Issuu on Google+

Cisco CODE: 642-618 Exam Name: Deploying Cisco ASA Firewall Features (FIREWALL v2.0)

Click the link below to buy full version as Low as $39

http://www.testsexpert.com/642-618.html

Type

Microsoft

1

IBM

Demo

HP Cisco Oracle Instant download after purchase

http://www.testsexpert.com/642-618.html

Symantec


Question: 1 On the Cisco ASA, tcp-map can be applied to a traffic class using which MPF CLI configuration command? A. inspect B. sysopt connection C. tcp-options D. parameters E. set connection advanced-options

Answer: E

Question: 2 By default, which traffic can pass through a Cisco ASA that is operating in transparent mode with out explicitly allowing it using an ACL? A. ARP B. BPDU C. CDP D. OSPF multicasts E. DHCP

Answer: A

Question: 3 When enabling a Cisco ASA to send syslog messages to a syslog server, which syslog level will produce the most messages? A. notifications B. informational C. alerts D. emergencies E. errors

Microsoft

2

IBM

HP Cisco Oracle Instant download after purchase

http://www.testsexpert.com/642-618.html

Symantec


F. debugging

Answer: F

Question: 4 Refer to the exhibit.

What can be determined about the connection status? A. The output is showing normal activity to the inside 10.1.1.50 web server. B. Many HTTP connections to the 10.1.1.50 web server have successfully completed the threeway TCP handshake. C. Many embryonic connections are made from random sources to the 10.1.1.50 web server. D. The 10.1.1.50 host is triggering SYN flood attacks against random hosts on the outside. E. The 10.1.1.50 web server is terminating all the incoming HTTP connections.

Microsoft

3

IBM

HP Cisco Oracle Instant download after purchase

http://www.testsexpert.com/642-618.html

Symantec


Answer: C

Question: 5 What mechanism is used on the Cisco ASA to map IP addresses to domain names that are contained in the botnet traffic filter dynamic database or local blacklist? A. HTTP inspection B. DNS inspection and snooping C. WebACL D. dynamic botnet database fetches (updates) E. static blacklist F. static whitelist

Answer: B

Question: 6 Refer to the exhibit.

Which statement about the policy map named test is true? A. Only HTTP inspection will be applied to the TCP port 21 traffic. B. Only FTP inspection will be applied to the TCP port 21 traffic. C. both HTTP and FTP inspections will be applied to the TCP port 21 traffic. D. No inspection will be applied to the TCP port 21 traffic, because the http class map configuration conflicts with the ftp class map.

Microsoft

4

IBM

HP Cisco Oracle Instant download after purchase

http://www.testsexpert.com/642-618.html

Symantec


E. All FTP traffic will be denied, because the FTP traffic will fail the HTTP inspection.

Answer: B

Question: 7 Refer to the exhibit.

Which Cisco ASA feature can be configured using this Cisco ASDM screen? A. Cisco ASA command authorization using TACACS+ B. AAA accounting to track serial, ssh, and telnet connections to the Cisco ASA C. Exec Shell access authorization using AAA D. cut-thru proxy E. AAA authentication policy for Cisco ASDM access

Answer: D

Question: 8 Refer to the exhibit.

Microsoft

5

IBM

HP Cisco Oracle Instant download after purchase

http://www.testsexpert.com/642-618.html

Symantec


Which command enables the stateful failover option? A. failover link MYFAILOVER GigabitEthernet0/2 B. failover lan interface MYFAILOVER GigabitEthernet0/2 C. failover interface ip MYFAILOVER 172.16.5.1 255.255.255.0 standby 172.16.5.10 D. preempt E. failover group 1 primary F. failover lan unit primary

Answer: A

Question: 9 In which type of environment is the Cisco ASA MPF set connection advanced-options tcp-statebypass option the most useful? A. SIP proxy B. WCCP C. BGP peering through the Cisco ASA D. asymmetric traffic flow E. transparent firewall

Answer: D

Question: 10 Microsoft

6

IBM

HP Cisco Oracle Instant download after purchase

http://www.testsexpert.com/642-618.html

Symantec


Refer to the exhibit.

Which statement about the MPF configuration is true? A. Any non-RFC complaint FTP traffic will go through additional deep FTP packet inspections. B. FTP traffic must conform to the FTP RFC, and the FTP connection will be dropped if the PUT command is used. C. Deep FTP packet inspections will be performed on all TCP inbound and outbound traffic on the outside interface. D. The ftp-pm policy-map type should be type inspect. E. Due to a configuration error, all FTP connections through the outside interface will not be permitted.

Answer: B

Microsoft

7

IBM

HP Cisco Oracle Instant download after purchase

http://www.testsexpert.com/642-618.html

Symantec


Cisco CODE: 642-618 Exam Name: Deploying Cisco ASA Firewall Features (FIREWALL v2.0)

Click the link below to buy full version as Low as $39

http://www.testsexpert.com/642-618.html Microsoft

Cisco

IBM

HP

Other

MCTS 70-336 70-337

CCNA 640-911 642-998 642-997 642-902

IBM Lotus

00M-244 000-M60

AIS

MBS 70-332

CCNP 642-832 642-813 642-825 642-845

LOT-442 000-M44

MCAS 77-602

CCSP 642-627 642-637 642-647 642-545

000-444 000-910

MCSE 70-281 70-282

CCIE 350-001 350-018 350-029 350-060

COG-105 COG-185

MCSA 2003 70-620

DATA CENTER 642-972 642-973 642-974 642-975

000-005 000-032

70-323 9L0-063 9L0-010 9L0-517 HP2-E53 70-321 650-179 E20-533 00M-646 MB2-876 646-206 9L0-412 MB6-884 220-701 650-196 3305 MB6-871 HP2-Z22 9L0-518 9A0-146 HP2-H23 000-184 1Z0-527 HP2-B91 000-781 M70-201 N10-004 7004 HP3-X11 312-50v8

70-462

98-361

MB3-861

77-601 77-604 70-284

70-461 70-680

70-463

MB3-862

77-605 70-285

70-291

Microsoft

8

IBM

LOT-403 000-M62

IBM Mastery

000-M43 000-M45

HP0-311

HP0-M28

HP0-A25

HP0-M30

APC

HP2-K10 HP2-B93

HP0-M98 HP0-H22

Solutions Expert

MASE HP0-J33 HP0-M48 HP0-M49 HP0-M50

IBM Cognos

ASE

000-640 000-913 COG-180 COG-200

IBM Specialist

000-015 000-042

HP0-066 HP0-781

HP0-082 HP0-782

CSE

HP0-090 HP0-277

HP0-276 HP0-760

HP Cisco Oracle Instant download after purchase

http://www.testsexpert.com/642-618.html

Symantec


642-618 Free Exam Questions (DUMPS)