Ensurepass.com : Ensure you pass the IT Exams
2018 Aug Cisco Official New Released 300-209
100% Free Download! 100% Pass Guaranteed!
Implementing Cisco Secure Mobility Solutions
Question No: 121
Which command specifies the path to the Host Scan package in an ASA AnyConnect VPN?
-
csd hostscan path image
-
csd hostscan image path
-
csd hostscan path
-
hostscan image path
Answer: B
Question No: 122
Which two technologies are considered to be Suite B cryptography? (Choose two.)
-
MD5
-
SHA2
-
Elliptical Curve Diffie-Hellman
-
3DES
-
DES
Answer: B,C
Question No: 123
In the Cisco ASDM interface, where do you enable the DTLS protocol setting?
-
Configuration gt; Remote Access VPN gt; Network (Client) Access gt; Group Policies gt; Add
or Edit gt; Add or Edit Internal Group Policy
-
Configuration gt; Remote Access VPN gt; Network (Client) Access gt; AAA Setup gt; Local Users gt; Add or Edit
-
Device Management gt; Users/AAA gt; User Accounts gt; Add or Edit gt; Add or Edit User Account gt; VPN Policy gt; SSL VPN Client
-
Configuration gt; Remote Access VPN gt; Network (Client) Access gt; Group Policies gt; Add or Edit
Answer: C
Reference:
http://www.cisco.com/c/en/us/td/docs/security/vpn_client/anyconnect/anyconnect20/admini strative/guide/admin/admin5.html
Shows where DTLS can be configured as:
Configuration gt; Remote Access VPN gt; Network (Client) Access gt; Group Policies gt; Add or Edit gt; Add or Edit Internal Group Policy gt; Advanced gt; SSL VPN Client
Configuration gt; Remote Access VPN gt; Network (Client) Access gt; AAA Setup gt; Local Users gt; Add or Edit gt; Add or Edit User Account gt; VPN Policy gt; SSL VPN Client
鈥evice Management gt; Users/AAA gt; User Accounts gt; Add or Edit gt; Add or Edit User Account gt; VPN Policy gt; SSL VPN Client
Question No: 124
Refer to the exhibit. An engineer is troubleshooting a new GRE over IPSEC tunnel. The tunnel is established, but the engineer cannot ping from spoke 1 to spoke 2. Which type of traffic is being blocked?
-
ESP packets from spoke1 to spoke2
-
ISAKMP packets from spoke2 to spoke1
-
ESP packets from spoke2 to spoke1
-
ISAKMP packets from spoke1 to spoke2
Answer: C
Question No: 125
An engineer is attempting to establish a new site-to-site VPN connection. The tunnel terminates on
an ASA 5506-X which is behind an ASA 5515-X. The engineer notices that the tunnel is not establishing. Which option is a potential cause?
-
Certificates were not configured
-
Diffie – Helman Group is not set
-
Access lists were not applied
-
NAT – traversal is not configured
Answer: D
Question No: 126
What must be enabled in the web browser of the client computer to support Clientless SSL VPN?
-
cookies
-
ActiveX
-
Silverlight
-
popups
Answer: A
Question No: 127 CORRECT TEXT
Answer: Here are the steps as below:
Step 1: configure key ring crypto ikev2 keyring mykeys peer SiteB.cisco.com address 209.161.201.1
pre-shared-key local $iteA pre-shared key remote $iteB Step 2: Configure IKEv2 profile Crypto ikev2 profile default
identity local fqdn SiteA.cisco.com
Match identity remote fqdn SiteB.cisco.com Authentication local pre-share Authentication remote pre-share
Keyring local mykeys
Step 3: Create the GRE Tunnel and apply profile
crypto ipsec profile default set ikev2-profile default Interface tunnel 0
ip address 10.1.1.1 255.255.255.0 Tunnel source eth 0/0
Tunnel destination 209.165.201.1 tunnel protection ipsec profile default end
Question No: 128
Refer to the exhibit.
The user quot;contractorquot; inherits which VPN group policy?
-
employee
-
management
-
DefaultWEBVPNGroup
-
DfltGrpPolicy
-
new_hire
Answer: D
Question No: 129
Which two commands are include in the command show dmvpn detail? (Choose two.)
-
Show ip nhrp
-
Show ip nhrp nhs
-
Show crypto ipsec sa detail
-
Show crypto session detail
-
Show crypto sockets
Answer: D,E
Question No: 130
Which Cisco firewall platform supports Cisco NGE?
-
FWSM
-
Cisco ASA 5505
-
Cisco ASA 5580
-
Cisco ASA 5525-X
Answer: D
100% Ensurepass Free Download!
–Download Free Demo:300-209 Demo PDF
100% Ensurepass Free Guaranteed!
–300-209 Dumps
EnsurePass | ExamCollection | Testking | |
---|---|---|---|
Lowest Price Guarantee | Yes | No | No |
Up-to-Dated | Yes | No | No |
Real Questions | Yes | No | No |
Explanation | Yes | No | No |
PDF VCE | Yes | No | No |
Free VCE Simulator | Yes | No | No |
Instant Download | Yes | No | No |