210-260 Exam Details

  • Exam Code
    :210-260
  • Exam Name
    :Implementing Cisco Network Security
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :527 Q&As
  • Last Updated
    :Dec 12, 2021

Cisco 210-260 Online Questions & Answers

  • Question 191:

    Which two default settings for port security are true? (Choose two.)

    A. Maximum number of MAC addresses is 1.
    B. Maximum number of MAC addresses is 2.
    C. Violation is Restrict.
    D. Violation is Protect.
    E. Violation is Shutdown.

  • Question 192:

    Which two options are the primary deployment models for mobile device management? (Choose two)

    A. Single-site
    B. hybrid cloud-based
    C. on-permises
    D. Cloud based
    E. Multisite

  • Question 193:

    Which two characteristics of an application layer firewall are true? (Choose two)

    A. provides reverse proxy services
    B. is immune to URL manipulation
    C. provides protection for multiple applications
    D. provide statefull firewall security
    E. has low processor usage

  • Question 194:

    Refer to the exhibit. A network security administrator checks the ASA firewall NAT policy table with the show nat command. Which statement is false?

    A. There are only reverse transalation matches for the REAL_SERVER object.
    B. First policy in the Section 1 is as dynamic nat entry defined in the object configuration.
    C. NAT policy in Section 2 is a static entry defined in the obkect configuration
    D. Transalation in Section 3 used when a connection does not match any entries in first two sections.

  • Question 195:

    What is the benefit of web application firewall?

    A. It accelerate web traffic
    B. It blocks know vulnerabilities without patching applications
    C. It supports all networking protocols.
    D. It simplifies troubleshooting

  • Question 196:

    What are two ways to protect eavesdropping when you perform device-management task? (Choose two)

    A. use SNMPv2
    B. use SSH connection
    C. use SNMPv3
    D. use in-band management
    E. use out-band management

  • Question 197:

    Which two features do CoPP and CPPr use to protect the control plane? (Choose two.)

    A. QoS
    B. traffic classification
    C. access lists
    D. policy maps
    E. class maps
    F. Cisco Express Forwarding

  • Question 198:

    When connecting to an external resource, you must change a source IP address to use one IP address from a range of 207.165.201.1 to 207.165.201.30. Which option do you implement?

    A. static destination NAT that uses a subnet as a real source
    B. dynamic source NAT that uses a range as a mapped source
    C. static destination NAT that uses a subnet as a real destination
    D. dynamic source NAT that uses an IP address as a mapped source

  • Question 199:

    Which IPS detection method can you use to detect attacks that based on the attackers IP addresses?

    A. Policy-based
    B. Anomaly-based
    C. Reputation-based
    D. Signature-based

  • Question 200:

    What configuration allows AnyConnect to authenticate automatically establish a VPN session when a user logs in to the computer?

    A. proxy
    B. Trusted Network Detection
    C. transparent mode
    D. always-on

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 210-260 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.