350-018 Exam Details

  • Exam Code
    :350-018
  • Exam Name
    :CCIE Security written
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :872 Q&As
  • Last Updated
    :Dec 11, 2021

Cisco 350-018 Online Questions & Answers

  • Question 141:

    Refer to the exhibit .Host 1 is assigned the static IP address 10.1.1.200 as shown.but host 2 and host 3 have dynamic IP address .DHCP snooping and dynamic ARP inspection are configure on the network.What command or command sequence must you configure on the network.What command or command sequence must you configure on the switch to allow Host 1 to communicate with the other hosts?

    A. Switch(config)#ip source binding 001c.0f12.abcd vlan 100 10.1.1.200 interface f0/10
    B. Switch(config)#interface f0/10 Switch(config-if)#ip dhcp snooping trust
    C. Switch(config)#no arp inspection enable
    D. Switch(config)#ip dhcp relay information option
    E. Switch(config)#arp 10.1.1.200 001c.0f12.abcd arpa
    F. Switch(config)# interface f0/10 Switch(config-if)#switchport access vlan 100 Switch(config-if)#switchport mode host

  • Question 142:

    What is an example of a WEP cracking attack?

    A. Reflected XSS attack
    B. Caf?latte attack
    C. Dictionary travelers attack
    D. SQL injection attack

  • Question 143:

    Many guidelines can be used to identify the areas that security policies should cover. In which four areas is coverage most important? (Choose four.)

    A. Physical
    B. Host
    C. User
    D. Document
    E. Incident handling and response
    F. Security awareness training

  • Question 144:

    What protocol does MSDP use to communicate?

    A. UDP 639
    B. TCP 389
    C. IP protocol 90
    D. TCP 639
    E. IP protocol 87
    F. UDP 389

  • Question 145:

    Which option is a desktop sharing application, used across a variety of platforms, with default TCP ports 5800/5801 and 5900/5901?

    A. X Windows
    B. remote desktop protocol
    C. VNC
    D. desktop proxy

  • Question 146:

    What entities decrypt a transmission sent by a GDOI group member?

    A. all group members
    B. the key server only
    C. the peer that is indicated by the key server
    D. the key server and the peer that is indicated by the key server

  • Question 147:

    Which command is used to replicate HTTP connections from the Active to the Standby Cisco ASA appliance in failover?

    A. monitor-interface http
    B. failover link fover replicate http
    C. failover replication http
    D. interface fover replicate http standby
    E. No command is needed, as this is the default behavior.

  • Question 148:

    Which technology, configured on the Cisco ASA, allows Active Directory authentication credentials to be applied automatically to web forms that require authentication for clientless SSL connections?

    A. one-time passwords
    B. certificate authentication
    C. user credentials obtained during authentication
    D. Kerberos authentication

  • Question 149:

    Which Cisco IPS appliance feature can automatically adjust the risk rating of IPS events based on the reputation of the attacker?

    A. botnet traffic filter
    B. event action rules
    C. anomaly detection
    D. reputation filtering
    E. global correlation inspection

  • Question 150:

    Which two statements about MPP (Management Plane Protection) are true? (Choose two.)

    A. Only out-of-band management interfaces are supported
    B. Only virtual interfaces associated with physical interfaces are supported
    C. Only virtual interfaces associated with sub-interfaces are supported
    D. It is supported on both distributed and hardware-switched platforms
    E. Only in-band management interfaces are supported
    F. It is supported on both active and standby management interfaces.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 350-018 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.