1.
How many SNMP communities can be created in a ScreenOS device?
2.
What do you need to change in your VPN configuration to use certificates for authentication?
3.
You have configured set nsrp vsd-group master-always-exist on your ScreenOS device. What does this do?

 
4.
Which command allows you to verify active connections when Shared IKE ID is in use?
5.
From which port can the ScreenOS device send SYSLOG messages?
6.
What is the maximum number of DSCP bits that can be configured for rewrite by a ScreenOS device?
7.
What determines which interface is the primary link in a redundant interface group?
8.
You have four policies configured for the egress interface with 10 Mbps physical bandwidth. The policies are configured as follows:
Policy 1 - Highest Priority, 2 Mbps guaranteed, 3 Mbps maximum
Policy 2 - 1st Priority, 3 Mbps guaranteed, 4 Mbps maximum
Policy 3 - 1st Priority, 3 Mbps guaranteed, 3 Mbps maximum
Policy 4 - Highest Priority, 1 Mbps guaranteed, 4 Mbps maximum
Assuming the policies are processed in the order shown, which policy will drop traffic first under a full traffic load?
9.
You have enabled RIP in a hub and spoke VPN environment. You are not receiving routes from one of your spokes, although the VPN is up. When you run debug on the spoke device, you see regular RIP updates being generated on the tunnel interface. You are receiving and sending routes to the rest of your spokes. What is the problem?
10.
Which commands would you use to create a zone and make it ready to perform IP classification for a VSYS?