400-251 Latest Exam (May 2018)

[Free] 2018(June) Dumps4cert Cisco 400-251 Dumps with VCE and PDF Download 241-250

June 24, 2018

Dumps4cert.com : Latest Dumps with PDF and VCE Files
2018 May Cisco Official New Released 400-251
100% Free Download! 100% Pass Guaranteed!

CCIE Security Written Exam (v5.0)

Question No: 241 – (Topic 2)

What is the default communication port used by RSA SDI and ASA ?

  1. UDP 500

  2. UDP 848

  3. UDP 4500

  4. UDP 5500

Answer: D

Question No: 242 – (Topic 2)

Which two OSPF network types support the concept of a designated router? (Choose two.)

  1. broadcast

  2. NBMA

  3. point-to-multipoint

  4. point-to-multipoint nonbroadcast

  5. loopback

Answer: A,B

Question No: 243 – (Topic 2)

IANA is responsible for which three IP resources? (Choose three.)

  1. IP address allocation

  2. Detection of spoofed address

  3. Criminal prosecution of hackers

  4. Autonomous system number allocation

  5. Root zone management in DNS

  6. BGP protocol vulnerabilities

Answer: A,D,E

Question No: 244 – (Topic 2)

Dumps4Cert 2018 PDF and VCE

Refer to the exhibit. R1 and R2 are connected across and ASA with MD5 authentication. Which statement about eBGP peering between the routers could be true?

  1. eBGP peering will fail because ASA is transit lacks BGP support.

  2. eBGP peering will be successful.

  3. eBGP peering will fail because the two routers must be directly connected to allow peering.

  4. eBGP peering will fail because of the TCP random sequence number feature.

Answer: C

Question No: 245 – (Topic 2)

What message does the TACACS daemon send during the AAA authentication process

to request additional authentication information?




  4. ERROR

  5. REPLY

Answer: C

Question No: 246 – (Topic 2)

Which two statements about the SHA-1 algorithm are true? (Choose two)

  1. The SHA-1 algorithm is considered secure because it always produces a unique hash for the same message.

  2. The SHA-1 algorithm takes input message of any length and produces 160-bit hash output.

  3. The SHA-1 algorithm is considered secure because it is possible to find a message from its hash.

  4. The purpose of the SHA-1 algorithm is to provide data confidentiality.

  5. The purpose of the SHA-1 algorithm is to provide data authenticity.

Answer: B,E

Question No: 247 – (Topic 2)

What are two security controls you can implement to protect your organization’s network from virus and worm

outbreak? (Choose two)

  1. Require users to authenticate before accessing the network

  2. Quarantine hosts that fail to meet your organization’s IT security requirements

  3. Implement Cisco identity service Engine (ISE. for network security

  4. Implement routing protocols with strong interface authentication

  5. Deploy Cisco prime LMS to manage network security

Answer: B,C

Question No: 248 – (Topic 2)

From the list below, which one is the major benefit of AMP Threat GRID?

  1. AMP Threat Grid collects file information from customer servers and run tests on them to see if they are infected with viruses

  2. AMP Threat Grid learns ONLY from data you pass on your network and not from anything else to monitor for suspicious behavior. This makes the system much faster and efficient

  3. AMP Threat Grid combines Static, and Dynamic Malware analysis with threat intelligence into one combined solution

  4. AMP Threat Grid analyzes suspicious behavior in your network against exactly 400 behavioral


Answer: C

Question No: 249 – (Topic 2)

According to RFC 4890, which three message must be dropped at the transit firewall/router?(Choose three.)

  1. Router Renumbering(Type 138)

  2. Node Information Query(Type 139)

  3. Router Solicitation(Type 133)

  4. Node information Response(Type

  5. Router Advertisement(Type 134)

  6. Neighbor Solicitaion(Type 135)

Answer: A,B,D

Question No: 250 – (Topic 2)

In Cisco Wireless LAN Controller (WLC. which web policy enables failed Layer 2 authentication to fall back to

WebAuth authentication with a user name and password?

  1. On MAC Filter Failure

  2. Pass through

  3. Splash Page Web Redirect

  4. Conditional Web Redirect

  5. Authentication

Answer: A

100% Dumps4cert Free Download!
Download Free Demo:400-251 Demo PDF
100% Dumps4cert Pass Guaranteed!
400-251 Dumps

Dumps4cert ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No