640-554 Exam Details

  • Exam Code
    :640-554
  • Exam Name
    :Implementing Cisco IOS Network Security (IINS v2.0)
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :287 Q&As
  • Last Updated
    :Dec 14, 2021

Cisco 640-554 Online Questions & Answers

  • Question 171:

    Which three TACACS+ server-authentication protocols are supported on Cisco ASA firewalls? (Choose three.)

    A. EAP
    B. ASCII
    C. PAP
    D. PEAP
    E. MS-CHAPv1
    F. MS-CHAPv2

  • Question 172:

    Which network device does NTP authenticate?

    A. Only the time source
    B. Only the client device
    C. The firewall and the client device
    D. The client device and the time source

  • Question 173:

    Which technology is the most effective choice for locally mirroring ports to support data investigation for a single device at the data layer?

    A. RMON
    B. SPAN
    C. RSPAN
    D. ERSPAN

  • Question 174:

    Which Cisco Security Manager feature enables the configuration of unsupported device features?

    A. Deployment Manager
    B. FlexConfig
    C. Policy Object Manager
    D. Configuration Manager

  • Question 175:

    Which two options are two of the built-in features of IPv6? (Choose two.)

    A. VLSM
    B. native IPsec
    C. controlled broadcasts
    D. mobile IP
    E. NAT

  • Question 176:

    Which statement about PVLAN Edge is true?

    A. PVLAN Edge can be configured to restrict the number of MAC addresses that appear on a single port.
    B. The switch does not forward any traffic from one protected port to any other protected port.
    C. By default, when a port policy error occurs, the switchport shuts down.
    D. The switch only forwards traffic to ports within the same VLAN Edge.

  • Question 177:

    Which type of attack can be prevented by setting the native VLAN to an unused VLAN?

    A. VLAN-hopping attacks
    B. CAM-table overflow
    C. denial-of-service attacks
    D. MAC-address spoofing

  • Question 178:

    HOTSPOT

    Hot Area:

  • Question 179:

    What does the secure boot-config global configuration accomplish?

    A. enables Cisco IOS image resilience
    B. backs up the Cisco IOS image from flash to a TFTP server
    C. takes a snapshot of the router running configuration and securely archives it in persistent storage
    D. backs up the router running configuration to a TFTP server
    E. stores a secured copy of the Cisco IOS image in its persistent storage

  • Question 180:

    Which sensor mode can deny attackers inline?

    A. IPS
    B. fail-close
    C. IDS
    D. fail-open

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 640-554 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.