350-018 Exam Details

  • Exam Code
    :350-018
  • Exam Name
    :CCIE Security written
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :872 Q&As
  • Last Updated
    :Dec 11, 2021

Cisco 350-018 Online Questions & Answers

  • Question 521:

    Which configuration is required to enable the exporter?

    Refer to the exhibit.

    A. cache timeout active 60
    B. next-hop address
    C. cache timeout inactive 60
    D. source Loopback0

  • Question 522:

    What is an RFC 2827 recommendation for protecting your network against DoS attacks with IP address spoofing?

    A. Advertise only assigned global IP addresses to the internet
    B. Use ingress traffic filtering to limit traffic from a downstream network to known advertised prefixes.
    C. Use the TLS protocol to secure the network against eavesdropping
    D. Brower-based applications should be filtered on the source to protect your network from know advertised prefix

  • Question 523:

    Which of the following statement is true about the ARP Spoofing attack?

    A. Attacker sends the ARP request with the MAC address and IP address of a legitimate resource in the network.
    B. ARP spoofing does not facilitate man-in the middle attack for the attacker.
    C. Attacker sends the ARP request with its own MAC address and IP address of a legitimate resource in the network.
    D. Attacker sends the ARP request with the MAC address and IP address of its own.

  • Question 524:

    Event Action Rule is a component of which IPS application?

    A. InterfaceApp
    B. MainApp
    C. SensorApp
    D. NotificationApp
    E. AuthenticationApp
    F. SensorDefinition

  • Question 525:

    Refer to the exhibit. Which statement about R1 is true?

    A. Its NVRAM contains public and private crypto keys
    B. RMON is configured
    C. Its private-config is corrupt
    D. Its running configuration is missing

  • Question 526:

    Which encryption mechanism is used in WEP?

    A. RC4
    B. RC5
    C. DES
    D. AES

  • Question 527:

    Which statement is true about an SNMPv2 communication?

    A. The whole communication is not encrypted.
    B. Only the community field is encrypted.
    C. Only the query packets are encrypted.
    D. The whole communication is encrypted.

  • Question 528:

    Which four protocols are supported by Cisco IOS Management Plane Protection? (Choose four.)

    A. Blocks Extensible Exchange Protocol (BEEP)
    B. Hypertext Transfer Protocol Secure (HTTPS)
    C. Secure Copy Protocol (SCP)
    D. Secure File Transfer Protocol (SFTP)
    E. Secure Shell (SSH)
    F. Simple Network Management Protocol (SNMP)

  • Question 529:

    A device is sending a PDU of 5000 B on a link with an MTU of 1500 B. If the PDU includes 20 B of IP header, which statement is true considering the most efficient way to transmit this PDU?

    A. The first three packets will have a packet payload size of 1400.
    B. The last packet will have a payload size of 560.
    C. The first three packets will have a packet payload size of 1480.
    D. The last packet will have a payload size of 20.

  • Question 530:

    What is the unit of measurement of the average rate of a token bucket?

    A. kilobits per second
    B. bytes per second
    C. bits per second
    D. kilobytes per second

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 350-018 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.