300-206 Exam Details

  • Exam Code
    :300-206
  • Exam Name
    :Implementing Cisco Edge Network Security Solutions
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :463 Q&As
  • Last Updated
    :Dec 11, 2021

Cisco 300-206 Online Questions & Answers

  • Question 171:

    Which three options are default settings for NTP parameters on a Cisco device? (Choose three.)

    A. NTP authentication is enabled.
    B. NTP authentication is disabled.
    C. NTP logging is enabled.
    D. NTP logging is disabled.
    E. NTP access is enabled.
    F. NTP access is disabled.

  • Question 172:

    Which Layer 2 security feature prevents traffic on a LAN from being disrupted by a broadcast,multicat, or unicast storm on one physical interface?

    A. Bridge protocol Data Unit Guard
    B. Storm Control
    C. Embedded event monitoring
    D. Access control lists

  • Question 173:

    An engineer is using Cisco Security Manager and is using default ports configuration. What port must be open to connect the Cisco Security Manager Client to an ASA?

    A. 22
    B. 23
    C. 80
    D. 443

  • Question 174:

    Prior to a software upgrade, which Cisco Prime Infrastructure feature determines if the devices being upgraded have sufficient RAM to support te new software ?

    A. Software Upgrade Report
    B. Image Management Report
    C. Upgrade Analysis Report
    D. Image Analysis Report

  • Question 175:

    Refer to the exhibit. The security engineer is troubleshooting internal access to the public DNS server at 209.165.200.226.

    Which description of the issue is true?

    A. The routes of the Cisco ASA are incorrectly identifying traffic from 10.10.10.1 on the outside interface of the firewall.
    B. To accurately test DNS, the packet tracer should be run using packet type UDP and destination port 53.
    C. To allow DNS, a rule specifically allowing the DNS access must be added in the rule base.
    D. The engineer must verify the NAT rules of the firewall to ensure that correct NATing is taking place.

  • Question 176:

    Http traffic has been configured to connect through the ASA on port 1521. When web inspection has been enabled with the default web policy, which inspection policy will be applied?

    A. HTTP
    B. HTTPS
    C. IPX
    D. SQL*net

  • Question 177:

    It has been reported that an application is not working where an ASA is inline with the data path. Which command can be used to confirm or deny if the ASA is responsible for this issue?

    A. test
    B. packet-tracer
    C. capture
    D. perfmon
    E. verify

  • Question 178:

    An engineer is examining the configuration of an IOS device and notices that though SSH is configured properly, the ip ssh version 2 command is not explicitly configured. How does the device behave in regards to SSH connections?

    A. only SSHv2 is allowed.
    B. SSHv1 and SSHv2 are denied.
    C. SSHv1 and SSHv2 are allowed.
    D. only SSHv1 is allowed.

  • Question 179:

    What is the correct statement about Cisco ASA operation mode?

    A. ASA in routed mode will be not seen as new hop from the network
    B. ASA operated on transparent mode will be seen as new hop from the network
    C. The running configuration in ASA will be removed if operating mode is changed
    D. Transparent mode doesn't support failover

  • Question 180:

    About DNS in PKT IP 53?

    Correct Answer. Check the answer below

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 300-206 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.