Cisco 642-637 (Securing Networks with Cisco Routers and Switches (SECURE) v1.0) 시험의 자격증은 여러분에 많은 도움이 되리라 믿습니다. IT업계에 종사하시는 분들은 한층 더 업그레이드될 것이고 생활에서도 분명히 많은 도움이 될 것입니다. 자격증취득은 자신의 경력에 중요한 가산점이 될수 있는것입니다 . Cisco 642-637 (Securing Networks with Cisco Routers and Switches (SECURE) v1.0) 시험은 여러분이 it지식 테스트 입니다. Pass4Test에서는 여러분의 편리를 위하여 Pass4Test만의 최고이자 최신인 Cisco 642-637 (Securing Networks with Cisco Routers and Switches (SECURE) v1.0) 덤프를 제공해 드립니다. Pass4Test는 여러분의 최고의 선택입니다. Pass4Test는 제일 전면적인 Cisco 642-637 (Securing Networks with Cisco Routers and Switches (SECURE) v1.0) 인증시험자료의 문제와 답을 가지고 있습니다.Pass4Test는 여러분이 원하는 Cisco 642-637 (Securing Networks with Cisco Routers and Switches (SECURE) v1.0) 시험관련자료를 해결해드릴 수 있는 사이트입니다. Pass4Test에서 제공하는 자료로 응시하면 패스는 문제 없습니다, 여러분은 고득점으로 시험을 통과할 것입니다. Cisco 642-637 (Securing Networks with Cisco Routers and Switches (SECURE) v1.0) 시험을 위하여 최고의 선택이 필요합니다. Pass4Test 를 선택함으로 좋은 성적도 얻고 시간은 적게 들이고 돈도 많이 절약됩니다.우리 Pass4Test 는 여러분의 응시에 많은 도움이 되어드립니다.
NO.1 You are troubleshooting reported connectivity issues from remote users who are accessing corporate
headquarters via an IPsec VPN connection. What should be your first step in troubleshooting these
issues?
A. issue a show crypto isakmp policy command to verify matching policies of the tunnel endpoints
B. ping the tunnel endpoint
C. run a traceroute to verify the tunnel path
D. debug the connection process and look for any error messages in tunnel establishment
Answer: B
NO.2 Which two of these are benefits of implementing a zone-based policy firewall in transparent mode?
(Choose two.)
A. Less firewall management is needed.
B. It can be easily introduced into an existing network.
C. IP readdressing is unnecessary.
D. It adds the ability to statefully inspect non-IP traffic.
E. It has less impact on data flows.
Answer: B,C
NO.3 Which action does the command private-vlan association 100,200 take?
A. configures VLANs 100 and 200 and associates them as a community
B. associates VLANs 100 and 200 with the primary VLAN
C. creates two private VLANs with the designation of VLAN 100 and VLAN 200
D. assigns VLANs 100 and 200 as an association of private VLANs
Answer: B
NO.4 Which Cisco IOS IPS feature allows to you remove one or more actions from all active signatures
based on the attacker and/or target address criteria, as well as the event risk rating criteria?
A. signature event action filters
B. signature event action overrides
C. signature attack severity rating
D. signature event risk rating
Answer: A
NO.5 Which of these is a configurable Cisco IOS feature that triggers notifications if an attack attempts to
exhaust critical router resources and if preventative controls have been bypassed or are not working
correctly?
A. Control Plane Protection
B. Management Plane Protection
C. CPU and memory thresholding
D. SNMPv3
Answer: C
NO.6 You are running Cisco IOS IPS software on your edge router. A new threat has become an issue. The
Cisco IOS IPS software has a signature that can address the new threat, but you previously retired the
signature. You decide to unretire that signature to regain the desired protection level. How should you act
on your decision?
A. Retired signatures are not present in the routers memory. You will need to download a new signature
package to regain the retired signature.
B. You should re-enable the signature and start inspecting traffic for signs of the new threat.
C. Unretiring a signature will cause the router to recompile the signature database, which can temporarily
affect performance.
D. You cannot unretire a signature. To avoid a disruption in traffic flow, it's best to create a custom
signature until you can download a new signature package and reload the router.
Answer: C
Cisco 642-637 덤프공부자료
Posted 2013/1/21 6:37:58 | Category: 미분류 | Tag: