Cisco 210-260 Dumps

Exam: CCNA Security Implementing Cisco Network Security

210-260 Premium VCE File
210-260.vce - Exam-Labs Verified - Instant Download
Get Latest & Verified 210-260 Exam Questions with 30-Days Free Updates
246 Questions & Answers
 $39.99

Free 210-260 Exam Questions in VCE Format
File Votes Size Last comment
6 9.01 MB Sep 22, 2018
Play Cisco 210-260 VCE files with Avanset VCE Simulator
 

Cisco 210-260 Exam Tutorial

Showing 1-20 of 186 Questions   (Page 1 out of 10)


Question No : 1

Scenario
Given the new additional connectivity requirements and the topology diagram, use ASDM
to accomplish the required ASA configurations to meet the requirements.
New additional connectivity requirements:
Once the correct ASA configurations have been configured:
To access ASDM, click the ASA icon in the topology diagram.
To access the Firefox Browser on the Outside PC, click the Outside PC icon in the topology
diagram.
To access the Command prompt on the Inside PC, click the Inside PC icon in the topology
diagram.
Note:
After you make the configuration changes in ASDM, remember to click Apply to apply the
configuration changes.
Not all ASDM screens are enabled in this simulation, if some screen is not enabled, try to
use different methods to configure the ASA to meet the requirements.
In this simulation, some of the ASDM screens may not look and function exactly like the
real ASDM.
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
Cisco 210-260 question 1
[Cisco-210-260-1


Question No : 2

Scenario
In this simulation, you have access to ASDM only. Review the various ASA configurations
using ASDM then answer the five multiple choice questions about the ASA SSLVPN
configurations.
To access ASDM, click the ASA icon in the topology diagram.
Note: Not all ASDM functionalities are enabled in this simulation.
To see all the menu options available on the left navigation pane, you may also need to un-
expand the expanded menu first.
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
Cisco 210-260 question 2
[Cisco-210-260-12

A. test
B. clientless
C. Sales
D. DfltGrpPolicy
E. DefaultRAGroup
F. DefaultWEBVPNGroup


Question No : 3

What command can you use to verify the binding table status?

A. show ip dhcp snooping database
B. show ip dhcp snooping binding
C. show ip dhcp snooping statistics
D. show ip dhcp pool
E. show ip dhcp source binding
F. show ip dhcp snooping


Question No : 4

Which three ESP fields can be encrypted during transmission? (Choose three.)

A. Security Parameter Index
B. Sequence Number
C. MAC Address
D. Padding
E. Pad Length
F. Next Header


Question No : 5

What are two ways to prevent eavesdropping when you perform device-management
tasks? (Choose two.)

A. Use an SSH connection.
B. Use SNMPv3.
C. Use out-of-band management.
D. Use SNMPv2.
E. Use in-band management.


Question No : 6

Refer to the exhibit.
Cisco 210-260 question 6
While troubleshooting site-to-site VPN, you issued the show crypto ipsec sa command.
What does the given output show?

A. IPSec Phase 2 is established between 10.1.1.1 and 10.1.1.5.
B. ISAKMP security associations are established between 10.1.1.5 and 10.1.1.1.
C. IKE version 2 security associations are established between 10.1.1.1 and 10.1.1.5.
D. IPSec Phase 2 is down due to a mismatch between encrypted and decrypted packets.


Question No : 7

When an IPS detects an attack, which action can the IPS take to prevent the attack from
spreading?

A. Deny the connection inline.
B. Perform a Layer 6 reset.
C. Deploy an antimalware system.
D. Enable bypass mode.


Question No : 8

Which accounting notices are used to send a failed authentication attempt record to a AAA
server? (Choose two.)

A. start-stop
B. stop-record
C. stop-only
D. stop


Question No : 9

If a switch receives a superior BPDU and goes directly into a blocked state, what
mechanism must be in use?

A. portfast
B. EtherChannel guard
C. loop guard
D. BPDU guard


Question No : 10

Which feature filters CoPP packets?

A. access control lists
B. class maps
C. policy maps
D. route maps


Question No : 11

Which command initializes a lawful intercept view?

A. username cisco1 view lawful-intercept password cisco
B. parser view cisco li-view
C. li-view cisco user cisco1 password cisco
D. parser view li-view inclusive


Question No : 12

A proxy firewall protects against which type of attack?

A. cross-site scripting attack
B. worm traffic
C. port scanning
D. DDoS attacks


Question No : 13

Which two statements about Telnet access to the ASA are true? (Choose two).

A. You may VPN to the lowest security interface to telnet to an inside interface.
B. You must configure an AAA server to enable Telnet.
C. You can access all interfaces on an ASA using Telnet.
D. You must use the command virtual telnet to enable Telnet.
E. Best practice is to disable Telnet and use SSH.


Question No : 14

Which statement about Cisco ACS authentication and authorization is true?

A. ACS servers can be clustered to provide scalability.
B. ACS can query multiple Active Directory domains.
C. ACS uses TACACS to proxy other authentication servers.
D. ACS can use only one authorization profile to allow or deny requests.


Question No : 15

Refer to the exhibit.
Cisco 210-260 question 15
If a supplicant supplies incorrect credentials for all authentication methods configured on
the switch, how will the switch respond?

A. The supplicant will fail to advance beyond the webauth method.
B. The switch will cycle through the configured authentication methods indefinitely.
C. The authentication attempt will time out and the switch will place the port into the unauthorized state.
D. The authentication attempt will time out and the switch will place the port into VLAN 101.


Question No : 16

Which type of address translation should be used when a Cisco ASA is in transparent
mode?

A. Static NAT
B. Dynamic NAT
C. Overload
D. Dynamic PAT


Question No : 17

What is a potential drawback to leaving VLAN 1 as the native VLAN?

A. It may be susceptible to a VLAN hoping attack.
B. Gratuitous ARPs might be able to conduct a man-in-the-middle attack.
C. The CAM might be overloaded, effectively turning the switch into a hub.
D. VLAN 1 might be vulnerable to IP address spoofing.


Question No : 18

How many crypto map sets can you apply to a router interface?

A. 3
B. 2
C. 4
D. 1


Question No : 19

Which command verifies phase 1 of an IPsec VPN on a Cisco router?

A. show crypto map
B. show crypto ipsec sa
C. show crypto isakmp sa
D. show crypto engine connection active


Question No : 20

What are the primary attack methods of VLAN hopping? (Choose two.)

A. VoIP hopping
B. Switch spoofing
C. CAM-table overflow
D. Double tagging


Showing 1-20 of 186 Questions   (Page 1 out of 10)

210-260 Training Products

210-260 Premium File

  • 246 Questions & Answers
  • Instant Download
  • $39.99

210-260 Training Course

  • 33 Video Lectures
  • Watch Online
  • $24.99

210-260 Study Guide

  • 445 PDF pages
  • Instant Download
  • $24.99

  • Instant Download
  • $0.00

Site Search:

Close

Close
SPECIAL OFFER: GET 30% OFF

Exam-Labs PREMIUM Files

Get 30% Discount on all Exam-Labs.com PREMIUM files!



Enter Your Email Address to Receive Your 30% Discount Code

A Confirmation Link will be sent to this email address to verify your login

We value your privacy.
We will not rent or sell your email address

Close
Download Free Demo of VCE
Exam Simulator

Experience Avanset VCE Exam Simulator for yourself.


Simply submit your e-mail address below to get started with our interactive software demo of your free trial.


Enter Your Email Address

Free Demo Limits: In the demo version you will be able to access only first 5 questions from exam.