210-260 Exam Details

  • Exam Code
    :210-260
  • Exam Name
    :Implementing Cisco Network Security
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :527 Q&As
  • Last Updated
    :Dec 12, 2021

Cisco 210-260 Online Questions & Answers

  • Question 121:

    Which syslog severity level is level number 7?

    A. Warning
    B. Informational
    C. Notification
    D. Debugging

  • Question 122:

    What type of Diffie-Hellman group would you expect to be utiliazed on a wireless device ?

    A. Group4
    B. Group7
    C. Group5
    D. Group3

  • Question 123:

    Which command is used to verify that a VPN connection is established between two endpoints and that the connection is passing?

    A. Firewall#sh crypto ipsec sa
    B. Firewall#sh crypto isakmp sa
    C. Firewall#debug crypto isakmp
    D. Firewall#sh crypto session

  • Question 124:

    Which two options are advantages of an application layer firewall? (Choose two.)

    A. provides high-performance filtering
    B. makes DoS attacks difficult
    C. supports a large number of applications
    D. authenticates devices
    E. authenticates individuals

  • Question 125:

    If you change the native VLAN on the port to an unused VLAN, what happens if an attacker attempts a double tagging attack?

    A. The trunk port would go into an error-disable state.
    B. A VLAN hopping attack would be successful
    C. A VLAN hopping attack would be prevented
    D. the attacked VLAN will be pruned

  • Question 126:

    In what type of attack does an attacker virtually change a devices burned in address in an attempt to circumvent access lists and mask the device's true identity?

    A. gratuitous ARP
    B. ARP poisoning
    C. IP Spoofing
    D. MAC Spoofing

  • Question 127:

    Which firepower preprocessor block traffic based on IP?

    A. Signature-Based
    B. Policy-Based
    C. Anomaly-Based
    D. Reputation-Based

  • Question 128:

    Which countermeasures can mitigate ARP spoofing attacks? (Choose two.)

    A. Port security
    B. DHCP snooping
    C. IP source guard
    D. Dynamic ARP inspection

  • Question 129:

    Which of the following are IKE modes? (Choose all and apply)

    A. Main Mode
    B. Fast Mode
    C. Aggressive Mode
    D. Quick Mode
    E. Diffie-Hellman Mode

  • Question 130:

    Which component of CIA triad relate to safe data which is in transit.

    A. Confidentiality
    B. Integrity
    C. Availability
    D. Scalability

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 210-260 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.