摘要:642-567:Advanced Security for Field Engineers
Others 642-567考試題庫由TestPassPort資深IT認證講師和Others產品專家結合PROMETRIC或VUE的真實642-567考試環境最新原題傾心打造。
題庫覆蓋了當前最新的真實考題,並且全部附有正確答案,我們承諾題庫對Others 642-567(Advanced Security for Field Engineers)考試原題完整覆蓋。642-567題庫助您輕鬆通過認證考試,一次不過全額退款。
1.Refer to the exhibit. You are troubleshooting a problem with a clientless host. It is showing up as 'unknown' or URL redirection is not working. You have determined that the problem lies in the Cisco ACS configuration. Which two parameters must be changed in order to correct this behavior? (Choose two)
A.Check "Assign IP ACL."
B.Change the dropdown to "Healthy."
C.Check the "[090001] cisco-av-pair" box.
D.Change the redirect statement to http://192.168.1.2/healthy.htm.
E.Increase the status-query timer to 20 to help prevent a query timeout.
Correct:A C
2.Which CCA out-of-band solution statement is correct?
A.All client traffic flows through the CAS while access switch VLAN management is performed out of band.
B.Access switch to CAM configuration and status change messages are communicated via a proprietary protocol.
C.The switchport access and authentication VLAN information is sent to the access switch from the CAM.
D.As a laptop device accesses the CCA network, the access switch sends the device's MAC address to the CAS.
Correct:C
3.What is specified when the command ip radius source-interface is entered in the global configuration mode of a Cisco switch acting as a NAD?
A.the interface for all outgoing RADIUS packets
B.that all interfaces are sources for RADIUS authentication requests
C.that Layer 2 packets received are converted and passed to the RADIUS server as Layer 3 IP packets
D.the interface where the sourced RADIUS packets should be received at the switch
Correct:A
4.LAB
Correct:
5.Which browser plug-in is required to view the charts and graphs on the MARS Appliance?
A.Macromedia Flash Player
B.Sun Microsystems Java
C.Microsoft PowerPoint
D.Adobe SVG Viewer
Correct
6.LAB
Correct:
7.Which is a benefit of using the dollar variable (like $TARGET01) when creating queries in MARS?
A.The dollar variable enables multiple queries to reference the same common 5-tuples information using a variable.
B.The dollar variable ensures that the probes and attacks that are reported are happening to the same host.
C.The dollar variable allows matching of any unknown reporting device.
D.The dollar variable allows matching of any event type groups.
E.The dollar variable enables the same query to be applied to different reports.
Correct:B
8.Which command can you use to verify operation between a Network Admission Control (NAC) agent and a Network Access Device (NAD)?
A.show eapoupd all
B.show eou all
C.show nac all
D.show nac access-list all
Correct:B
9.Regarding MARS Appliance rules, which three statements are correct? (Choose three.)
A.There are three types of rules: System Inspection Rules, User Inspection Rules, and Drop Rules.
B.Rules can be saved as reports.
C.Rules can be deleted.
D.Rules trigger incidents.
E.Rules can be defined using a seed file.
F.Rules can be created using a query.
Correct:A D F
10.When restoring archived data to a MARS Appliance, which is the best practice to follow?
A.Use HTTPS to protect the data transfer.
B.Use secured FTP to protect the data transfer.
C.Use "mode 5" restore from the MARS CLI to provide enhanced security during the data transfer.
D.Use the Admin > System Maintenance > Data Archiving on the MARS GUI to perform restore operations online.
E.To avoid problems, only restore to a same or higher-end MARS Appliance.
Correct:E
11.If the CAS is configured to autogenerate an IP address pool of 30 subnets with a netmask of /30, beginning at address 192.168.10.0, which IP address is leased to the end-user host on the second subnet?
A.192.168.10.4
B.192.168.10.5
C.192.168.10.6
D.192.168.10.7
Correct:C