350-018 Exam Details

  • Exam Code
    :350-018
  • Exam Name
    :CCIE Security written
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :872 Q&As
  • Last Updated
    :Dec 11, 2021

Cisco 350-018 Online Questions & Answers

  • Question 171:

    Which two methods are used for forwarding traffic to the Cisco ScanSafe Web Security service? (Choose two.)

    A. Cisco AnyConnect VPN Client with Web Security and ScanSafe subscription
    B. Cisco ISR G2 Router with SECK9 and ScanSafe subscription
    C. Cisco ASA adaptive security appliance using DNAT policies to forward traffic to ScanSafe subscription servers
    D. Cisco Web Security Appliance with ScanSafe subscription

  • Question 172:

    When you work on a change-management process, you generally identify potential change, review the change request, implement change, then review the change and close the process. In which step should the stakeholder be involved?

    A. Identifying potential change
    B. Reviewing the change request
    C. Implementation
    D. Reviewing and closing
    E. Depends on the stakeholder request

  • Question 173:

    Which three control plane subinterfaces are available when implementing Cisco IOS Control Plane Protection? (Choose three.)

    A. CPU
    B. host
    C. fast-cache
    D. transit
    E. CEF-exception
    F. management

  • Question 174:

    You want to enable users in your company's branch offices to deploy their own access points using WAN links from the central office, but you are unable to deploy a controller in the branch offices. What lightweight Access point wireless modes should you choose?

    A. H-REAP mode
    B. REAP mode
    C. Local mode
    D. Monitor mode
    E. TLS mode

  • Question 175:

    Which IPV4 header field increments every time when packet is sent from a source to a destination?

    A. Flag
    B. Fragment Offset
    C. Identification
    D. Time To Live

  • Question 176:

    What are two uses of an RSA algorithm? (Choose two.)

    A. Data encryption
    B. Digital signature verification
    C. Shared key generation
    D. Message hashing

  • Question 177:

    Which statement about the prelogin assessment module in Cisco Secure Desktop is true?

    A. It assigns an IP address to the remote device after successful authentication.
    B. It checks for any viruses on the remote device and reports back to the security appliance.
    C. It checks the presence or absence of specified files on the remote device.
    D. It clears the browser cache on the remote device after successful authentication.
    E. It quarantines the remote device for further assessment if specific registry keys are found.

  • Question 178:

    Which three statements are true about Cryptographically Generated Addresses for IPv6? (Choose three.)

    A. They prevent spoofing and stealing of existing IPv6 addresses.
    B. They are derived by generating a random 128-bit IPv6 address based on the public key of the node.
    C. They are used for securing neighbor discovery using SeND.
    D. SHA or MD5 is used during their computation.
    E. The minimum RSA key length is 512 bits.
    F. The SHA-1 hash function is used during their computation.

  • Question 179:

    Select and Place:

  • Question 180:

    Refer to the exhibit.

    You executed the show crypto key mypubkey rsa command to verify that the RSA key is protected and it generated the given output. What command must you have entered to protect the key?

    A. crypto key decrypt rsa name pki.cisco.com passphrase CiscoPKI
    B. crypto key zeroize rsa CiscoPKI
    C. crypto key export rsa pki.cisco.com pem url flash: 3des CiscoPKI
    D. crypto key lock rsa name pki.cisco.com passphrase CiscoPKI
    E. crypto key import rsa pki.cisco.com pem url nvram: CiscoPKI

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 350-018 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.