300-375 Exam Details

  • Exam Code
    :300-375
  • Exam Name
    :Securing Wireless Enterprise Networks
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :181 Q&As
  • Last Updated
    :Dec 13, 2021

Cisco 300-375 Online Questions & Answers

  • Question 61:

    An engineer must ensure that SNMP traffic to the Cisco WLC is as secure as possible. Which SNMP configuration option should be considered?

    A. IPsec shared secret
    B. HMAC-SHA Authentication Protocol
    C. IP mask
    D. CBC-DES Privacy Protocol

  • Question 62:

    An engineer is securing the wireless network from vulnerabilities. Which four strategies are recommended for mitigation? (Choose four.)

    A. MFP
    B. identity-based networking
    C. rogue location
    D. EAP-TLS
    E. guest monitoring
    F. RF profiles
    G. rogue detection
    H. password policies

  • Question 63:

    A WLAN on the WLC is configured for web authentication as the Layer 3 Security policy with the web-auth type External. Which two elements are required as part of the configuration? (Choose two.)

    A. WLAN being not present in the default AP group
    B. IP address assigned to the virtual interface on the WLC, which is not routable
    C. preauth ACL to allow access to the external web server
    D. HTTPS redirection enabled
    E. web-auth secure web option enabled

  • Question 64:

    A customer is concerned about DOS attacks from a neighboring facility. Which feature can be enabled to help alleviate these concerns and mitigate DOS attacks on a WLAN?

    A. PMF
    B. peer-to-peer blocking
    C. Cisco Centralized Key Management
    D. split tunnel

  • Question 65:

    A wireless engineer must configure a corporate wireless network that meets the latest standards and best practices in wireless security. Which two statements are true about the secure authentication process on a wireless network? (Choose two.)

    A. EAPOL is used between the authenticator and the authentication server.
    B. RADIUS and TACACS+ are used between the authenticator and the authentication server.
    C. RADIUS and TACACS+ are used between the supplicant and the authenticator.
    D. EAPOL is not used during a secure authentication process.
    E. EAPOL is used between the supplicant and the authenticator.

  • Question 66:

    Which Cisco feature must an engineer configure on a Cisco WLC to enable PCI specification compliance for communication of neighbor radio information?

    A. RF Grouping
    B. MFP
    C. Rogue Access Point Detection
    D. RRM NDP
    E. Off Channel Scanning

  • Question 67:

    A customer requests a list of users who are authenticated using PEAP during the last two weeks on a specific Cisco lightweight AP. Which Cisco Prime Infrastructure report gathers the requested data?

    A. PCI DSS Summary
    B. Client Sessions
    C. End User Summary
    D. AP Utilization

  • Question 68:

    MFP is enabled globally on a WLAN with default settings on a single controller wireless network. Older client devices are disconnected from the network during a deauthentication attack.

    What is the cause of this issue?

    A. The client devices do not support WPA
    B. The client devices do not support CCXv5.
    C. The MFP on the WLAN is set to optional.
    D. The NTP server is not configured on the controller.

  • Question 69:

    A wireless engineer wants to view how many wIPS alerts have been detected in Cisco Prime. Which lab does the engineer select in the wireless dashboard?

    A. Security
    B. Context Aware
    C. Mesh
    D. CleanAir

  • Question 70:

    Which of the following user roles can access CMX Visitor Connect?

    A. Connect
    B. Power User
    C. Guest User
    D. Super Administrator

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 300-375 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.