If you disable PortFast on switch ports that are connected to a Cisco ASA and globally turn on BPDU filtering, what is the effect on the switch ports?
If you disable PortFast on switch ports that are connected to a Cisco ASA and globally turn on BPDU filtering, what is the effect on the switch ports?A . The switch ports are prevented from going into an err-disable state if a BPDU is received.B . The switch ports are...
Which two options are purposes of the packet-tracer command? (Choose two.)
Which two options are purposes of the packet-tracer command? (Choose two.)A . to filter and monitor ingress traffic to a switchB . to configure an interface-specific packet traceC . to simulate network traffic through a data pathD . to debug packet drops in a production networkE . to automatically correct...
When you install a Cisco ASA AIP-SSM, which statement about the main Cisco ASDM home page is true?
When you install a Cisco ASA AIP-SSM, which statement about the main Cisco ASDM home page is true?A . It is replaced by the Cisco AIP-SSM home page.B . It must reconnect to the NAT policies database.C . The administrator can manually update the page.D . It displays a new...
The Cisco ASA must support dynamic routing and terminating VPN traffic. Which three Cisco ASA options will not support these requirements? (Choose three.)
The Cisco ASA must support dynamic routing and terminating VPN traffic. Which three Cisco ASA options will not support these requirements? (Choose three.)A . transparent modeB . multiple context modeC . active/standby failover modeD . active/active failover modeE . routed modeF . no NAT-controlView AnswerAnswer: A,B,D
At which layer does Dynamic ARP Inspection validate packets?
At which layer does Dynamic ARP Inspection validate packets?A . Layer 2B . Layer 3C . Layer 4D . Layer 7View AnswerAnswer: A
Refer to the exhibit. Which command can produce this packet tracer output on a firewall?
Refer to the exhibit. Which command can produce this packet tracer output on a firewall?A . packet-tracer input INSIDE tcp 192.168.1.100 88 192.168.2.200 3028B . packet-tracer output INSIDE tcp 192.168.1.100 88 192.168.2.200 3028C . packet-tracer input INSIDE tcp 192.168.2.200 3028 192.168.1.100 88D . packet-tracer output INSIDE tcp 192.168.2.200 3028 192.168.1.100...
What type of attack is being mitigated on the Cisco ASA appliance?
Refer to the exhibit. What type of attack is being mitigated on the Cisco ASA appliance?A . HTTP and POST flood attackB . HTTP Compromised-Key AttackC . HTTP Shockwave Flash exploitD . HTTP SQL injection attackView AnswerAnswer: D
When a traffic storm threshold occurs on a port, into which state can traffic storm control put the port?
When a traffic storm threshold occurs on a port, into which state can traffic storm control put the port?A . DisabledB . Err-disabledC . DisconnectedD . BlockedE . ConnectedView AnswerAnswer: B
When a Cisco ASA is configured in transparent mode, how can ARP traffic be controlled?
When a Cisco ASA is configured in transparent mode, how can ARP traffic be controlled?A . By enabling ARP inspection; however, it cannot be controlled by an ACLB . By enabling ARP inspection or by configuring ACLsC . By configuring ACLs; however, ARP inspection is not supportedD . By configuring...
between two interfaces of the same security level?
What can you do to enable inter-interface firewall communication for traffic that flows between two interfaces of the same security level?A . Run the command same-security-traffic permit inter-interface globally.B . Run the command same-security-traffic permit intra-interface globally.C . Configure both interfaces to have the same security level.D . Run the...