[Free] Download New Updated (December) Cisco 640-554 Exam Questions 191-200

By | December 12, 2015

Ensurepass

QUESTION 191

Which Cisco Security Manager feature enables the configuration of unsupported device features?

 

A.

Deployment Manager

B.

FlexConfig

C.

Policy Object Manager

D.

Configuration Manager

 

Correct Answer: B

 

 

QUESTION 192

Which statement about IPv6 address allocation is true?

 

A.

IPv6-enabled devices can be assigned only one IPv6 IP address.

B.

A DHCP server is required to allocate IPv6 IP addresses.

C.

IPv6-enabled devices can be assigned multiple IPv6 IP addresses.

D.

ULA addressing is required for Internet connectivity.

 

Correct Answer: C

 

 

QUESTION 193

Which command will configure a Cisco ASA firewall to authenticate users when they enter the enable syntax using the local database with no fallback method?

 

A.

aaa authentication enable console LOCAL SERVER_GROUP

B.

aaa authentication enable console SERVER_GROUP LOCAL

C.

aaa authentication enable console local

D.

aaa authentication enable console LOCAL

 

Correct Answer: D

 

 

QUESTION 194

Which command will configure a Cisco router to use a TACACS+ server to authorize network services with no fallback method?

 

A.

aaa authorization exec default group tacacs+ none

B.

aaa authorization network default group tacacs+ none

C.

aaa authorization network default group tacacs+

D.

aaa authorization network default group tacacs+ local

 

Correct Answer: C

 

 

QUESTION 195

Which three statements about RADIUS are true? (Choose three.)

 

A.

RADIUS uses TCP port 49.

B.

RADIUS uses UDP ports 1645 or 1812.

C.

RADIUS encrypts the entire packet.

D.

RADIUS encrypts only the password in the Access-Request packet.

E.

RADIUS is a Cisco proprietary technology.

F.

RADIUS is an open standard.

 

Correct Answer: BDF

 

 

QUESTION 196

Which command will configure AAA accounting using the list of all RADIUS servers on a device to generate a reload event message when the device reloads?

 

A.

aaa accounting network default start-stop group radius

B.

aaa accounting auth-proxy default start-stop group radius

C.

aaa accounting system default start-stop group radius

D.

aaa accounting exec default start-stop group radius

 

Correct Answer: C

 

 

 

QUESTION 197

Which two accounting notices are used to send a failed authentication attempt record to a AAA server? (Choose two.)

 

A.

start-stop

B.

stop-record

C.

stop-only

D.

stop

 

Correct Answer: AC

 

 

QUESTION 198

What is the first command you enter to configure AAA on a new Cisco router?

 

A.

aaa configuration

B.

no aaa-configuration

C.

no aaa new-model

D.

aaa new-model

 

Correct Answer: D

 

 

QUESTION 199

Which three TACACS+ server-authentication protocols are supported on Cisco ASA firewalls? (Choose three.)

 

A.

EAP

B.

ASCII

C.

PAP

D.

PEAP

E.

MS-CHAPv1

F.

MS-CHAPv2

 

Correct Answer: BCE

 

 

QUESTION 200

What is the default privilege level for a new user account on a Cisco ASA firewall?

 

A.

0

B.

1

C.

2

D.

15

 

Correct Answer: C

 

Free VCE & PDF File for Cisco 640-554 Exam Questions

Instant Access to Free VCE Files: CCNA | CCNP | CCIE …
Instant Access to Free PDF Files: CCNA | CCNP | CCIE …