This page was exported from Lead2pass New Updated Exam Questions [ https://www.getfreevce.com ] Export date:Sun Dec 22 11:58:41 2024 / +0000 GMT ___________________________________________________ Title: [2017 New] Pass 300-206 Exam By Training Lead2pass New VCE And PDF Dumps (1-25) --------------------------------------------------- 2017 July Cisco Official New Released 300-206 Dumps in Lead2pass.com! 100% Free Download! 100% Pass Guaranteed! We never believe in second chances and Lead2pass brings you the best 300-206 Exam Questions which will make you pass in the first attempt. We guarantee all questions and answers in our 300-206 Dumps are the latest released, we check all exam dumps questions from time to time according to Cisco Official Center, in order to guarantee you can read the latest questions! Following questions and answers are all new published by Cisco Official Exam Center: https://www.lead2pass.com/300-206.html QUESTION 1Which three commands can be used to harden a switch? (Choose three.) A.    switch(config-if)# spanning-tree bpdufilter enableB.    switch(config)# ip dhcp snoopingC.    switch(config)# errdisable recovery interval 900D.    switch(config-if)# spanning-tree guard rootE.    switch(config-if)# spanning-tree bpduguard disableF.    switch(config-if)# no cdp enableAnswer: BDF QUESTION 2What are three features of the Cisco ASA 1000V? (Choose three.) A.    cloning the Cisco ASA 1000VB.    dynamic routingC.    the Cisco VNMC policy agentD.    IPv6E.    active/standby failoverF.    QoS Answer: ACE QUESTION 3If the Cisco ASA 1000V has too few licenses, what is its behavior? A.    It drops all traffic.B.    It drops all outside-to-inside packets.C.    It drops all inside-to-outside packets.D.    It passes the first outside-to-inside packet and drops all remaining packets. Answer: D QUESTION 4A network administrator is creating an ASA-CX administrative user account with the following parameters: - The user will be responsible for configuring security policies on network devices.- The user needs read-write access to policies.- The account has no more rights than necessary for the job. What role will the administrator assign to the user? A.    AdministratorB.    Security administratorC.    System administratorD.    Root AdministratorE.    Exec administrator Answer: B QUESTION 5Which two web browsers are supported for the Cisco ISE GUI? (Choose two.) A.    HTTPS-enabled Mozilla Firefox version 3.xB.    Netscape Navigator version 9C.    Microsoft Internet Explorer version 8 in Internet Explorer 8-only modeD.    Microsoft Internet Explorer version 8 in all Internet Explorer modesE.    Google Chrome (all versions) Answer: AC QUESTION 6With Cisco ASA active/standby failover, by default, how many monitored interface failures will cause failover to occur? A.    1B.    2C.    3D.    4E.    5 Answer: A QUESTION 7Which statement about SNMP support on the Cisco ASA appliance is true? A.    The Cisco ASA appliance supports only SNMPv1 or SNMPv2c.B.    The Cisco ASA appliance supports read-only and read-write access.C.    The Cisco ASA appliance supports three built-in SNMPv3 groups in Cisco ASDM:Authentication and Encryption, Authentication Only, and No Authentication, No Encryption.D.    The Cisco ASA appliance can send SNMP traps to the network management station only using SNMPv2. Answer: C QUESTION 8Which statement about Cisco ASA multicast routing support is true? A.    The Cisco ASA appliance supports PIM dense mode, sparse mode, and BIDIR-PIM.B.    The Cisco ASA appliance supports only stub multicast routing by forwarding IGMP messages from multicast receivers to the upstream multicast router.C.    The Cisco ASA appliance supports DVMRP and PIM.D.    The Cisco ASA appliance supports either stub multicast routing or PIM, but both cannot be enabled at the same time.E.    The Cisco ASA appliance supports only IGMP v1. Answer: D QUESTION 9How many interfaces can a Cisco ASA bridge group support and how many bridge groups can a Cisco ASA appliance support? A.    up to 2 interfaces per bridge group and up to 4 bridge groups per Cisco ASA applianceB.    up to 2 interfaces per bridge group and up to 8 bridge groups per Cisco ASA applianceC.    up to 4 interfaces per bridge group and up to 4 bridge groups per Cisco ASA applianceD.    up to 4 interfaces per bridge group and up to 8 bridge groups per Cisco ASA applianceE.    up to 8 interfaces per bridge group and up to 4 bridge groups per Cisco ASA applianceF.    up to 8 interfaces per bridge group and up to 8 bridge groups per Cisco ASA appliance Answer: D QUESTION 10Which addresses are considered "ambiguous addresses" and are put on the greylist by the Cisco ASA botnet traffic filter feature? A.    addresses that are unknownB.    addresses that are on the greylist identified by the dynamic databaseC.    addresses that are blacklisted by the dynamic database but also are identified by the static whitelistD.    addresses that are associated with multiple domain names, but not all of these domain names are on the blacklist Answer: D QUESTION 11For which purpose is the Cisco ASA CLI command aaa authentication match used? A.    Enable authentication for SSH and Telnet connections to the Cisco ASA appliance.B.    Enable authentication for console connections to the Cisco ASA appliance.C.    Enable authentication for connections through the Cisco ASA appliance.D.    Enable authentication for IPsec VPN connections to the Cisco ASA appliance.E.    Enable authentication for SSL VPN connections to the Cisco ASA appliance.F.    Enable authentication for Cisco ASDM connections to the Cisco ASA appliance. Answer: C QUESTION 12A network engineer is asked to configure NetFlow to sample one of every 100 packets on a router's fa0/0 interface. Which configuration enables sampling, assuming that NetFlow is already configured and running on the router's fa0/0 interface? A.    flow-sampler-map flow1mode random one-out-of 100interface fas0/0flow-sampler flow1B.    flow monitor flow1mode random one-out-of 100interface fas0/0ip flow monitor flow1C.    flow-sampler-map flow1one-out-of 100interface fas0/0flow-sampler flow1D.    ip flow-export source fas0/0 one-out-of 100 Answer: A QUESTION 13What is the default log level on the Cisco Web Security Appliance? A.    TraceB.    DebugC.    InformationalD.    Critical Answer: C QUESTION 14Which command sets the source IP address of the NetFlow exports of a device? A.    ip source flow-exportB.    ip source netflow-exportC.    ip flow-export sourceD.    ip netflow-export source Answer: C QUESTION 15Which two SNMPv3 features ensure that SNMP packets have been sent securely?" Choose two. A.    host authorizationB.    authenticationC.    encryptionD.    compression Answer: BC QUESTION 16Which three logging methods are supported by Cisco routers? (Choose three.) A.    console loggingB.    TACACS+ loggingC.    terminal loggingD.    syslog loggingE.    ACL loggingF.    RADIUS logging Answer: ACD QUESTION 17Which three options are default settings for NTP parameters on a Cisco device? (Choose three.) A.    NTP authentication is enabled.B.    NTP authentication is disabled.C.    NTP logging is enabled.D.    NTP logging is disabled.E.    NTP access is enabled.F.    NTP access is disabled. Answer: BDE QUESTION 18A Cisco ASA is configured for TLS proxy. When should the security appliance force remote IP phones connecting to the phone proxy through the internet to be in secured mode? A.    When the Cisco Unified Communications Manager cluster is in non-secure modeB.    When the Cisco Unified Communications Manager cluster is in secure mode onlyC.    When the Cisco Unified Communications Manager is not part of a clusterD.    When the Cisco ASA is configured for IPSec VPN Answer: A QUESTION 19Which two features are supported when configuring clustering of multiple Cisco ASA appliances? (Choose two.) A.    NATB.    dynamic routingC.    SSL remote access VPND.    IPSec remote access VPN Answer: AB QUESTION 20Which two device types can Cisco Prime Security Manager manage in Multiple Device mode? (Choose two.) A.    Cisco ESAB.    Cisco ASAC.    Cisco WSAD.    Cisco ASA CX Answer: BD QUESTION 21Which technology provides forwarding-plane abstraction to support Layer 2 to Layer 7 network services in Cisco Nexus 1000V? A.    Virtual Service NodeB.    Virtual Service GatewayC.    Virtual Service Data PathD.    Virtual Service Agent Answer: C QUESTION 22To which interface on a Cisco ASA 1000V firewall should a security profile be applied when a VM sits behind it? A.    outsideB.    insideC.    managementD.    DMZ Answer: B QUESTION 23You are configuring a Cisco IOS Firewall on a WAN router that is operating as a Trusted Relay Point (TRP) in a voice network. Which feature must you configure to open data- channel pinholes for voice packets that are sourced from a TRP within the WAN? A.    CACB.    ACLC.    CBACD.    STUN Answer: D QUESTION 24If you encounter problems logging in to the Cisco Security Manager 4.4 web server or client or backing up its databases, which account has most likely been improperly modified? A.    admin (the default administrator account)B.    casuser (the default service account)C.    guest (the default guest account)D.    user (the default user account) Answer: B QUESTION 25Which component does Cisco ASDM require on the host Cisco ASA 5500 Series or Cisco PIX security appliance? A.    a DES or 3DES licenseB.    a NAT policy serverC.    a SQL databaseD.    a Kerberos keyE.    a digital certificate Answer: A Lead2pass new released 300-206 PDF are now for free download, download it right now and pass your exam 100%. 300-206 new questions on Google Drive: https://drive.google.com/open?id=0B3Syig5i8gpDQ3hFS2lmMTdVb3c 2017 Cisco 300-206 exam dumps (All 251 Q&As) from Lead2pass: https://www.lead2pass.com/300-206.html [100% Exam Pass Guaranteed] --------------------------------------------------- Images: --------------------------------------------------- --------------------------------------------------- Post date: 2017-07-11 06:36:11 Post date GMT: 2017-07-11 06:36:11 Post modified date: 2017-07-11 06:36:11 Post modified date GMT: 2017-07-11 06:36:11 ____________________________________________________________________________________________ Export of Post and Page as text file has been powered by [ Universal Post Manager ] plugin from www.gconverters.com