Which three statements concerning keystroke logger detection are correct? (Choose three.)
A. requires administrative privileges in order to run B. runs on Windows and MAC OS X systems C. detects loggers that run as a process or kernel module D. detects both hardware- and software-based keystroke loggers E. allows the administrator to define "safe" keystroke logger applications
A. requires administrative privileges in order to run C. detects loggers that run as a process or kernel module E. allows the administrator to define "safe" keystroke logger applications
Question 394:
Which three statements about Cisco ASA CX are true? (Choose three.)
A. It groups multiple ASAs as a single logical device. B. It can perform context-aware inspection. C. It provides high-density security services with high availability. D. It uses policy-based interface controls to inspect and forward TCP- and UDP-based packets. E. It can make context-aware decisions. F. It uses four cooperative architectural constructs to build the firewall.
B. It can perform context-aware inspection. E. It can make context-aware decisions. F. It uses four cooperative architectural constructs to build the firewall.
Question 395:
What is the default antispam policy for positively identified messages within the Cisco Email Security Appliance?
A. Drop B. Deliver and Append with [SPAM] C. Deliver and Prepend with [SPAM] D. Deliver and Alternate Mailbox
C. Deliver and Prepend with [SPAM]
Question 396:
A customer is concerned with their employee's internet usage and has asked for more web traffic control. Which two features of the cisco web security appliance help with issue? (choose two)
A. Advanced Malware Protection B. Dynamic ARP Inspection C. DHCP spoofing Protection D. Network Address Translation E. Application Visibility and Control
A. Advanced Malware Protection E. Application Visibility and Control
Which two options are characteristics of router-based IPS? (Choose two.)
A. It supports custom signatures B. It supports virtual sensors. C. It supports multiple VRFs. D. It uses configurable anomaly detection. E. Signature definition files have been deprecated.
C. It supports multiple VRFs. E. Signature definition files have been deprecated.
Question 399:
Which type of interface do you configure to receive traffic from a switch or tap, promiscuously, on a cisco firePOWER device?
A. inline set B. transparent C. Routed D. Passive
D. Passive
Question 400:
Which interface type allows packets to be dropped?
A. passive B. inline C. TAP D. either passive or inline, provided that the intrusion policy has the Drop When Inline check box selected.
D. either passive or inline, provided that the intrusion policy has the Drop When Inline check box selected.
Nowadays, the certification exams become more and more important and required by more and more
enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare
for the exam in a short time with less efforts? How to get a ideal result and how to find the
most reliable resources? Here on Vcedump.com, you will find all the answers.
Vcedump.com provide not only Cisco exam questions,
answers and explanations but also complete assistance on your exam preparation and certification
application. If you are confused on your 300-210 exam preparations
and Cisco certification application, do not hesitate to visit our
Vcedump.com to find your solutions here.