[Free] Download New Updated (April 2016) Cisco 300-206 Actual Tests 111-120

By | April 6, 2016

Ensurepass

QUESTION 111

clip_image001

clip_image003

clip_image005

 

SNMP users have a specified username, a group to which the user belongs, authentication password, encryption password, and authentication and encryption algorithms to use. The authentication algorithm options are MD5 and SHA. The encryption algorithm options are DES, 3DES, andAES (which is available in 128,192, and 256 versions). When you create a user, with which option must you associate it?

 

A.

an SNMP group

B.

at least one interface

C.

the SNMP inspection in the global_policy

D.

at least two interfaces

 

Correct Answer: A

Explanation:

This can be verified via the ASDM screen shot shown here:

 

clip_image007

QUESTION 112

Which VTP mode supports private VLANs on a switch?

 

A.

transparent

B.

server

C.

client

D.

off

 

Correct Answer: A

 

 

QUESTION 113

Which two statements about Cisco IOS Firewall are true? (Choose two.)

 

A.

It provides stateful packet inspection.

B.

It provides faster processing of packets than Cisco ASA devices provide.

C.

It provides protocol-conformance checks against traffic.

D.

It eliminates the need to secure routers and switches throughout the network.

E.

It eliminates the need to secure host machines throughout the network.

 

Correct Answer: AC

 

 

QUESTION 114

What is the CLI command to enable SNMPv3 on the Cisco Web Security Appliance?

 

A.

snmpconfig

B.

snmpenable

C.

configsnmp

D.

enablesnmp

 

Correct Answer: A

 

 

QUESTION 115

Which configuration keyword will configure SNMPv3 with authentication but no encryption?

 

A.

Auth

B.

Priv

C.

No auth

D.

Auth priv

 

Correct Answer: A

 

 

QUESTION 116

Which two statements about zone-based firewalls are true? (Choose two.)

 

A.

More than one interface can be assigned to the same zone.

B.

Only one interface can be in a given zone.

C.

An interface can only be in one zone.

D.

An interface can be a member of multiple zones.

E.

Every device interface must be a member of a zone.

 

Correct Answer: AC

 

 

QUESTION 117

What is the result of the default ip ssh server authenticate user command?

 

A.

It enables the public key, keyboard, and password authentication methods.

B.

It enables the public key authentication method only.

C.

It enables the keyboard authentication method only.

D.

It enables the password authentication method only.

 

Correct Answer: A

 

 

QUESTION 118

Which three options describe how SNMPv3 traps can be securely configured to be sent by IOS? (Choose three.)

 

A.

An SNMPv3 group is defined to configure the read and write views of the group.

B.

An SNMPv3 user is assigned to SNMPv3 group and defines the encryption and authentication credentials.

C.

An SNMPv3 host is configured to define where the SNMPv3 traps will be sent.

D.

An SNMPv3 host is used to configure the encryption and authentication credentials for SNMPv3 traps.

E.

An SNMPv3 view is defined to configure the address of where the traps will be sent.

F.

An SNMPv3 group is used to configure the OIDs that will be reported.

 

Correct Answer: ABC

 

 

QUESTION 119

Which two features does Cisco Security Manager provide? (Choose two.)

 

A.

Configuration and policy deployment before device discovery

B.

Health and performance monitoring

C.

Event management and alerting

D.

Command line menu for troubleshooting

E.

Ticketing management and tracking

 

Correct Answer: BC

 

 

QUESTION 120

Which three compliance and audit report types are available in Cisco Prime Infrastructure? (Choose three.)

 

A.

Service

B.

Change Audit

C.

Vendor Advisory

D.

TAC Service Request

E.

Validated Design

F.

Smart Business Architecture

 

Correct Answer: ABC

 

Free VCE & PDF File for Cisco 300-206 Real Exam

Instant Access to Free VCE Files: CCNA | CCNP | CCIE …
Instant Access to Free PDF Files: CCNA | CCNP | CCIE …