Download Cisco.EnsurePass.300-206.v13-06.2017-04-13.1e.101q.vcex

Download Exam

File Info

Exam Implementing Cisco Edge Network Security Solutions
Number 300-206
File Name Cisco.EnsurePass.300-206.v13-06.2017-04-13.1e.101q.vcex
Size 4.67 Mb
Posted April 13, 2017
Downloads 31

How to open VCEX & EXAM Files?

Files with VCEX & EXAM extensions can be opened by ProfExam Simulator.

Coupon: EXAM_HUB

Discount: 20%


Demo Questions

Question 1
Which two configurations are necessary to enable password-less SSH login to an IOS router?  
(Choose two.)

  • A: Enter a copy of the administrator's public key within the SSH key-chain
  • B: Enter a copy of the administrator's private key within the SSH key-chain
  • C: Generate a 512-bit RSA key to enable SSH on the router
  • D: Generate an RSA key of at least 768 bits to enable SSH on the router
  • E: Generate a 512-bit ECDSA key to enable SSH on the router
  • F: Generate a ECDSA key of at least 768 bits to enable SSH on the router

Question 2
Cisco Security Manager can manage which three products? (Choose three.)

  • A: Cisco IOS
  • B: Cisco ASA
  • C: Cisco IPS
  • D: Cisco WLC
  • E: Cisco Web Security Appliance
  • F: Cisco Email Security Appliance
  • G: Cisco ASA CX
  • H: Cisco CRS

Question 3
Which three options correctly identify the Cisco ASA1000V Cloud Firewall? (Choose three.)

  • A: operates at Layer 2
  • B: operates at Layer 3
  • C: secures tenant edge traffic
  • D: secures intraswitch traffic
  • E: secures data center edge traffic
  • F: replaces Cisco VSG
  • G: complements Cisco VSG
  • H: requires Cisco VSG

Question 4
Which statement describes the correct steps to enable Botnet Traffic Filtering on a Cisco ASA version 9.0 transparent-mode firewall with an active Botnet Traffic Filtering license?

  • A: Enable DNS snooping, traffic classification, and actions.
  • B: Botnet Traffic Filtering is not supported in transparent mode.
  • C: Enable the use of the dynamic database, enable DNS snooping, traffic classification, and actions.
  • D: Enable the use of dynamic database, enable traffic classification and actions. 

Question 5
Refer to the exhibit. Server A is a busy server that offers these services: 
World Wide Web  
Which command captures http traffic from Host A to Server A?  

  • A: capture traffic match udp host host
  • B: capture traffic match 80 host host
  • C: capture traffic match ip host
  • D: capture traffic match tcp host host
  • E: capture traffic match tcp host host eq 80

Question 6
What is the default behavior of an access list on the Cisco ASA security appliance?

  • A: It will permit or deny traffic based on the access-list criteria.
  • B: It will permit or deny all traffic on a specified interface.
  • C: An access group must be configured before the access list will take effect for traffic control.
  • D: It will allow all traffic.

Question 7
Which Cisco Security Manager form factor is recommended for deployments with fewer than 25 devices?

  • A: only Cisco Security Manager Standard
  • B: only Cisco Security Manager Professional
  • C: only Cisco Security Manager UCS Server Bundle
  • D: both Cisco Security Manager Standard and Cisco Security Manager Professional

Question 8
Refer to the exhibit. Which two statements about the SNMP configuration are true? (Choose two.)  

  • A: The router's IP address is
  • B: The SNMP server's IP address is
  • C: Only the local SNMP engine is configured.
  • D: Both the local and remote SNMP engines are configured.
  • E: The router is connected to the SNMP server via port 162.

Question 9
  (Click the Exhibits button)

An SNMP host is an IP address to which SNMP notifications and traps are sent. To configure  
SNMFV3 hosts, which option must you configure in addition to the target IP address?

  • A: the Cisco ASA as a DHCP server, so the SNMFV3 host can obtain an IP address
  • B: a username, because traps are only sent to a configured user
  • C: SSH, so the user can connect to the Cisco ASA
  • D: the Cisco ASA with a dedicated interface only for SNMP, to process the SNMP host traffic.

Question 10
Which two router commands enable NetFlow on an interface? (Choose two.)

  • A: ip flow ingress
  • B: ip flow egress
  • C: ip route-cache flow infer-fields
  • D: ip flow ingress infer-fields
  • E: ip flow-export version 9



You can buy ProfExam with a 20% discount..

Get Now!


Use ProfExam Simulator to open VCEX and EXAM files
ProfExam Screen


Use VCE Exam Simulator to open VCE files