210-260 Exam Details

  • Exam Code
    :210-260
  • Exam Name
    :Implementing Cisco Network Security
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :527 Q&As
  • Last Updated
    :Dec 12, 2021

Cisco 210-260 Online Questions & Answers

  • Question 201:

    Which option is the resulting action in a zone-based policy firewall configuration with these conditions?

    A. no impact to zoning or policy
    B. no policy lookup (pass)
    C. drop
    D. apply default policy

  • Question 202:

    Which three statements about host-based IPS are true? (Choose three.)

    A. It can view encrypted files.
    B. It can have more restrictive policies than network-based IPS.
    C. It can generate alerts based on behavior at the desktop level.
    D. It can be deployed at the perimeter.
    E. It uses signature-based policies.
    F. It works with deployed firewalls.

  • Question 203:

    Which command initializes a lawful intercept view?

    A. username cisco1 view lawful-intercept password cisco
    B. parser view cisco li-view
    C. li-view cisco user cisco1 password cisco
    D. parser view li-view inclusive

  • Question 204:

    What type of security support is provided by the Open Web Application Security Project?

    A. Education about common Web site vulnerabilities
    B. A wb site security framework
    C. A security discussion forum for Web site developers
    D. Scoring of common vulnerabilities and exposures

  • Question 205:

    Which information can you display by executing the show crypto ipsec sa command?

    A. proxy information for the connection between two peers
    B. IPsec SAs established between two peers
    C. recent changes to the IP address of a peer router
    D. ISAKMP SAs that are established between two peers

  • Question 206:

    What is the Cisco preferred countermeasure to mitigate CAM overflows?

    A. Port security
    B. Dynamic port security
    C. IP source guard
    D. Root guard

  • Question 207:

    Which two features of Cisco Web Reputation tracking can mitigate web-based threats? (Choose Two)

    A. outbreak filter
    B. buffer overflow filter
    C. bayesian overflow filter
    D. web reputation filter
    E. exploit filtering

  • Question 208:

    Which two functions can SIEM provide? (Choose Two)

    A. Correlation between logs and events from multiple systems.
    B. event aggregation that allows for reduced log storage requirements.
    C. proactive malware analysis to block malicious traffic.
    D. dual-factor authentication.
    E. centralized firewall management.

  • Question 209:

    DRAG DROP

    You need to place these 7 options into HIPS and NIPS. Each section has 4 choices which means one out of these 7 options goes into both.

    Select and Place:

  • Question 210:

    How does the Cisco ASA use Active Directory to authorize VPN users?

    A. It queries the Active Directory server for a Specfic attribute for the specific user
    B. It sends the username and password to retire an ACCEPT or Reject message from the Active Directory server
    C. It downloads and stores the Active Directory databas to query for future authorization
    D. It redirects requests to the Active Directory server defined for the VPN group

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 210-260 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.