210-260 Dumps, 210-260 Exam Questions, 210-260 PDF, 210-260 VCE, Cisco Exam

[2017-Oct.-New]Free Cisco 362Q 210-260 Questions and Answers PDF Braindump2go Offers[123-135]

2017 Oct New 210-260 Exam Dumps with PDF and VCE Free Updated Today! Following are some new 210-250 Questions:

1.|2017 New 210-260 Exam Dumps (PDF & VCE) 362Q&As Download:
https://www.braindump2go.com/210-260.html

 

2.|2017 New 210-260 Exam Questions & Answers Download:
https://drive.google.com/drive/folders/0B75b5xYLjSSNV1RGaFJYZkxGWFk?usp=sharing

 

QUESTION 123
What is the most common Cisco Discovery Protocol version 1 attack?

A.    Denial of Service
B.    MAC-address spoofing
C.    CAM-table overflow
D.    VLAN hopping

Answer: A

QUESTION 124
What is the Cisco preferred countermeasure to mitigate CAM overflows?

A.    Port security
B.    Dynamic port security
C.    IP source guard
D.    Root guard

Answer: B

QUESTION 125
When a switch has multiple links connected to a downstream switch, what is the first step that STP takes to prevent loops?

A.    STP elects the root bridge
B.    STP selects the root port
C.    STP selects the designated port
D.    STP blocks one of the ports

Answer: A

QUESTION 126
Which countermeasures can mitigate ARP spoofing attacks? (Choose two.)

A.    Port security
B.    DHCP snooping
C.    IP source guard
D.    Dynamic ARP inspection

Answer: BD

QUESTION 127
Which of the following statements about access lists are true? (Choose three.)

A.    Extended access lists should be placed as near as possible to the destination
B.    Extended access lists should be placed as near as possible to the source
C.    Standard access lists should be placed as near as possible to the destination
D.    Standard access lists should be placed as near as possible to the source
E.    Standard access lists filter on the source address
F.    Standard access lists filter on the destination address

Answer: BCE

QUESTION 128
In which stage of an attack does the attacker discover devices on a target network?

A.    Reconnaissance
B.    Covering tracks
C.    Gaining access
D.    Maintaining access

Answer: A

QUESTION 129
Which type of security control is defense in depth?

A.    Threat mitigation
B.    Risk analysis
C.    Botnet mitigation
D.    Overt and covert channels

Answer: A

QUESTION 130
On which Cisco Configuration Professional screen do you enable AAA?

A.    AAA Summary
B.    AAA Servers and Groups
C.    Authentication Policies
D.    Authorization Policies

Answer: A

QUESTION 131
Which three statements about Cisco host-based IPS solution are true? (Choose three)

A.    It work with deployed firewalls.
B.    It can be deployed at the perimeter
C.    It uses signature-based policies
D.    It can have more restrictive policies than network-based IPS
E.    It can generate alerts based on behavior at the desktop level
F.    It can view encrypted files

Answer: DEF
Explanation:
The key word here is ‘Cisco’, and Cisco’s host-based IPS, CSA, is NOT signature-based and CAN view encrypted files.

QUESTION 132
What are two users of SIEM software? (Choose two)

A.    performing automatic network audits
B.    configuring firewall and IDS devices
C.    alerting administrators to security events in real time
D.    scanning emails for suspicious attachments
E.    collecting and archiving syslog data

Answer: CE
Explanation:
The other choices are not functions of SIEM software.

QUESTION 133
If a packet matches more than one class map in an individual feature type’s policy map, how does the ASA handle the packet?

A.    the ASA will apply the actions from only the last matching class maps it finds for the feature type.
B.    the ASA will apply the actions from all matching class maps it finds for the feature type.
C.    the ASA will apply the actions from only the most specific matching class map it finds for the feature type.
D.    the ASA will apply the actions from only the first matching class maps it finds for the feature type

Answer: D
Explanation:
If it matches a class map for a given feature type, it will NOT attempt to match to any subsequent class maps.

QUESTION 134
What statement provides the best definition of malware?

A.    Malware is tools and applications that remove unwanted programs.
B.    Malware is a software used by nation states to commit cyber-crimes.
C.    Malware is unwanted software that is harmful or destructive
D.    Malware is a collection of worms, viruses and Trojan horses that is distributed as a single…..

Answer: C

QUESTION 135
Your security team has discovered a malicious program that has been harvesting the CEO’s email messages and the company’s user database for the last 6 months.
What are two possible types of attacks your team discovered?

A.    social activism
B.    advanced persistent threat
C.    drive-by spyware
D.    targeted malware

Answer: B
Explanation:
If required 2 answers in the real exam, please choose BD.


!!!RECOMMEND!!!

1.|2017 New 210-260 Exam Dumps (PDF & VCE) 362Q&As Download:
https://www.braindump2go.com/210-260.html

 

2.|2017 New 210-260 Study Guide Video:
https://youtu.be/9yy5IlptXYw