ Vendor: Cisco

➢ Exam Code: 210-260

➢ Exam Name: Implementing Cisco Network Security (IINS)

➢ New Questions (Nov/2019)

Visit PassLeader and Download Full Version 210-260 Exam Dumps

NEW QUESTION 538


Which component of a security zone firewall policy defines how traffic is handled?

A. ACL
B. Service policy
C. Policy map
D. Class map

Answer: D

NEW QUESTION 539


Of all parameters that are negotiated for the IKE Phase 1 tunnel, which parameter is the only one
that does not have to exactly match between VPN pees to be accepted?

A. DH group
B. Hashing algorithm
C. Encryption algorithm
D. Digital signature
E. Authentication method
F. Lifetime

Answer: B

NEW QUESTION 540


What is the range of levels provided by the Privilege command?

A. 0-16
B. 0-15
C. 1-16
D. 1-14
E. 0-14
F. 1-15

Answer: D

NEW QUESTION 541

210-260 Exam Dumps 210-260 Exam Questions 210-260 PDF Dumps 210-260 VCE Dumps
https://www.passleader.com/210-260.html
New VCE and PDF Exam Dumps from PassLeader
You are configuring an IPS that must be able to react to a potential attack. Which deployment do
you use?

A. Passive deployment that uses tap mode.


B. Transparent inline mode.
C. Passive deployment that uses failsafe.
D. Inline deployment that uses a SPAN.

Answer: D

NEW QUESTION 542


Which two types of malware can self-replica and spread? (Choose two.)

A. Backdoors
B. Worms
C. Viruses
D. Trojans
E. Bots

Answer: BC

NEW QUESTION 543


In a Cisco Cloud Web Security environment, when can network traffic bypass the scanning proxies?

A. When the client is on a trusted corporate network.


B. When the client is connected to a VPN service that bypass proxies.
C. When the client is connected to a WPA2 Enterprise network.
D. When the client is connected to a wired network.

Answer: B

NEW QUESTION 544


Which option is the logical container used to maintain information about the connections going
through a Cisco ASA firewall?

A. State table
B. NAT table
C. Routing table
D. Cisco Express Forwading table

Answer: C

NEW QUESTION 545


On which operating system does the Cisco Email Security Appliance run?

A. Cisco ESA-OS
B. Cisco AsynOS
C. Cisco IOS XE
D. Cisco IOS XR
E. Cisco NX-OS

210-260 Exam Dumps 210-260 Exam Questions 210-260 PDF Dumps 210-260 VCE Dumps
https://www.passleader.com/210-260.html
New VCE and PDF Exam Dumps from PassLeader
Answer: E

NEW QUESTION 546


Which statement about TACACS+ is true?

A. Passwords are transmitted between the client and server using MD5 hasing.
B. TACACS_ is flexible than RADIUS because it separates all AAA into individual processes.
C. TACACS_ is used for access to network resources more than administrator access to network devices.
D. TACACS_ server listens UDP port 1813 for accounting.
E. All data that is transmitted between the client and TACACS+ server is cleartext.

Answer: C

NEW QUESTION 547


Which effect of the secure boot-image command is true?

A. It configure the device to boot to the secure IOS image.


B. It archives a secure copy of the device configuration.
C. It archives a secure copy of the IOS image.
D. It displays the status of the bootset.

Answer: C

NEW QUESTION 548


Which two statements about an IPS in tap mode are true? (Choose two.)

A. It requires an synchronous routing configuration for full traffic analysis.


B. The device forwards all traffic, regardless of its source or destination.
C. It directly analyzes the actual packets as they pass through the system.
D. It can analyze events without impacting network efficiency.
E. It is unable to drop packets in the main flow.

Answer: BC

NEW QUESTION 549


How will a stateful firewall handle an inbound packet that it receives and cannot match in its state
table?

A. Passes the traffic.


B. Drops the traffic.
C. Broadcasts the traffic.
D. Looks for an ACL, and acts based upon the ACL.

Answer: C

NEW QUESTION 550


Which 802.1x component enforces the network access policy?

A. authentication server
B. authenticator
C. RADIUS server

210-260 Exam Dumps 210-260 Exam Questions 210-260 PDF Dumps 210-260 VCE Dumps
https://www.passleader.com/210-260.html
New VCE and PDF Exam Dumps from PassLeader
D. supplicant

Answer: A

NEW QUESTION 551


Drag and Drop
Drag and drop the each port-security violation mode from the left onto the corresponding action on
the right.

Answer:

NEW QUESTION 552


......

Visit PassLeader and Download Full Version 210-260 Exam Dumps

210-260 Exam Dumps 210-260 Exam Questions 210-260 PDF Dumps 210-260 VCE Dumps
https://www.passleader.com/210-260.html

Das könnte Ihnen auch gefallen