350-018 CCIE Security Written Exam (Exam 25)

created by Fisher BRink (@fisher) at Feb. 8, 2016
  • Which of the following is AH??s destination IP port?

  • You work as a network engineer, study the exhibit carefully. Your company has just...

  • In Cisco PIX Firewall Software version 7.0 and later, which command replaced the f...

  • Certificate Enrollment Process (CEP) runs over what TCP port number? (Choose the b...

  • On the basis of the partial debug output displayed in the exhibit, which value is ...

  • What definition best describes Kerberized?

  • Which three statements best describe how DNSSEC prevents DNS cache poisoning attac...

  • Which two of the following can you configure an IPS sensor with three sniffing int...

  • What definition best describes a key distribution center when Kerberos is applied ...

  • Examine the following items, what are the header sizes for point-to-point and mult...

  • Which three statements are correct concerning private address space? (Choose three.)

  • Which of the following protocols does TACACS+ support?

  • Which two statements correctly describe NAT? (Choose two.)

  • What versions of TACACS does Cisco IOS support? (Select the best three answers.)

  • Which command can be used to globally disable the requirement that a translation r...

  • Which two statements are attributed to stateless filtering? (Choose two.)

  • What algorithm initiates and encrypts a session between two routers?? exchange key...

  • You are a network engineer, can you tell me how do TCP SYN attacks take advantage ...

  • Select three RFC 1918 addresses. (Choose three.)

