[Free] 2018(Aug) Ensurepass Cisco 210-260 Dumps with VCE and PDF 31-40

Ensurepass.com : Ensure you pass the IT Exams
2018 Aug Cisco Official New Released 210-260
100% Free Download! 100% Pass Guaranteed!

Implementing Cisco Network Security

Question No: 31

Which alert protocol is used with Cisco IPS Manager Express to support up to 10 sensors?

  1. SDEE

  2. Syslog

  3. SNMP

  4. CSM

Answer: A

Question No: 32

Which option describes information that must be considered when you apply an access list to a physical interface?

  1. Protocol used for filtering

  2. Direction of the access class

  3. Direction of the access group

  4. Direction of the access list

Answer: C

Question No: 33

In which two situations should you use out-of-band management? (Choose two.)

  1. when a network device fails to forward packets

  2. when you require ROMMON access

  3. when management applications need concurrent access to the device

  4. when you require administrator access from multiple locations

  5. when the control plane fails to respond

Answer: A,B

Question No: 34

Which type of PVLAN port allows a host in the same VLAN to communicate only with promiscuous hosts?

  1. Community host in the PVLAN

  2. Isolated host in the PVLAN

  3. Promiscuous host in the PVLAN

  4. Span for host in the PVLAN

Answer: B

Question No: 35

Which countermeasures can mitigate ARP spoofing attacks? (Choose two.)

  1. Port security

  2. DHCP snooping

  3. IP source guard

  4. Dynamic ARP inspection

Answer: B,D

Question No: 36

Which two authentication types does OSPF support? (Choose two.)

  1. plaintext

  2. MD5

  3. HMAC

  4. AES 256

  5. SHA-1

  6. DES

Answer: A,B

Question No: 37

Which Sourcefire logging action should you choose to record the most detail about a connection?

  1. Enable logging at the end of the session.

  2. Enable logging at the beginning of the session.

  3. Enable alerts via SNMP to log events off-box.

  4. Enable eStreamer to log events off-box.

Answer: A

Question No: 38

If a switch port goes into a blocked state only when a superior BPDU is received, what mechanism must be in use?

  1. STP root guard

  2. EtherChannel guard

  3. loop guard

  4. STP BPDU guard

Answer: A

Explanation: Root guard allows the device to participate in STP as long as the device does not try to become the root. If root guard blocks the port, subsequent recovery is automatic. Recovery occurs as soon as the offending device ceases to send superior BPDUs.

Source: http://www.cisco.com/c/en/us/support/docs/lan-switching/spanning-tree- protocol/10588-74.html

Question No: 39

What is the only permitted operation for processing multicast traffic on zone-based firewalls?

  1. Only control plane policing can protect the control plane against multicast traffic.

  2. Stateful inspection of multicast traffic is supported only for the self-zone.

  3. Stateful inspection for multicast traffic is supported only between the self-zone and the internal zone.

  4. Stateful inspection of multicast traffic is supported only for the internal zone.

Answer: A

Question No: 40

Whit which type of Leyer 2 attack can you “do something” for one host:

  1. MAC spoofing

  2. CAM overflow….

Answer: A

100% Ensurepass Free Download!
210-260 PDF
100% Ensurepass Free Guaranteed!
210-260 Dumps

EnsurePass ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
PDF VCE Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No