1.
Which of the following occurs when an IDS or IPS does not identify malicious traffic that enters the network? (Select the best answer.)
2.
Which of the following lost or stolen device options are available to employees when MDM is integrated with ISE? (Select 3 choices.)
3.
Which of the following private VLAN port types communicate only with promiscuous ports? (Select the best answer.)
4.
On which of the following layers of the hierarchical network design model should you implement PortFast, BPDU guard, and root guard? (Select the best answer.)
5.
Which of the following is the man-in-the-middle attack that is most likely to be used to cause a workstation to send traffic to a false gateway IP address? (Select the best answer.)
6.
On a Cisco ASA, which of the following RADIUS authentication protocols are not supported? (Select 2 choices.)
7.
Which of the following is the best reason to enforce blacklisting by security zone on a Cisco device that uses the Security Intelligence IP Address Reputation feature? (Select the best answer.)
8.
Which of the following is not true of SIM systems? (Select the best answer.)
9.
In the Cisco ISE GUI, you click Administration > Certificates > Certificate Store and notice that a SCEP NDES server RA certificate is installed on the ISE node. Which of the following best describes the reason the certificate is there? (Select the best answer.)
10.
You issue the following commands on a Cisco router:
tacacsserver host ts1 timeout 30 tacacsserver timeout 20
Which of the following is true about how the Cisco router communicates with the TACACS+ server? (Select the best answer.)