300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 91-100

By on April 22, 2015
Ensurepass    QUESTION 91 What action does the hub take when it receives a NHRP resolution request from a spoke for a network that exists behind another spoke?   A. The hub sends back a resolution reply to the requesting spoke. B. The hub updates its own NHRP mapping. C. The hub forwards the request to the destination spoke. D. The hub waits for the second spoke to send a request so that it can respond to both spokes.   Correct Answer: C     QUESTION 92 Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 81-90

By on
Ensurepass="cursor: auto; margin: 0cm 0cm 0pt; line-height: normal; text-autospace: ; mso-layout-grid-align: none" align="left">  QUESTION 81 You are troubleshooting a site-to-site VPN issue where the tunnel is not establishing. After issuing the debug crypto isakmp command on the headend router, you see the following output. What does this output suggest?   1d00h: ISAKMP (0:1): atts are not acceptable. Next payload is 0 1d00h: ISAKMP (0:1); no offers accepted! 1d00h: ISAKMP (0:1): SA not Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 61-70

By on
Ensurepass="cursor: auto; margin: 0cm 0cm 0pt; line-height: normal; text-autospace: ; mso-layout-grid-align: none" align="left">  QUESTION 61 What is the Cisco recommended TCP maximum segment on a DMVPN tunnel interface when the MTU is set to 1400 bytes?   A. 1160 bytes B. 1260 bytes C. 1360 bytes D. 1240 bytes   Correct Answer: C     QUESTION 62 Which technology does a multipoint GRE interface require to resolve endpoints?   A. ESP B. dynamic routing Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 71-80

By on
Ensurepass  QUESTION 71   If the IKEv2 tunnel were to establish successfully, which encryption algorithm would be used to encrypt traffic?   A. DES B. 3DES C. AES D. AES192 E. AES256   Correct Answer: E Explanation: Both ASA's are configured to support AES 256, so during the IPSec negotiation they will use the strongest algorithm that is supported by each peer.                             Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 41-50

By on
Ensurepass  QUESTION 41 Which two statements are true when designing a SSL VPN solution using Cisco AnyConnect? (Choose two.)   A. The VPN server must have a self-signed certificate. B. A SSL group pre-shared key must be configured on the server. C. Server side certificate is optional if using AAA for client authentication. D. The VPN IP address pool can overlap with the rest of the LAN networks. E. DTLS can be enabled for better performance.   Correct Answer: DE   Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 51-60

By on
Ensurepass  QUESTION 51 You are configuring a Cisco IOS SSL VPN gateway to operate with DVTI support. Which command must you configure on the virtual template?   A. tunnel protection ipsec B. ip virtual-reassembly C. tunnel mode ipsec D. ip unnumbered   Correct Answer: D     QUESTION 52 Which protocol supports high availability in a Cisco IOS SSL VPN environment?   A. HSRP B. VRRP C. GLBP D. IRDP   Correct Answer: A       Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 21-30

By on
Ensurepass  QUESTION 21 When Cisco ASA applies VPN permissions, what is the first set of attributes that it applies?   A. dynamic access policy attributes B. group policy attributes C. connection profile attributes D. user attributes   Correct Answer: A     QUESTION 22 What are two variables for configuring clientless SSL VPN single sign-on? (Choose two.)   A. CSCO_WEBVPN_OTP_PASSWORD B. CSCO_WEBVPN_INTERNAL_PASSWORD C. CSCO_WEBVPN_USERNAME Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 31-40

By on
Ensurepass  QUESTION 31 Which Cisco ASDM option configures forwarding syslog messages to email?   A. Configuration > Device Management > Logging > E-Mail Setup B. Configuration > Device Management > E-Mail Setup > Logging Enable C. Select the syslogs to email, click Edit, and select the Forward Messages option. D. Select the syslogs to email, click Settings, and specify the Destination Email Address option.   Correct Answer: A     QUESTION Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 11-20

By on
Ensurepass="cursor: auto; margin: 0cm 0cm 0pt; line-height: normal; text-autospace: ; mso-layout-grid-align: none" align="left">  QUESTION 11 What are the three primary components of a GET VPN network? (Choose three.)   A. Group Domain of Interpretation protocol B. Simple Network Management Protocol C. server load balancer D. accounting server E. group member F. key server Correct Answer: AEF     QUESTION 12 Which two IKEv1 policy options must match on each Read more [...]

Continue Reading

300-209 Real Tests (Spring 2015)

Download New Updated (Spring 2015) Cisco 300-209 Actual Tests 1-10

By on
Ensurepass QUESTION 1 Which two are characteristics of GETVPN? (Choose two.)   A. The IP header of the encrypted packet is preserved B. A key server is elected among all configured Group Members C. Unique encryption keys are computed for each Group Member D. The same key encryption and traffic encryption keys are distributed to all Group Members   Correct Answer: AD     QUESTION 2 A company has decided to migrate an existing IKEv1 VPN tunnel to IKEv2. Which two are Read more [...]

Continue Reading