300-206 Exam Details

  • Exam Code
    :300-206
  • Exam Name
    :Implementing Cisco Edge Network Security Solutions
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :463 Q&As
  • Last Updated
    :Dec 11, 2021

Cisco 300-206 Online Questions & Answers

  • Question 201:

    Which command change secure HTTP port from 443 to 444?

    A. IP http secure-port 444
    B. IP http secure-server
    C. http server enable 444
    D. IP http server-secure

  • Question 202:

    What is the best description of a unified ACL on a Cisco Firewall

    A. An Ipv4 ACL with Ipv4 support
    B. An ACL the support EtherType in additional Ipv6
    C. An ACL with both Ipv4 and Ipv6 functionality
    D. An Ipv6 ACL with Ipv4 backward compatitiblity

  • Question 203:

    Prime Infrastructure admin discovers the network and wants to use Web Services Management Agent for configuring devices. Which protocol allows use of WSMA?

    A. Telnet
    B. SSHv2
    C. SNMPv2
    D. SNMPv3

  • Question 204:

    An engineer is configuring control-plane protocol queue thresholding. For which protocol can the engineer set queue limits?

    A. CDP
    B. ARP
    C. IPX
    D. BGP

  • Question 205:

    Choose correct statements about mixed ACLs and object groups? (Choose two)

    A. You can mix IPv4 and IPv6 addresses in the same ACE
    B. You can mix IPv4 and IPv6 entries in a network object group, but you cannot use a mixed object group for NAT
    C. You cannot mix IPv4 and IPv6 addresses in the same ACL.
    D. You cannot mix IPv4 and IPv6 addresses in the same ACE but you can mix IPv4 and IPv6 addresses in different ACEs of common ACL.

  • Question 206:

    An engineer is configuring MacSec, Cisco TrustSec NDAC MACsec. Which two components?

    A. switch-to-switch connection
    B. user- facing downlink support
    C. switch-to-host connection
    D. switch port connected to other switches
    E. host-facing links

  • Question 207:

    There is an exhibition on screen about NAT policies in ASDM.

    The first Manual NAT entries was something like following lines in CLI:

    nat (inside,outside) source static ENGINEERING-DEPT ENGINEERING-DEPT destination static SALE-DEPT SALE-DEPT

    nat (outside,inside) source static SALE-DEPT SALE-DEPT destination static NGINEERING-DEPT ENGINEERING-DEPT

    What is the correct statement about the configuration of the NAT policies (relation with VPN traffic between two depts) ?

    A. It allows any traffic originated from Sale dept to access Engineering Dept with performing NAT.
    B. It allows any traffic originated from Engineering dept to access Sale dept by leaving IP addresses without NAT translation.
    C. Any device from IP address pool can access Sale debt devices.
    D. It allows any traffic originated from Sale dept to access Engineering dept by translation of only source IP addresses.

  • Question 208:

    Question about dns in packet tracer there is ip 53 on the screenshot

    A. choosed to use udp as answer

  • Question 209:

    What AIC features are supported by ZFW in Cisco IOS? (Choose three)

    A. protocol minimization
    B. detection of covert tunneling
    C. verification of IPSec tunnels establishment
    D. global correlation
    E. deep / specific DNS inspection
    F. URL filtering

  • Question 210:

    Which three options describe how SNMPv3 traps can be securely configured to be sent by IOS? (Choose three.)

    A. An SNMPv3 group is defined to configure the read and write views of the group.
    B. An SNMPv3 user is assigned to SNMPv3 group and defines the encryption and authentication credentials.
    C. An SNMPv3 host is configured to define where the SNMPv3 traps will be sent.
    D. An SNMPv3 host is used to configure the encryption and authentication credentials for SNMPv3 traps.
    E. An SNMPv3 view is defined to configure the address of where the traps will be sent.
    F. An SNMPv3 group is used to configure the OIDs that will be reported.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 300-206 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.