Cisco CODE: 642-618 Exam Name: Deploying Cisco ASA Firewall Features (FIREWALL v2.0)
Click the link below to buy full version as Low as $39
http://www.testsexpert.com/642-618.html
Type
Microsoft
1
IBM
Demo
HP Cisco Oracle Instant download after purchase
http://www.testsexpert.com/642-618.html
Symantec
Question: 1 On the Cisco ASA, tcp-map can be applied to a traffic class using which MPF CLI configuration command? A. inspect B. sysopt connection C. tcp-options D. parameters E. set connection advanced-options
Answer: E
Question: 2 By default, which traffic can pass through a Cisco ASA that is operating in transparent mode with out explicitly allowing it using an ACL? A. ARP B. BPDU C. CDP D. OSPF multicasts E. DHCP
Answer: A
Question: 3 When enabling a Cisco ASA to send syslog messages to a syslog server, which syslog level will produce the most messages? A. notifications B. informational C. alerts D. emergencies E. errors
Microsoft
2
IBM
HP Cisco Oracle Instant download after purchase
http://www.testsexpert.com/642-618.html
Symantec
F. debugging
Answer: F
Question: 4 Refer to the exhibit.
What can be determined about the connection status? A. The output is showing normal activity to the inside 10.1.1.50 web server. B. Many HTTP connections to the 10.1.1.50 web server have successfully completed the threeway TCP handshake. C. Many embryonic connections are made from random sources to the 10.1.1.50 web server. D. The 10.1.1.50 host is triggering SYN flood attacks against random hosts on the outside. E. The 10.1.1.50 web server is terminating all the incoming HTTP connections.
Microsoft
3
IBM
HP Cisco Oracle Instant download after purchase
http://www.testsexpert.com/642-618.html
Symantec
Answer: C
Question: 5 What mechanism is used on the Cisco ASA to map IP addresses to domain names that are contained in the botnet traffic filter dynamic database or local blacklist? A. HTTP inspection B. DNS inspection and snooping C. WebACL D. dynamic botnet database fetches (updates) E. static blacklist F. static whitelist
Answer: B
Question: 6 Refer to the exhibit.
Which statement about the policy map named test is true? A. Only HTTP inspection will be applied to the TCP port 21 traffic. B. Only FTP inspection will be applied to the TCP port 21 traffic. C. both HTTP and FTP inspections will be applied to the TCP port 21 traffic. D. No inspection will be applied to the TCP port 21 traffic, because the http class map configuration conflicts with the ftp class map.
Microsoft
4
IBM
HP Cisco Oracle Instant download after purchase
http://www.testsexpert.com/642-618.html
Symantec
E. All FTP traffic will be denied, because the FTP traffic will fail the HTTP inspection.
Answer: B
Question: 7 Refer to the exhibit.
Which Cisco ASA feature can be configured using this Cisco ASDM screen? A. Cisco ASA command authorization using TACACS+ B. AAA accounting to track serial, ssh, and telnet connections to the Cisco ASA C. Exec Shell access authorization using AAA D. cut-thru proxy E. AAA authentication policy for Cisco ASDM access
Answer: D
Question: 8 Refer to the exhibit.
Microsoft
5
IBM
HP Cisco Oracle Instant download after purchase
http://www.testsexpert.com/642-618.html
Symantec
Which command enables the stateful failover option? A. failover link MYFAILOVER GigabitEthernet0/2 B. failover lan interface MYFAILOVER GigabitEthernet0/2 C. failover interface ip MYFAILOVER 172.16.5.1 255.255.255.0 standby 172.16.5.10 D. preempt E. failover group 1 primary F. failover lan unit primary
Answer: A
Question: 9 In which type of environment is the Cisco ASA MPF set connection advanced-options tcp-statebypass option the most useful? A. SIP proxy B. WCCP C. BGP peering through the Cisco ASA D. asymmetric traffic flow E. transparent firewall
Answer: D
Question: 10 Microsoft
6
IBM
HP Cisco Oracle Instant download after purchase
http://www.testsexpert.com/642-618.html
Symantec
Refer to the exhibit.
Which statement about the MPF configuration is true? A. Any non-RFC complaint FTP traffic will go through additional deep FTP packet inspections. B. FTP traffic must conform to the FTP RFC, and the FTP connection will be dropped if the PUT command is used. C. Deep FTP packet inspections will be performed on all TCP inbound and outbound traffic on the outside interface. D. The ftp-pm policy-map type should be type inspect. E. Due to a configuration error, all FTP connections through the outside interface will not be permitted.
Answer: B
Microsoft
7
IBM
HP Cisco Oracle Instant download after purchase
http://www.testsexpert.com/642-618.html
Symantec
Cisco CODE: 642-618 Exam Name: Deploying Cisco ASA Firewall Features (FIREWALL v2.0)
Click the link below to buy full version as Low as $39
http://www.testsexpert.com/642-618.html Microsoft
Cisco
IBM
HP
Other
MCTS 70-336 70-337
CCNA 640-911 642-998 642-997 642-902
IBM Lotus
00M-244 000-M60
AIS
MBS 70-332
CCNP 642-832 642-813 642-825 642-845
LOT-442 000-M44
MCAS 77-602
CCSP 642-627 642-637 642-647 642-545
000-444 000-910
MCSE 70-281 70-282
CCIE 350-001 350-018 350-029 350-060
COG-105 COG-185
MCSA 2003 70-620
DATA CENTER 642-972 642-973 642-974 642-975
000-005 000-032
70-323 9L0-063 9L0-010 9L0-517 HP2-E53 70-321 650-179 E20-533 00M-646 MB2-876 646-206 9L0-412 MB6-884 220-701 650-196 3305 MB6-871 HP2-Z22 9L0-518 9A0-146 HP2-H23 000-184 1Z0-527 HP2-B91 000-781 M70-201 N10-004 7004 HP3-X11 312-50v8
70-462
98-361
MB3-861
77-601 77-604 70-284
70-461 70-680
70-463
MB3-862
77-605 70-285
70-291
Microsoft
8
IBM
LOT-403 000-M62
IBM Mastery
000-M43 000-M45
HP0-311
HP0-M28
HP0-A25
HP0-M30
APC
HP2-K10 HP2-B93
HP0-M98 HP0-H22
Solutions Expert
MASE HP0-J33 HP0-M48 HP0-M49 HP0-M50
IBM Cognos
ASE
000-640 000-913 COG-180 COG-200
IBM Specialist
000-015 000-042
HP0-066 HP0-781
HP0-082 HP0-782
CSE
HP0-090 HP0-277
HP0-276 HP0-760
HP Cisco Oracle Instant download after purchase
http://www.testsexpert.com/642-618.html
Symantec