显示标签为“642-661”的博文。显示所有博文
显示标签为“642-661”的博文。显示所有博文

2013年10月25日星期五

Le plus récent matériel de formation examen Cisco 642-661 de certification

On doit faire un bon choix pour passer le test Cisco 642-661. C'est une bonne affaire à choisir la Q&A de Pass4Test comme le guide d'étude, parce que vous allez obtenir la Certification Cisco 642-661 en dépensant d'un petit invertissement. D'ailleur, la mise à jour gratuite pendant un an est aussi gratuite pour vous. C'est vraiment un bon choix.

Les produits de Pass4Test a une bonne qualité, et la fréquence de la mise à jour est bien impressionnée. Si vous avez déjà choisi la Q&A de Pass4Test, vous n'aurez pas le problème à réussir le test Cisco 642-661.

Les produits de Pass4Test sont recherchés par les experts de Pass4Test qui se profitent de leurs connaissances et leurs expériences dans l'Idustrie IT. Si vous allez participer le test Cisco 642-661, vous devez choisir Pass4Test. La Q&A de Pass4Test peut vous aider à préparer mieux le test Cisco 642-661 avec sa grande couiverture des questions. En face d'un test très difficile, vous pouvez obtenir le Certificat Cisco 642-661 sans aucune doute.

Le produit de Pass4Test est réputée par une bonne qualité et fiabilité. Vous pouvez télécharger le démo grantuit pour prendre un essai, nons avons la confiance que vous seriez satisfait. Vous n'aurez plus de raison à s'hésiter en face d'un aussi bon produit. Ajoutez notre Q&A au panier, vous aurez une meilleure préparation avant le test.

Choisissez le Pass4Test, choisissez le succès de test Cisco 642-661. Bonne chance à vous.

Est-ce que vous vous souciez encore de réussir le test Cisco 642-661? Est-ce que vous attendez plus le guide de formation plus nouveaux? Le guide de formation vient de lancer par Pass4Test peut vous donner la solution. Vous pouvez télécharger la partie de guide gratuite pour prendre un essai, et vous allez découvrir que le test n'est pas aussi dur que l'imaginer. Pass4Test vous permet à réussir 100% le test. Votre argent sera tout rendu si vous échouez le test.

Code d'Examen: 642-661
Nom d'Examen: Cisco (CCIP Configuring BGP on Cisco Routers (BGP))
Questions et réponses: 204 Q&As

Vous choisissez l'aide de Pass4Test, Pass4Test fait tous effort à vous aider à réussir le test. De plus, la mise à jour de Q&A pendant un an est gratuite pour vous. Vous n'avez plus raison à hésiter. Pass4Test est une meilleure assurance pour le succès de test Cisco 642-661. Ajoutez la Q&A au panier.

642-661 Démo gratuit à télécharger: http://www.pass4test.fr/642-661.html

NO.1 Look at the picture.
Correct:
Green choice6---->Yellow Choice1
Green choice1---->Yellow Choice2
Green choice3---->Yellow Choice3
Green choice5---->Yellow Choice4
Green choice4---->Yellow Choice5
Green choice2---->Yellow Choice6

Cisco   642-661   certification 642-661   642-661

NO.2 The neighbor {ip-address} maximum-prefix {maximum number} command prevents which
router condition?
A.frequent BGP session resets
B.routing instability
C.asymmetric routing
D.CPU and memory exhaustion
E.route flaps
Correct:D

Cisco   642-661   certification 642-661   642-661

NO.3 What can cause a single sourced iBGP route not to be selected as the best route?
A.The BGP MED is 0.
B.The BGP next-hop is unreachable.
C.The BGP origin is incomplete.
D.The BGP weight is 0.
E.The BGP local preference is 0.
F.BGP synchronization is disabled.
Correct:B

Cisco   642-661   certification 642-661   642-661

NO.4 Which configuration will enable the R1 router in the AS51003 sub-AS (member-AS) as a route
reflector with neighbors 10.1.1.1 and 10.2.2.2 as its route-reflector clients?
A.! R1 router bgp 51003 bgp confederation identifier 55111 bgp confederation peers 51001 51002
neighbor 10.1.1.1 remote-as 51003 neighbor 10.2.2.2 remote-as 51003 neighbor 10.1.1.1
route-reflector-client neighbor 10.2.2.2 route-reflector-client
B.! R1 router bgp 51003 bgp confederation identifier 55111 bgp confederation peers 51001 51002
neighbor 10.1.1.1 remote-as 51001 neighbor 10.2.2.2 remote-as 51002 neighbor 10.1.1.1
route-reflector-client neighbor 10.2.2.2 route-reflector-client
C.! R1 router bgp 55111 bgp confederation identifier 51003 neighbor 10.1.1.1 remote-as 51003 neighbor
10.2.2.2 remote-as 51003 neighbor 10.1.1.1 route-reflector-client neighbor 10.2.2.2 route-reflector-client
D.! R1 router bgp 55111 bgp confederation identifier 51003 neighbor 10.1.1.1 remote-as 55111 neighbor
10.2.2.2 remote-as 55111 neighbor 10.1.1.1 route-reflector-client neighbor 10.2.2.2 route-reflector-client
Correct:A

Cisco   642-661   certification 642-661   642-661

NO.5 Which two of these statements about hierarchical route reflectors are correct? (Choose two.)
A.A route reflector can be a client of another route reflector.
B.Each cluster within the hierarchy can only contain one route reflector.
C.The hierarchy can be as deep as needed.
D.A route reflector can have clients in different clusters.
E.Hierarchical route reflectors are set up using three levels (access, distribution, and core layers).
Correct:A C

Cisco   642-661   certification 642-661   642-661

NO.6 Lab
Correct:

Cisco   642-661   certification 642-661   642-661

NO.7 Refer to the exhibit. What effect will the route-map PEER-FILTER have on the route
24.11.62.0/24 with a community of 10:100 injected by the peer router in AS632?
A.weight will be set to 100
B.weight will be set to 150
C.local preference will be set to 105
D.weight will be set to 100, local preference will be set to 105
E.weight will be set to 150, local preference will be set to 105
Correct:A

Cisco   642-661   certification 642-661   642-661

NO.8 When creating iBGP multipaths which three criteria must be met by multiple paths to the same
destination? (Choose three.)
A.Router IDs must be the same on all routers.
B.Each destination must have a different next-hop address.
C.The destination AS-number must be different for each destination.
D.Multi-exit discriminator attributes must be the same on all paths.
E.Interior Gateway Protocol distance must be identical on each path.
Correct:B D E

Cisco   642-661   certification 642-661   642-661

NO.9 Based on the following show ip bgp neighbors 2.2.2.2 output, which two statements are true?
(Choose two.)R1#show ip bgp neighbors 2.2.2.2BGP neighbor is 2.2.2.2, remote AS 102, internal
linkIndex 1, Offset 0, Mask 0x2BGP version 4, remote router ID 66.0.0.1BGP state=Established,
table version=1, up for 00:14:52Last read 00:00:52, hold time is 180, keepalive interval is 60
secondsMinimum time between advertisement runs is 5 secondsReceived 233 messages, 0
notifications, 0 in queueSent 206 messages, 0 notifications, 0 in queuePrefix advertised 0,
suppressed 0, withdrawn 0Connections established 17; dropped 16Last reset 00:15:02, due to
User reset18 accepted prefixes consume 576 bytes, maximum limit 20Threshold for warning
message 80%0 history paths consume 0 bytes
A.R1 has accepted 20 prefixes from the 2.2.2.2 IBGP neighbor.
B.R1 generated a warning message to the router's console after the 2.2.2.2 IBGP neighbor sent 16
prefixes to R1.
C.R1 generated a warning message to the router's console after the 2.2.2.2 IBGP neighbor sent 15
prefixes to R1.
D.R1 will drop its neighbor relationship to the 2.2.2.2 IBGP neighbor if 2.2.2.2 sends two more additional
prefixes to R1.
E.R1 will drop its neighbor relationship to the 2.2.2.2 IBGP neighbor if 2.2.2.2 sends three more additional
prefixes to R1.
Correct:B E

Cisco   642-661   certification 642-661   642-661

NO.10 How can you prevent multihomed customers with connections to two service providers from
acting as a transit AS?
A.Enable BGP synchronization on all the customer routers.
B.Use MED to influence the inbound traffic from the ISPs.
C.Use static routing to the ISPs.
D.Use an AS-path access-list to filter the BGP updates to the ISPs.
E.Use conditional advertisements when sending BGP updates to the ISPs.
Correct:D

Cisco   642-661   certification 642-661   642-661

NO.11 Which command is used to configure the external, confederation-wide AS number?
A.router(config)#router bgp {as-number}
B.router(config-router)#bgp confederation peers {as-number}
C.router(config-router)#bgp confederation identifier {as-number}
D.router(config-router)#bgp cluster-id {as-number}
E.router(config-router)#neighbor {ip address} remote-as {as-number}
Correct:C

Cisco   642-661   certification 642-661   642-661

NO.12 Which of these situations best describe when to use the AS number translation feature?
A.All single-homed customers are using public AS numbers.
B.All single-homed customers are using private AS numbers.
C.All multihomed customers are using public AS numbers.
D.All multihomed customers are assigned different AS numbers from different ISPs.
Correct:D

Cisco   642-661   certification 642-661   642-661

NO.13 Based on the R1 router BGP configuration shown, which three statements are correct?
(Choose three.)
A.R1 is in AS 50101 according to the 192.168.100.1 neighbor.
B.R1 is in AS 50101 according to the 10.1.1.1 neighbor.
C.The 192.168.100.1 neighbor must be directly connected to R1.
D.R1 is a route-reflector client.
E.The 10.4.4.4 neighbor is an EBGP neighbor.
F.BGP updates coming in from the 192.168.100.1 neighbor must be processed by the setlp route-map.
Correct:A C F

Cisco   642-661   certification 642-661   642-661

NO.14 What are two purposes of the BGP scan-time command? (Choose two.)
A.to tune the BGP process which walks the BGP table and confirms the reachability of next hops
B.to allow faster detection of downed BGP peers
C.to improve BGP convergence time
D.to tune the BGP update interval
E.to decrease the effects of unstable routes by increasing the route suppression time
Correct:A C

Cisco   642-661   certification 642-661   642-661

NO.15 Which BGP configuration option is designed to reduce router processing load caused by
unstable routes?
A.neighbor {ip-address} maximum-prefix {number}
B.bgp dampening
C.no sync
D.bgp deterministic-med
E.sync
F.bgp scan-time
Correct:B

Cisco   642-661   certification 642-661   642-661

NO.16 Which two of the following are true regarding the BGP Prefix-Based outbound route filtering
feature? (Choose two.)
A.IP multicast routes are not supported.
B.Outbound route filtering is configured only on a per-address family basis.
C.Outbound route filtering can be configured for either iBGP or eBGP sessions.
D.The outbound route filter can be defined in a Prefix list, Distribute list or Access lists.
E.Outbound route filtering is more effective when a distance vector IGP is used.
Correct:A B

Cisco   642-661   certification 642-661   642-661

NO.17 In the diagram, the customer is using BGP to connect to a single ISP over two permanent links.
In this scenario, which input and output prefix-list filtering is typically enabled on the ISP routers?
(Choose two.)
A.ip prefix-list test-in permit 10.1.1.0/24 le 32
B.ip prefix-list test-in permit 10.0.0.0/8 le 32
C.ip prefix-list test-in permit 0.0.0.0/0
D.ip prefix-list test-out permit 10.1.1.0/24 le 32
E.ip prefix-list test-out permit 10.0.0.0/8 le 32
F.ip prefix-list test-out permit 0.0.0.0/0
Correct:A F

Cisco   642-661   certification 642-661   642-661

NO.18 Which two configuration commands will complete the BGP configuration on R1 so it will
conditionally announce the 172.0.0.0/8 prefix to R4 via BGP? (Choose two.)hostname R1!!output
omitted!1. ___________________________!router bgp 65001neighbor 172.16.1.1 remote-as
65001neighbor 2.2.2.2 remote-as 65001neighbor 4.4.4.4 remote-as 387!2.
____________________________!
A.2. network 172.16.0.0auto-summary
B.2. network 172.0.0.0 mask 255.0.0.0
C.1. ip route 172.0.0.0 255.0.0.0 null0
D.1. ip route 172.0.0.0 255.0.0.0 null0 255
E.1. ip route 172.0.0.0 255.0.0.0 172.16.1.1
F.2. aggregate-address 172.0.0.0 mask 255.0.0.0
Correct:B E

Cisco   642-661   certification 642-661   642-661

NO.19 Look at the picture.
Correct:
Green choice1---->Yellow Choice1
Green choice3---->Yellow Choice2
Green choice2---->Yellow Choice3
Green choice6---->Yellow Choice4

Cisco   642-661   certification 642-661   642-661

NO.20 Look at the picture.
Correct:
Green choice1---->Yellow Choice1
Green choice1---->Yellow Choice4
Green choice1---->Yellow Choice5
Green choice2---->Yellow Choice2
Green choice2---->Yellow Choice3

Cisco   642-661   certification 642-661   642-661

C'est un bon choix si vous prendre l'outil de formation de Pass4Test. Vous pouvez télécharger tout d'abord le démo gratuit pour prendre un essai. Vous aurez plus confiances sur Pass4Test après l'essai de notre démo. Si malheureusement, vous ne passe pas le test, votre argent sera tout rendu.

2013年7月28日星期日

Pass4Test offre une formation sur Cisco 350-021 350-018 350-001 642-691 642-661 matériaux examen

Vous pouvez télécharger tout d'abord le démo gratuit pour prendre un essai. Vous serez confiant davantage sur Pass4Test après l'essai de démo. Vous allez réussir le test Cisco 350-021 350-018 350-001 642-691 642-661 sans aucune doute si vous choisissez le Pass4Test.


Peut-être vous voyez les guides d'études similaires pour le test Cisco 350-021 350-018 350-001 642-691 642-661, mais nous avons la confiance que vous allez nous choisir finalement grâce à notre gravité d'état dans cette industrie et notre profession. Pass4Test se contribue à amérioler votre carrière. Vous saurez que vous êtes bien préparé à passer le test Cisco 350-021 350-018 350-001 642-691 642-661 lorsque vous choisissez la Q&A de Pass4Test. De plus, un an de service gratuit en ligne après vendre est aussi disponible pour vous.


Pass4Test est un seul site de provider le guide d'étude Cisco 350-021 350-018 350-001 642-691 642-661 de qualité. Peut-être que vous voyiez aussi les Q&A Cisco 350-021 350-018 350-001 642-691 642-661 dans autres sites, mais vous allez découvrir laquelle est plus complète. En fait, Pass4Test est aussi une resource de Q&A pour les autres site web.


Code d'Examen: 350-021

Nom d'Examen: Cisco (CCIE SP Cable Qualification Exam)

Questions et réponses: 399 Q&As

Code d'Examen: 350-018

Nom d'Examen: Cisco (CCIE Security written)

Questions et réponses: 686 Q&As

Code d'Examen: 350-001

Nom d'Examen: Cisco (CCIE Routing and Switching Written Exam #350-001)

Questions et réponses: 486 Q&As

Code d'Examen: 642-691

Nom d'Examen: Cisco (CCIP BGP + MPLS Exam (BGP + MPLS))

Questions et réponses: 80 Q&As

Code d'Examen: 642-661

Nom d'Examen: Cisco (CCIP Configuring BGP on Cisco Routers (BGP))

Questions et réponses: 204 Q&As

L'équipe de Pass4Test autorisée offre sans arrêt les bonnes resources aux candidats de test Certification Cisco 350-021 350-018 350-001 642-691 642-661. Les documentations particulièrement visée au test Cisco 350-021 350-018 350-001 642-691 642-661 aide beaucoup de candidats. La Q&A de la version plus nouvelle est lancée maintenant. Vous pouvez télécharger le démo gratuit en Internet. Généralement, vous pouvez réussir le test 100% avec l'aide de Pass4Test, c'est un fait preuvé par les professionnels réputés IT. Ajoutez le produit au panier, vous êtes l'ensuite à réussir le test Cisco 350-021 350-018 350-001 642-691 642-661.


350-018 Démo gratuit à télécharger: http://www.pass4test.fr/350-018.html


NO.1 What is the net effect of using ICMP type 4 messages to attack RFC 1122-compliant hosts?
A. Hosts will perform a soft TCP reset and restart the connection.
B. Hosts will perform a hard TCP reset and tear down the connection.
C. Hosts will reduce the rate at which they inject traffic into the network.
D. Hosts will redirect packets to the IP address indicated in the ICMP type 4 message.
E. Hosts will retransmit the last frame sent prior to receiving the ICMP type 4 message.
Answer: C

Cisco examen   350-018   350-018 examen   350-018   350-018   350-018

NO.2 Referring to the partial debug output shown in the exhibit, which of these values is contained inside the
brackets [4] in line 1?
A. RADIUS identifier field value
B. RADIUS attribute type value
C. RADIUS VSA number
D. RADIUS VSA length
E. vendor ID
Answer: B

Cisco   certification 350-018   certification 350-018   350-018

NO.3 In the example shown, Host A has attempted a DCOM attack using Metasploit from Host A to Host
A. Which three statements best describe how event logs and IPS alerts can be used in conjunction with
each other to determine if the attack was successful? (Choose three.)
B. Cisco Security MARS will collect the syslog and the IPS alerts based on time.
C. The IPS event will suggest that an attack may have occurred because a signature was triggered.
D. IPS and Cisco ASA adaptive security appliance will use the Unified Threat Management protocol to
determine that both devices saw the attack
E. Cisco ASA adaptive security appliance will see the attack in both directions and will be able to
determine if an attack was successful.
F. The syslog event will indicate that an attack is likely because a TCP SYN and an ACK followed the
attempted attack.
Answer: ABE

certification Cisco   350-018 examen   350-018

NO.4 In ISO 27001 ISMS, which three of these certification process phases are required to collect
information for ISO 27001? (Choose three.)
A. discover
B. certification audit
C. post-audit
D. observation
E. pre-audit
F. major compliance
Answer: BCE

Cisco   350-018   350-018   350-018   certification 350-018

NO.5 For a router to obtain a certificate from a CA, what is the first step of the certificate enrollment process?
A. The router generates a certificate request and forwards it to the CA.
B. The router generates an RSA key pair.
C. The router sends its public key to the CA.
D. The CA sends its public key to the router.
E. The CA verifies the identity of the router.
F. The CA generates a certificate request and forwards it to the router.
Answer: B

Cisco   350-018   certification 350-018   350-018   350-018 examen   350-018 examen

NO.6 How do TCP SYN attacks take advantage of TCP to prevent new connections from being established
to a host under attack?
A. sending multiple FIN segments, forcing TCP connection release
B. filling up a host listen queue by failing to ACK partially opened TCP connections
C. taking advantage of the host transmit backoff algorithm by sending jam signals to the host
D. incrementing the ISN of each segment by a random number, causing constant TCP retransmissions
E. sending TCP RST segments in response to connection SYN+ACK segments, forcing SYN
retransmissions
Answer: B

Cisco   certification 350-018   350-018   350-018 examen   350-018 examen

NO.7 Which of these statements best describes the advantage of using Cisco Secure Desktop, which is part
of the Cisco ASA VPN solution?
A. Cisco Secure Desktop creates a separate computing environment that is deleted when you finish,
ensuring that no confidential data is left on the shared or public computer.
B. Cisco Secure Desktop is used to protect access to your registry and system files when browsing to
SSL VPN protected pages.
C. Cisco Secure Desktop ensures that an SSL protected password cannot be exploited by a man-
in-the-middle attack using a spoofed certificate
D. Cisco Secure Desktop hardens the operating system of the machines you are using at the time it is
launched.
Answer: A

certification Cisco   350-018   350-018 examen

NO.8 After the client opens the command channel (port 21) to the FTP server and requests passive mode,
what will be the next step?
A. The FTP server sends back an ACK to the client.
B. The FTP server allocates a port to use for the data channel and transmits that port number to the client.
C. The FTP server opens the data channel to the client using the port number indicated by the client.
D. The FTP client opens the data channel to the FTP server on port 20.
E. The FTP client opens the data channel to the FTP server on port 21.
Answer: B

Cisco   350-018   350-018 examen

NO.9 ASDM on the Cisco ASA adaptive security appliance platform is executed as which of the following?
A. an ActiveX application or a JavaScript application
B. a JavaScript application and a PHP application
C. a fully compiled .Net Framework application
D. a fully operational Visual Basic application
E. a Java applet or a standalone application using the Java Runtime Environment
Answer: E

certification Cisco   certification 350-018   350-018   350-018

NO.10 Refer to the exhibit.
Which three of the following statements are correct? (Choose three.)
A. The exhibit shows an example of a NAC Framework network.
B. The exhibit shows an example of a NAC Appliance network.
C. The network utilizes in-band admission control.
D. The network utilizes out-of-band admission control.
E. Cisco NAC Appliance Agent is used to verify end-user PC compliance with the security policy
F. Cisco Trust Agent is used to verify end-user PC compliance with the security policy.
Answer: BDE

Cisco   350-018   certification 350-018   350-018

NO.11 Which of these best represents a typical attack that takes advantage of RFC 792, ICMP type 3
messages?
A. blind connection-reset
B. large packet echo request
C. packet fragmentation offset
D. broadcast-based echo request
E. excessive bandwidth consumption
Answer: A

Cisco examen   350-018   350-018

NO.12 Which two of these commands are required to implement a Cisco Catalyst 6500 Series Firewall
Services Module (FWSM) in a Catalyst 6500 running Cisco IOS? (Choose two.)
A. firewall multiple-vlan-interfaces
B. firewall module vlan-group
C. module secure-traffic
D. firewall vlan-group <vlan-x>
E. firewall module secure-traffic
Answer: BD

Cisco   certification 350-018   350-018

NO.13 Which method is used by Cisco Security Agent to get user state information from the operating
system?
A. secure SSL using HTTPS session
B. application (Layer 7)-based (Cisco proprietary) encryption
C. NetBIOS socket on TCP port 137-139 and UDP port 137-139
D. Win32 application binary interface (ABI)
E. Win32 application programming interface (API)
Answer: E

Cisco   350-018   350-018   350-018   350-018

NO.14 Which one of the following is not a valid RADIUS packet type.?
A. access-reject
B. access-response
C. access-challenge
D. access-reply
E. access-accept
Answer: B

Cisco examen   350-018   350-018   350-018

NO.15 Which two of these statements about SMTP and ESMTP are the most correct? (Choose two.)
A. Open mail relays are often used for spamming.
B. ESMTP does not provide more security features than SMTP.
C. SMTP provides authenticated e-mail sending.
D. Worms often spread via SMTP.
Answer: AD

certification Cisco   350-018   certification 350-018   350-018 examen   350-018 examen   350-018

NO.16 When using Cisco Easy VPN Remote (hardware client deployment) in the client-mode setup, all of the
following statements are correct except which one?
A. Perform split tunneling on the Cisco Easy VPN Remote device.
B. Initiate a connection from a network behind the Cisco Easy VPN Server to the network behind the
Cisco Easy VPN Remote client.
C. Set the Cisco Easy VPN Remote to allow an administrator or user to manually initiate a connection.
D. Set the Cisco Easy VPN Remote to automatically connect to the Cisco Easy VPN Server.
Answer: B

Cisco   350-018   350-018   350-018

NO.17 Which two of these Cisco Catalyst security features offer the best ways to prevent ARP cache poisoning?
(Choose two.)
A. Dynamic ARP Inspection
B. port security
C. MAC address notification
D. DHCP snooping
E. PortFast
F. 802.1x authentication
Answer: AD

certification Cisco   350-018 examen   certification 350-018   350-018   350-018   certification 350-018

NO.18 When a failover takes place on an adaptive security appliance configured for failover, all active
connections are dropped and clients must reestablish their connections, unless the adaptive security
appliance is configured in which two of the following ways? (Choose two.)
A. active/stand by failover
B. active/active failover
C. active/active failover and a state failover link has been configured
D. active/standby failover and a state failover link has been configured
E. to use a serial cable as the failover link
F. LAN-based failover
Answer: CD

certification Cisco   350-018 examen   350-018 examen

NO.19 Refer to the exhibit.
Switch SW2 has just been added to Fa0/23 on SW1. After a few seconds, interface Fa0/23 on SW1 is
placed in the error-disabled state. SW2 is removed from port 0/23 and inserted into SW1 port Fa0/22 with
the same result. What is the most likely cause of this problem?
A. The spanning-tree PortFast feature has been configured on SW1.
B. BPDU filtering has been enabled either globally or on the interfaces of SW1.
C. The BPDU guard feature has been enabled on the Fast Ethernet interfaces of SW1.
D. The Fast Ethernet interfaces of SW1 are unable to autonegotiate speed and duplex with SW2.
E. PAgP is unable to correctly negotiate VLAN trunk characteristics on the link between SWI and SW2.
Answer: C

certification Cisco   certification 350-018   350-018   350-018

NO.20 Cisco ASA 5500 Series Adaptive Security Appliance application layer protocol inspection is
implemented using which of these?
A. Protocol Header Definition File (PHDF)
B. Cisco Modular Policy Framework
C. Reverse Path Forwarding (RPF)
D. NetFlow version 9
E. Traffic Classification Definition File (TCDF)
Answer: B

Cisco   350-018   350-018