Cisco Security Solutions for Systems Engineers 認定 642-566 試験問題:
1. DRAG DROP
Which item is correct about the relationship between the VPN types and their descriptions?
2. Cisco NAC Appliance (formerly Cisco Clean Access) is an easily deployed Network Admission Control (NAC) product that allows network administrator to authenticate, authorize, evaluate and remediate wired, wireless and remote users and their machines prior to allowing users onto the network. It identifies whether networked devices such as laptops, desktops and other corporate assets are compliant with a network's security policies and it repairs any vulnerabilities before permitting access to the network. In which way do components of the NAC Appliance architecture communicate?
A) Sending procedure instructions to the NAC Appliance Server
B) Sending sends block instructions to the NAC Appliance Agent
C) Sending check-up instructions to the NAC Appliance Server
D) Sending remediation instructions to the NAC Appliance Agent
3. Which three of these security products complement each other to achieve a secure-e-banking solution? (Choose three.)
A) Cisco Trust Agent
B) Cisco Intrusion Prevention System
C) Cisco IOS DMVPN
D) Cisco Security Agent
E) CCA Agent
F) Cisco Adaptive Security Appliance
4. By use of Cisco ASA active/active stateful failover, what happens if the return packet of an existing connection is not found in the local Cisco ASA connection table?
A) The local Cisco ASA will perform a reverse path forwarding check to determine whether to forward or drop the packet.
B) The local Cisco ASA will forward the packet if it is permitted by the inbound ACL.
C) The local Cisco ASA will examine the copy of the other Cisco ASA's connection table and, if a match is found, will forward the packet to the other Cisco ASA.
D) The local Cisco ASA will determine, based on its routing table, whether to forward or drop the packet.
5. Which statement best describes the Cisco ASA encrypted voice inspection capability?
A) The Cisco ASA serves as a proxy for both client and server, with the Cisco IP Phone and the Session Border Controller.
B) The Cisco ASA does not support PAT and NAT for SCCP inspection.
C) TLS proxy applies to the encryption layer and is configured by using a Layer 3/4 inspection policy on the Cisco ASA.
D) The Cisco ASA decrypts, inspects, then re-encrypts voice-signaling traffic; all of the existing VoIP inspection functions for SCCP and SIP protocols are preserved.
質問と回答:
| 質問 # 1 正解: メンバーにのみ表示されます | 質問 # 2 正解: D | 質問 # 3 正解: B、D、F | 質問 # 4 正解: C | 質問 # 5 正解: D |














0 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
