351-018 CCIE Security Written Exam v4.0 (Beta) (Exam 2)

created by Fisher BRink (@fisher) at Feb. 8, 2016
  • DNSSEC was designed to overcome which security limitation of DNS?

  • Which three statements are true about MACsec? (Choose three.)

  • Which SSL protocol takes an application message to be transmitted, fragments the d...

  • IPsec SAs can be applied as a security mechanism for which three options? (Choose ...

  • Which four options are valid EAP mechanisms to be used with WPA2? (Choose four.)

  • Which three statements are true about the SSH protocol? (Choose three.)

  • Which two statements are true when comparing ESMTP and SMTP? (Choose two.)

  • How does a DHCP client request its previously used IP address in a DHCP DISCOVER p...

  • Which two statements about an authoritative server in a DNS system are true? (Choo...

  • Refer to the exhibit.Which three statements are true? (Choose three.)

  • Which three security features were introduced with the SNMPv3 protocol? (Choose th...

  • Which common Microsoft protocol allows Microsoft machine administration and operat...

  • To prevent a potential attack on a Cisco IOS router with the echo service enabled,...

  • Which query type is required for an nslookup on an IPv6 addressed host?

  • According to OWASP guidelines, what is the recommended method to prevent cross-sit...

  • Which option is used to collect wireless traffic passively, for the purposes of ea...

  • Which traffic class is defined for non-business-relevant applications and receives...

  • In the context of a botnet, what is true regarding a command and control server?

  • Which option is used for anti-replay prevention in a Cisco IOS IPsec implementation?

  • Refer to the exhibit.What will be the default action?

