350-018 Exam Details

  • Exam Code
    :350-018
  • Exam Name
    :CCIE Security written
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :872 Q&As
  • Last Updated
    :Dec 11, 2021

Cisco 350-018 Online Questions & Answers

  • Question 581:

    Which Cisco ASA feature can be used to update non-compliant antivirus/antispyware definition files on an AnyConnect client?

    A. dynamic access policies
    B. dynamic access policies with Host Scan and advanced endpoint assessment
    C. Cisco Secure Desktop
    D. advanced endpoint assessment

  • Question 582:

    Which three types of information could be used during the incident response investigation phase? (Choose three.)

    A. netflow data
    B. SNMP alerts
    C. encryption policy
    D. syslog output
    E. IT compliance reports

  • Question 583:

    Refer to the exhibit.

    If SW4 is sending superior BPDUs, where should the root guard feature be configured to preserve SW3 as a root bridge?

    A. SW4 Gi0/0 interface.
    B. Sw3 Gi0/0 interface.
    C. Sw2 Gi0/1 interface.
    D. SW2 Gi0/1 and SW3 Gi0/1

  • Question 584:

    Which two current RFCs discuss special use IP addresses that may be used as a checklist of invalid routing prefixes for IPv4 and IPv6 addresses? (Choose two.)

    A. RFC 5156
    B. RFC 5735
    C. RFC 3330
    D. RFC 1918
    E. RFC 2827

  • Question 585:

    Of which IPS application is Event Store a component?

    A. InterfaceApp
    B. AuthenticationApp
    C. SensorApp
    D. NotificationApp
    E. MainApp

  • Question 586:

    Select and Place:

  • Question 587:

    Which two statements are true when comparing ESMTP and SMTP? (Choose two.)

    A. Only SMTP inspection is provided on the Cisco ASA firewall.
    B. A mail sender identifies itself as only able to support SMTP by issuing an EHLO command to the mail server.
    C. ESMTP mail servers will respond to an EHLO with a list of the additional extensions they support.
    D. SMTP commands must be in upper case, whereas ESMTP can be either lower or upper case.
    E. ESMTP servers can identify the maximum email size they can receive by using the SIZE command.

  • Question 588:

    After a client discovers a supportable wireless network, what is the correct sequence of operations that the client will take to join it?

    A. association, then authentication
    B. authentication, then association
    C. probe request, then association
    D. authentication, then authorization

  • Question 589:

    What port has IANA assigned to the GDOI protocol?

    A. UDP 1812
    B. UDP 500
    C. UDP 848
    D. UDP 4500

  • Question 590:

    Which three steps are required to rekey the routers on a link without dropping OSPFv3 protocol packets or disturbing the adjacency? (Choose three.)

    A. For every router on the link, create an additional inbound SA for the interface that is being rekeyed using a new SPI and the new key.
    B. For every router on the link, replace the original outbound SA with one that uses the new SPI and key values.
    C. For every router on the link, remove the original inbound SA.
    D. For every router on the link, create an additional outbound SA for the interface that is being rekeyed using a new SPI and the new key.
    E. For every router on the link, replace the original inbound SA with one that uses the new SPI and key values.
    F. For every router on the link, remove the original outbound SA.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 350-018 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.