02 March, 2020
Implementing Cisco Edge Network Security Solutions 300-206 Courses
Exam Code: 300-206 (Practice Exam Latest Test Questions VCE PDF)
Exam Name: Implementing Cisco Edge Network Security Solutions
Certification Provider: Cisco
Free Today! Guaranteed Training- Pass 300-206 Exam.
Check 300-206 free dumps before getting the full version:
Question 1
An administrator is deploying port-security to restrict traffic from certain ports to specific MAC
addresses. Which two considerations must an administrator take into account when using the switchport port-security macaddress sticky command? (Choose two.)
addresses. Which two considerations must an administrator take into account when using the switchport port-security macaddress sticky command? (Choose two.)
Question 2
Which Cisco switch technology prevents traffic on a LAN from being disrupted by a broadcast,
multicast, or unicast flood on a port?
multicast, or unicast flood on a port?
Question 3
Refer to the exhibit.
To protect Host A and Host B from communicating with each other, which type of PVLAN port should be used for each host?
To protect Host A and Host B from communicating with each other, which type of PVLAN port should be used for each host?
Question 4
An administrator installed a Cisco ASA that runs version 9.1. You are asked to configure the firewall
through Cisco ASDM.
When you attempt to connect to a Cisco ASA with a default configuration, which username and password grants you full access?
through Cisco ASDM.
When you attempt to connect to a Cisco ASA with a default configuration, which username and password grants you full access?
Question 5
Which type of object group will allow configuration for both TCP 80 and TCP 443?
Question 6
Which three options are default settings for NTP parameters on a Cisco ASA? (Choose three.)
Question 7
DRAG DROP
Drag and drop the Cisco Prime Security Manager available reports on the left onto the correct report examples on the right.
Solution:
Does this meet the goal?
Drag and drop the Cisco Prime Security Manager available reports on the left onto the correct report examples on the right.
Solution:
Does this meet the goal?
Question 8
When access rule properties are configured within ASDM, which traffic direction type is required by
global and management access rule?
global and management access rule?
Question 9
Which command configures the SNMP server group1 to enable authentication for members of the
access list east?
access list east?
Question 10
An engineer is using Cisco Security Manager and is using default ports configuration. What port must
be open to connect the Cisco Security Manager Client to an ASA?
be open to connect the Cisco Security Manager Client to an ASA?
Question 11
Which two SNMPv3 features ensure that SNMP packets have been sent securely?" Choose two.
Question 12
Which command change secure HTTP port from 443 to 444?
Question 13
How much storage is allotted to maintain system, configuration, and image files on the Cisco ASA 1000V during OVF template file deployment?
Question 14
When a Cisco ASA is configured in multicontext mode, which command is used to change between
contexts?
contexts?
Question 15
What is the default behavior of an access list on a Cisco ASA?
Question 16
A switch is being configured at a new location that uses statically assigned IP addresses. Which will
ensure that ARP inspection works as expected?
ensure that ARP inspection works as expected?
Question 17
To which port does a firewall send secure logging messages?
Question 18
In the default global policy, which traffic is matched for inspections by default?
Question 19
Which URL downloads a copy of packet-capture named "security" residing on a Cisco ASA adaptive security appliance with IP 10.10.100.11?
Question 20
Refer to the exhibit.
What traffic is being captured by the Cisco ASA adaptive security appliance?
What traffic is being captured by the Cisco ASA adaptive security appliance?
Question 21
Which statement about traffic storm control behavior is true?
Question 22
In which way are management packets classified on a firewall that operates in multiple context
mode?
mode?
Question 23
Which two statements about zone-based firewalls are true? (Choose two.)
Question 24
What command alters the SSL ciphers used by the Cisco Email Security Appliance for TLS sessions
and HTTPS access?
and HTTPS access?
Question 25
You have explicitly added the line deny ipv6 any log to the end of an IPv6 ACL on a router interface. Which two ICMPv6 packet types must you explicitly allow to enable traffic to traverse the interface? (Choose two.)
Question 26
Which cloud characteristic is used to describes the sharing of physical resource between various entities ?
Question 27
Best practices for hardening of management plane have been implemented on an ASA (or IOS router). Which protocols will be affected?
Question 28
Which utility can you use to troubleshoot and determine the timeline of packet changes in a data path within a Cisco firewall?
Question 29
An engineer is trying to configure Dynamic ARP Inspection. Which feature must be enabled first?