300-206 Exam Details

  • Exam Code
    :300-206
  • Exam Name
    :Implementing Cisco Edge Network Security Solutions
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :463 Q&As
  • Last Updated
    :Dec 11, 2021

Cisco 300-206 Online Questions & Answers

  • Question 351:

    Which setting is optional when configuring two Cisco ASA firewalls for failover?

    A. identical RAM installed
    B. same context mode
    C. same AnyConnect images
    D. identical licenses

  • Question 352:

    Which policy map action makes a Cisco router behave as a stateful firewall for matching traffic?

    A. Log
    B. Inspect
    C. Permit
    D. Deny

  • Question 353:

    Which command must be used to implement the unicast RPF feature on a Cisco ASA device?

    A. ip verify source port-security
    B. ip source-route
    C. ip verify unicast reverse-path
    D. ip verify reverse-path interface

  • Question 354:

    Which two SNMPv3 features ensure that SNMP packets have been sent securely?" Choose two.

    A. host authorization
    B. authentication
    C. encryption
    D. compression

  • Question 355:

    What statements are true about IPv4 and IPv6 addresses on the ASA, which options are true? (Choose 2)

    A. IPv4 and IPv6 IPs can be included in the same ACL
    B. IPv4 and IPv6 IPs can not be included in the same ACL
    C. IPv4 and IPv6 IPs can be added in the same Object group
    D. IPv4 and IPv6 IPs can not be added in the same Object group

  • Question 356:

    Which action do you take on a Cisco router to limit the management traffic to only one interface?

    A. Filter incoming connections by applying an extended ACL on a loopback interface.
    B. Filter incoming connections by applying a standard ACL on a SVI.
    C. Utilize the Management Plan Protection feature.
    D. Add an interface by using the management-interface command.

  • Question 357:

    When configured in accordance to Cisco best practices, the ip verify source command can mitigate which two types of Layer 2 attacks? (Choose two.)

    A. rogue DHCP servers
    B. ARP attacks
    C. DHCP starvation
    D. MAC spoofing
    E. CAM attacks
    F. IP spoofing

  • Question 358:

    With Cisco ASA active/standby failover, by default, how many monitored interface failures will cause failover to occur?

    A. 1
    B. 2
    C. 3
    D. 4
    E. 5

  • Question 359:

    Which statement about the configuration of the Cisco ASA NetFlow v9 (NSEL) is true ?

    A. To view bandwidth usage for the NetFlow record, you must enable QoS features
    B. Use sysopt command to enable NSEL on a specific interface
    C. NSEL can be used without a collector configured
    D. NSEL tracks the flow continuously and provides updates every 10 seconds
    E. You must define a flow-export event type under a policy

  • Question 360:

    Refer to the exhibit. An engineer has configured NAT rules on an ASA using ASDM. Which action does rule Number 1 accomplish?

    A. It allows the engineering VPN address pool to access the Internet through the tunnel
    B. It allows hosts in the address pool to reach other hosts in the engineering VPN address pool
    C. It allows hosts in the engineering VPN object to reach the hosts in the Sales VPN without being nat-ed
    D. It allows the connection between the engineering VPN address pool and the DMZ network

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 300-206 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.