Testinside ccsp 642-502 free down
| CISCO 642-502 Exam | ||||||||||||||||||||||||
|
||||||||||||||||||||||||
QUESTION 27:
CBAC has been configured on router CK1 to increase the security of the Certkiller
network. CBAC intelligently filters TCP and UDP packets based on which
protocol-session information?
A. Network layer
B. Transport layer
C. Data-link
D. Application layer
E. Presentation layer
F. Session layer
G. Physical layer
Answer: D
Explanation:
Context-based Access Control (CBAC) in Cisco IOS Firewall is an advanced traffic
filtering technology that intelligently filters transmission control protocol (TCP) and user
datagram protocol (UDP) packets to determine whether they contain malicious viruses or
worms. CBAC can be configured to permit specified TCP and UDP traffic through a
firewall only when the connection is initiated from within the network to be protected.
Without CBAC, traffic filtering is limited to access list implementations that examine
packets at the network layer or at the transport layer. CBAC examines not only these but
also the application-layer protocol information to learn about the state of a TCP or UDP
session.
QUESTION 28:
John and Kathy are working on configuring the IOS firewall together. They are
figuring out what CBAC uses for inspection rules to configure on a per-application
protocol basis. Which one of these is the correct one?
A. ODBC filtering
B. Tunnel, transport models, or both
C. Alerts and audit trails
D. Stateful failover
E. None of the above
Answer: C
Explanation:
CBAC also generates real-time alerts and audit trails. Enhanced audit trail features use
SYSLOG to track all network transactions. Real-time alerts send SYSLOG error
messages to central management consoles upon detecting suspicious activity. Using
CBAC inspection rules, you can configure alerts and audit trail information on a
per-application protocol basis.
Reference:
http://www.cisco.com/en/US/products/sw/iosswrel/ps1835/products_configuration_guide_chapter09186a00800
c
QUESTION 29:
You are the security administrator for Certkiller and you need to know what CBAC
does on the Cisco IOS Firewall. Which one of these is the best answer?
A. Creates specific security policies for each user at Certkiller Inc.
B. Provides additional visibility at intranet, extranet, and Internet perimeters at Certkiller
Inc.
C. Protects the network from internal attacks and threats at Certkiller Inc.
D. Provides secure, per-application access control across network perimeters at Certkiller
Inc.
Answer: D
Free download:pass4sure ccsp 640-502
Free download:testking ccsp 640-502
Download Free Latest Testinside Certification Braindumps
- Free Testinside Testinside CCSP 642-503
- Free Testinside Testinside CCSP 642-515
- Free Testinside Testinside cisco ccsp 642-504
- Free Testinside free latest testking ccsp 642-552 exam
- Free Testinside Testinside CCSP 642-524
- Free Testinside Testinside ccsp
- Free Testinside Testinside CCSP 642-542
- Free Testinside Testinside ccna 640-802 free
- Free Testinside free latest testinside for ccna 640-802 v14
- Free Testinside Testinside CCSP 642-523



