351-018 CCIE Security Written Exam v4.0 (Beta) (Exam 15)

created by Fisher BRink (@fisher) at Feb. 8, 2016
  • What is a primary function of the SXP protocol?

  • In RFC 4034, DNSSEC introduced which four new resource record types? (Choose four.)

  • What functionality is provided by DNSSEC?

  • How are the username and password transmitted if a basic HTTP authentication is used?

  • Which field in an HTTPS server certificate is compared to a server name in the URL?

  • Which transport type is used by the DHCP protocol?

  • Which domain is used for a reverse lookup of IPv4 addresses?

  • Which port or ports are used for the FTP data channel in passive mode?

  • Why do firewalls need to specially treat an active mode FTP session?

  • Which statement is true about the TFTP protocol?

  • Which NTP stratum level means that the clock is unsynchronized?

  • Which statement is true about an NTP server?

  • Which statement is true about an SNMPv2 communication?

  • Refer to the exhibit.What is this configuration designed to prevent?

  • Refer to the exhibit.What does this configuration prevent?

  • Which four functionalities are built into the ISE? (Choose four.)

  • Which statement is correct about the Cisco IOS Control Plane Protection feature?

  • Which Category to Protocol mapping for NBAR is correct?

  • Which two options correctly describe Remote Triggered Black Hole Filtering (RFC 56...

  • A Cisco IOS router is configured as follows:ip dns spoofing will ...

