Testinside CCSP 642-533

Filed Under (cisco) by Testinside Sadikhov on 22-10-2008
Visited 62 times, 1 so far today

Implementing Cisco Intrusion Prevention System (IPS) : 642-533 Exam

Exam Number/Code: 642-533
Exam Name:Implementing Cisco Intrusion Prevention System (IPS)

“Implementing Cisco Intrusion Prevention System (IPS) “, also known as 642-533 exam, is a Cisco certification.
Preparing for the 642-533 exam? Searching 642-533 Test Questions, 642-533 Practice Exam, 642-533 Dumps?

Free 642-533 Demo Download
TestInside offers free demo for 642-533 exam ( Implementing Cisco Intrusion Prevention System (IPS) ). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. We are the only one site can offer demo for almost all products.

642-533 IPS
Implementing Cisco Intrusion Prevention Systems

Exam Number: 642-533
Associated Certifications: CCSP
Duration: 90 minutes (55 - 65 Questions)
Available Languages: English
Click Here to Register: Pearson VUE
Exam Policies: Read current policies and requirements
Exam Tutorial: Review type of exam questions

Exam Description Exam Topics Recommended Training Additional Resources
Exam Description
The 642-533 IPS Implementing Cisco Intrusion Prevention Systems exam is associated with the Cisco Certified Security Professional certification. This exam tests a candidate’s knowledge of implementing the Cisco IPS product. Candidates can prepare for this exam by taking the IPS Implementing Cisco Intrusion Prevention Systems v6.0 course.

Exam Topics
The following topics are general guidelines for the content likely to be included on the Remote Access exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice.

Describe how Cisco IPS sensors are used to mitigate network security threats
List sensor requirements for inline operations
Explain the difference between inline and promiscuous mode sensor operations
Explain how Cisco IPS protects network devices from attacks (Describe signatures, alerts, and actions)
Explain the evasive techniques used by hackers and how Cisco IPS defeats those techniques
Describe the considerations necessary for selection, placement, and deployment of a network intrusion prevention system
Explain the Cisco IPS signature features

Install Cisco IPS sensors/modules and configure essential system parameters
Explain AIP-SSM functionalities
Use the CLI to initialize the sensor
Configure user accounts and explain the different user roles
Configure management access to the sensor appliance
Explain how allowed hosts are used and how they are configured
Describe sensor interfaces, interface pairs, VLAN-pairs, and VLAN-groups
Use the Cisco IDM to configure sensor interfaces (enable, create pairs, assign to virtual sensors)
Describe and configure software bypass
Describe sensor communications with external management and monitoring systems
Launch, navigate, and use the Cisco IDM to manage and monitor the sensor
Describe the various CLI configuration modes and sub modes and navigate between them
List the tasks for installing and configuring the IDSM-2 and AIP-SSM

Describe Cisco IPS sensor advanced system parameters
Plan the mitigation of specific network vulnerabilities and exploits
Describe sensor tuning
Explain IP fragment and TCP stream reassembly options
Explain how IP logging should be used and how it is configured
Explain the use of Event Variables
Describe signature engines and their functionality
Determine which response actions need to be configured for a given scenario
Describe the purpose of the Meta Event Generator
Explain Target Value Ratings and how they are used
Determine the need for Event Action Rules in a given scenario
Explain event Risk Ratings and how they are used

Tune Cisco IPS sensor advanced system parameters to optimize attack mitigation performance
Use the IDM to tune the sensor to work optimally in the network
Use the IDM to tune signatures to provide maximum protection for a network
Given a scenario, use the IDM to create custom signature to meet the requirements
Configure response actions for a signature
Configure the sensor to take response actions based on a risk rating
Use the Cisco IDM to create a Meta signature and disable alert production for the component signatures
Configure Event Action Filters
Configure Target Value Ratings
Configure general settings for Event Action Rules
Configure Event Variables
Use the sensor application policy enforcement feature
Configure passive OS fingerprinting (POSFP)
Explain the External Product Interface, its benefits, and specifications
Configure a virtual sensor
Configure anomaly detection
Use IDM/CLI to monitor advanced features such as POSFP and AD

Analyze Cisco IPS sensor events to determine the appropriate response to network attacks
Use the CLI and the Cisco IDM and IEV to monitor events

Upgrade and maintain Cisco IPS sensors
Move software images/upgrades and configuration files via HTTP, HTTPS, SCP, and FTP
Apply the appropriate system image to the sensor
Perform sensor password recovery
Explain sensor licensing and how to install a license
Describe service pack and signature update file names and how to install them

QUESTION 27
In Which three of these ways can you achieve better Cisco IPS Sensor Performance?
(Choose three.)
A. Disable unneeded signatures
B. Enable selective packet capture using VLAN ACL on the Cisco IPS 4200 Series
Sensors
C. Always enable Unidirectional capture
D. Place the Cisco IPS Sensor behind a firewall
E. Have multiple Cisco IPS Sensors in the path and configure them to detect different
types of events
F. Enable all anti-evasive measures to reduce noise
Answer: A,D,E
QUESTION 28
Which two communication protocols does Cisco IEV support for communications with
Cisco IPS Sensors? (Choose two.)
A. HTTPS
B. IPSec
C. HTTP
D. SSH
E. SCP
Answer: A,C
QUESTION 29
What two steps must you perform to initialize a Cisco IPS Sensor Appliance? (Choose
two.)
A. Connect a serial cable to the console port of the sensor
B. Enable telnet and then configure basic sensor parameters
C. Connect to the sensor via SSH
D. Issue the setup command via the CLI
E. Use the Cisco IDM Setup Wizard
Answer: A,D

Testinside CCSP 642-533 Questions and Answers : 118 Q&As
Updated: October 3rd , 2008
Price: $125.99 $99.99

Free download?pass4sure CCSP 642-533
Free download?testking CCSP 642-533

Testinside Test Tools

Type

Exam Bible New Questions & Answers

Latest Updated

Download link
Testking torrent All Testinside's Exam Pack

698

1 days ago Available
Share and Enjoy:
  • Digg
  • del.icio.us
  • Netvouz
  • DZone
  • ThisNext
  • MisterWong
  • Wists

Random Posts

Comments:

One Comment posted for Testinside CCSP 642-533

Make a comment

free testking free pass4sure free testking free cisco braindumps

tag cloud