[Free] Download New Updated (October 2016) Cisco 350-018 Real Exam 451-460

Ensurepass

QUESTION 451

Which three addresses are special use as defined in RFC 5735? (Choose three.)

 

A.

171.10.0.0/24

B.

0.0.0.0/8

C.

203.0.113.0/24

D.

192.80.90.0/24

E.

172.16.0.0/12

F.

198.50.100.0/24

 

Correct Answer: BCE

 

 

QUESTION 452

Which statement about Sarbanes-Oxley (SOX) is true?

 

A.

SOX is an IEFT compliance procedure for computer systems security.

B.

SOX is a US law.

C.

SOX is an IEEE compliance procedure for IT management to produce audit reports.

D.

SOX is a private organization that provides best practices for financial institution computer systems.

E.

Section 404 of SOX is only related to IT compliance.

 

Correct Answer: B

 

 

QUESTION 453

Which VPN technology is based on GDOI (RFC 3547)?

 

A.

MPLS Layer 3 VPN

B.

MPLS Layer 2 VPN

C.

GET VPN

D.

IPsec VPN

< font face="Arial"> 

Correct Answer: C

 

 

QUESTION 454

Which three basic security measures are used to harden MSDP? (Choose three.)

 

A.

MSDP SA filters

B.

MSDP state limitation

C.

MSDP MD5 neighbor authentication

D.

MSDP neighbor limitation

E.

loopback interface as MSDP originator-ID

 

Correct Answer: ABC

 

 

 

 

 

 

QUESTION 455

Refer to the exhibit. Which AS-PATH access-list regular expression should be applied on R2 to allow only updates that originate from AS-65001 or an AS that attaches directly to AS-65001?

 

clip_image002

 

A.

^65001_[0-9]*$

B.

_65001^[0-9]*

C.

65001_[0.9]$

D.

^65001_*$

 

Correct Answer: A

 

 

QUESTION 456

A device is sending a PDU of 5000 B on a link with an MTU of 1500 B. If the PDU includes 20 B of IP header, which statement is true considering the most efficient way to transmit this PDU?

 

A.

The first three packets will have a packet payload size of 1400.

B.

The last packet will have a payload size of 560.

C.

The first three packets will have a packet payload
size of 1480.

D.

The last packet will have a payload size of 20.

 

Correct Answer: C

 

 

 

 

 

 

 

 

 

 

 

QUESTION 457

Refer to the exhibit. Which option describes the behavior of this configuration?

 

clip_image004

 

A.

Traffic from the n2 network object to the outside network will be translated using the g1 network objects and outside interface.

B.

Traffic from the n3 network object to the inside network will be translated using the g1 network objects and outside interface.

C.

Traffic from the n1 network object to the outside network will be translated using the g1 network object and outside interface.

D.

Traffic from the n3 network object to the outside network will be translated using the g1 network object and outside interface.

 

Correct Answer: D

 

 

QUESTION 458

Refer to the exhibit. Which option describes the behavior of this configuration?

 

clip_image006

 

A.

Traffic from the n2 network object to the inside network will be translated using the n1 network object.

B.

Traffic from the n1 network object to the outside network will be translated using the n2 network object.

C.

Traffic from the n2 network object to the outside network will be translated using the n1 network object.

D.

Traffic from the n2 network object to the outside network will be translated using the n2 network object.

 

Correct Answer: C

 

 

QUESTION 459

What is the purpose of aaa server radius dynamic-author command?

 

A.

Enables the device to dynamically receive updates from a policy server

B.

Enables the switch to automatically authorize the connecting device if all the configured RADIUS servers are unavailable

C.

Impairs the ability to configure RADIUS local AAA

D.

This command disables dynamic authorization local server configuration mode.

 

Correct Answer: A

 

 

QUESTION 460

Which of the following two statements apply to EAP-FAST? (Choose two.)

 

A.

EAP-FAST is useful when a strong password policy cannot be enforced and an 802.1X EAP type that does not require digital certificates can be deployed.

B.

EAP-FAST was developed only for Cisco devices and is not compliant with 802.1X and 802.11i.

C.

EAP-FAST provides protection from authentication forging and packet forgery (replay attack).

D.

EAP-FAST is a client/client security architecture.

 

Correct Answer: AC

 

Free VCE & PDF File for Cisco 350-018 Real Exam

Instant Access to Free VCE Files: CCNA | CCNP | CCIE …
Instant Access to Free PDF Files: CCNA | CCNP | CCIE …