Menu

Skip to content
New Updated Lead2pass ExamCollection

New Updated Lead2pass ExamCollection

100% pass by training Lead2pass latest exam dumps

[PDF&VCE] New Lead2pass Cisco 300-209 New Questions Free Download (141-160)

Posted on October 19, 2016 by admin

2016 October Cisco Official New Released 300-209 Dumps in Lead2pass.com!

100% Free Download! 100% Pass Guaranteed!

How to 100% pass 300-209 exam? Lead2pass provides the guaranteed 300-209 exam dumps to boost up your confidence in 300-209 exam. Successful candidates have provided their reviews about our 300-209 dumps. Now Lead2pass supplying the new version of 300-209 VCE and PDF dumps. We ensure our 300-209 exam questions are the most complete and authoritative compared with others’, which will ensure your 300-209 exam pass.

Following questions and answers are all new published by Cisco Official Exam Center: http://www.lead2pass.com/300-209.html

QUESTION 141
Which technology is FlexVPN based on?

A.    OER
B.    VRF
C.    IKEv2
D.    an RSA nonce

Answer: C

QUESTION 142
Which application does the Application Access feature of Clientless VPN support?

A.    TFTP
B.    VoIP
C.    Telnet
D.    active FTP

Answer: C

QUESTION 143
Where do you configure AnyConnect certificate-based authentication in ASDM?

A.    group policies
B.    AnyConnect Connection Profile
C.    AnyConnect Client Profile
D.    Advanced Network (Client) Access

Answer: B

QUESTION 144
Which protocols does the Cisco AnyConnect client use to build multiple connections to the security appliance?

A.    TLS and DTLS
B.    IKEv1
C.    L2TP over IPsec
D.    SSH over TCP

Answer: A

QUESTION 145
Which is used by GETVPN, FlexVPN and DMVPN?

A.    NHRP
B.    MPLS
C.    GRE
D.    ESP

Answer: D

QUESTION 146
Refer to the exhibit. Which VPN solution does this configuration represent?
1461

A.    DMVPN
B.    GETVPN
C.    FlexVPN
D.    site-to-site

Answer: C

QUESTION 147
Which VPN solution is best for a collection of branch offices connected by MPLS that frequenty make VoIP calls between branches?

A.    GETVPN
B.    Cisco AnyConnect
C.    site-to-site
D.    DMVPN

Answer: A

QUESTION 148
Refer to the exhibit. You have implemented an SSL VPN as shown.
Which type of communication takes place between the secure gateway R1 and the Cisco Secure ACS?
1481

A.    HTTP proxy
B.    AAA
C.    policy
D.    port forwarding

Answer: B

QUESTION 149
Which technology can provide high availability for an SSL VPN?

A.    DMVPN
B.    a multiple-tunnel configuration
C.    a Cisco ASA pair in active/passive failover configuration
D.    certificate to tunnel group maps

Answer: C

QUESTION 150
Refer to the exhibit. Which VPN solution does this configuration represent?
1501

A.    Cisco AnyConnect
B.    IPsec
C.    L2TP
D.    SSL VPN

Answer: B

QUESTION 151
Which technology must be installed on the client computer to enable users to launch applications from a Clientless SSL VPN?

A.    Java
B.    QuickTime plug-in
C.    Silverlight
D.    Flash

Answer: A

QUESTION 152
In the Diffie-Hellman protocol, which type of key is the shared secret?

A.    a symmetric key
B.    an asymmetric key
C.    a decryption key
D.    an encryption key

Answer: A

QUESTION 153
Refer to the exhibit. Which exchange does this debug output represent?
1531

A.    IKE Phase 1
B.    IKE Phase 2
C.    symmetric key exchange
D.    certificate exchange

Answer: A

QUESTION 154
Which two technologies are considered to be Suite B cryptography? (Choose two.)

A.    MD5
B.    SHA2
C.    Elliptical Curve Diffie-Hellman
D.    3DES
E.    DES

Answer: BC

QUESTION 155
Which protocol does DTLS use for its transport?

A.    TCP
B.    UDP
C.    IMAP
D.    DDE

Answer: B

QUESTION 156
Scenario:
You are the network security manager for your organization.
Your manager has received a request to allow an external user to access to your HQ and DM2 servers.
You are given the following connection parameters for this task.
Using ASDM on the ASA, configure the parameters below and test your configuration by accessing the Guest PC. Not all AS DM screens are active for this exercise.
Also, for this exercise, all changes are automatically applied to the ASA and you will not have to click APPLY to apply the changes manually.
• Enable Clientless SSL VPN on the outside interface
• Using the Guest PC, open an Internet Explorer window and test and verify the basic connection to the SSL VPN portal using address: https://vpn-secure-x.public
• a. You may notice a certificate error in the status bar, this can be ignored for this exercise
• b. Username: vpnuser
• c. Password: cisco123
• d. Logout of the portal once you have verified connectivity
• Configure two bookmarks with the following parameters:
• a. Bookmark List Name: MY-BOOKMARKS
• b. Use the: URL with GET or POST method
• c. Bookmark Title: HQ-Server
• i. http://10.10.3.20
• d. Bookmark Title: DMZ-Server-FTP
• i. ftp://172.16.1.50
• e. Assign the configured Bookmarks to:
• i. DfltGrpPolicy
• ii. DfltAccessPolicy
• iii. LOCAL User: vpnuser
• From the Guest PC, reconnect to the SSL VPN Portal
• Test both configured Bookmarks to ensure desired connectivity
You have completed this exercise when you have configured and successfully tested Clientless SSL VPN connectivity.
Topology:
1561

1562
1563
Answer:
First, enable clientless VPN access on the outside interface by checking the box found below:
1564
Then, log in to the given URL using the vpnuser/cisco123 credentials:
1565
Logging in will take you to this page, which means you have now verified basic connectivity:
1566
Now log out by hitting the logout button.
Now, go back to the ASDM and navigate to the Bookmarks portion:
1567
Make the name MY-BOOKMARKS and use the “Add” tab and add the bookmarks per the instructions:
1568
Ensure the “URL with GET of POST method” button is selected and hit OK:
1569
Add the two bookmarks as given in the instructions:
15610
15611
15612
Hit OK and you will see this:
15613

Select the MY-BOOKMARKS Bookmarks and click on the “Assign” button. 
Then, click on the appropriate check boxes as specified in the instructions and hit OK.
15614
After hitting OK, you will now see this:
15615
Then, go back to the Guest-PC, log back in and you should be able to test out the two new bookmarks.

QUESTION 157
Scenario:
You are the senior network security administrator for your organization. Recently and junior engineer configured a site-to-site IPsec VPN connection between your headquarters Cisco ASA and a remote branch office.
You are now tasked with verifying the IKEvl IPsec installation to ensure it was properly configured according to designated parameters. Using the CLI on both the Cisco ASA and branch ISR. verify the IPsec configuration is properly configured between the two sites.
NOTE: the show running-config command cannot be used for the this exercise.
Topology:
1571
1572
1573
What is being used as the authentication method on the branch ISR?

A.    Certifcates
B.    Pre-shared keys
C.    RSA public keys
D.    Diffie-Hellman Group 2

Answer: B
Explanation:
The show crypto isakmp key command shows the preshared key of "cisco"

QUESTION 158
Scenario:
You are the senior network security administrator for your organization. Recently and junior engineer configured a site-to-site IPsec VPN connection between your headquarters Cisco ASA and a remote branch office.
You are now tasked with verifying the IKEvl IPsec installation to ensure it was properly configured according to designated parameters. Using the CLI on both the Cisco ASA and branch ISR. verify the IPsec configuration is properly configured between the two sites.
NOTE: the show running-config command cannot be used for the this exercise.
Topology:
1581
1582
1583
Which transform set is being used on the branch ISR?

A.    Default
B.    ESP-3DES ESP-SHA-HMAC
C.    ESP-AES-256-MD5-TRANS mode transport
D.    TSET

Answer: B
Explanation:
This can be seen from the "show crypto ipsec sa" command as shown below:

QUESTION 159
Scenario:
You are the senior network security administrator for your organization. Recently and junior engineer configured a site-to-site IPsec VPN connection between your headquarters Cisco
ASA and a remote branch office.
You are now tasked with verifying the IKEvl IPsec installation to ensure it was properly configured according to designated parameters. Using the CLI on both the Cisco ASA and branch ISR. verify the IPsec configuration is properly configured between the two sites.
NOTE: the show running-config command cannot be used for the this exercise.
Topology:
1591
1592
1593
In what state is the IKE security association in on the Cisco ASA?

A.    There are no security associations in place
B.    MM_ACTIVE
C.    ACTIVE(ACTIVE)
D.    QM_IDLE

Answer: B
Explanation:
This can be seen from the "show crypto isa sa" command:

QUESTION 160
Scenario:
You are the senior network security administrator for your organization. Recently and junior engineer configured a site-to-site IPsec VPN connection between your headquarters Cisco ASA and a remote branch office.
You are now tasked with verifying the IKEvl IPsec installation to ensure it was properly configured according to designated parameters. Using the CLI on both the Cisco ASA and branch ISR. verify the IPsec configuration is properly configured between the two sites.
NOTE: the show running-config command cannot be used for the this exercise.
Topology:
1601
1602
1603
Which crypto map tag is being used on the Cisco ASA?

A.    outside_cryptomap
B.    VPN-to-ASA
C.    L2L_Tunnel
D.    outside_map1

Answer: D
Explanation:
This is seen from the "show crypto ipsec sa" command on the ASA.

All the 300-209 braindumps are updated. Get a complete hold of 300-209 PDF dumps and 300-209 practice test with free VCE player through Lead2pass and boost up your skills.

300-209 new questions on Google Drive: https://drive.google.com/open?id=0B3Syig5i8gpDODI1TDlUT1lBV00

2016 Cisco 300-209 exam dumps (All 237 Q&As) from Lead2pass:

http://www.lead2pass.com/300-209.html [100% Exam Pass Guaranteed]

Posted in 300-209 Dumps 300-209 Exam Questions 300-209 New Questions 300-209 PDF 300-209 VCE Cisco | Tagged 300-209 braindumps 300-209 exam dumps 300-209 exam question 300-209 pdf dumps 300-209 practice test 300-209 study guide 300-209 vce dumps

Categories

Test Engine

VCE Exam Simulator for Mobile

Take exams on your mobile device the same way you do on your desktop. iPhone, iPad and Android devices are supported.

Microsoft Dumps

PDF & VCEMicrosoft 70-243 Dumps
PDF & VCEMicrosoft 70-246 Dumps
PDF & VCEMicrosoft 70-247 Dumps
PDF & VCEMicrosoft 70-331 Dumps
PDF & VCEMicrosoft 70-332 Dumps
PDF & VCEMicrosoft 70-333 Dumps
PDF & VCEMicrosoft 70-341 Dumps
PDF & VCEMicrosoft 70-342 Dumps
PDF & VCEMicrosoft 70-346 Dumps
PDF & VCEMicrosoft 70-347 Dumps
PDF & VCEMicrosoft 70-410 Dumps
PDF & VCEMicrosoft 70-411 Dumps
PDF & VCEMicrosoft 70-412 Dumps
PDF & VCEMicrosoft 70-413 Dumps
PDF & VCEMicrosoft 70-414 Dumps
PDF & VCEMicrosoft 70-417 Dumps
PDF & VCEMicrosoft 70-457 Dumps
PDF & VCEMicrosoft 70-458 Dumps
PDF & VCEMicrosoft 70-461 Dumps
PDF & VCEMicrosoft 70-462 Dumps
PDF & VCEMicrosoft 70-463 Dumps
PDF & VCEMicrosoft 70-464 Dumps
PDF & VCEMicrosoft 70-465 Dumps
PDF & VCEMicrosoft 70-466 Dumps
PDF & VCEMicrosoft 70-467 Dumps
PDF & VCEMicrosoft 70-469 Dumps
PDF & VCEMicrosoft 70-480 Dumps
PDF & VCEMicrosoft 70-481 Dumps
PDF & VCEMicrosoft 70-482 Dumps
PDF & VCEMicrosoft 70-483 Dumps
PDF & VCEMicrosoft 70-486 Dumps
PDF & VCEMicrosoft 70-487 Dumps
PDF & VCEMicrosoft 70-488 Dumps
PDF & VCEMicrosoft 70-489 Dumps
PDF & VCEMicrosoft 70-511 Dumps
PDF & VCEMicrosoft 70-513 Dumps
PDF & VCEMicrosoft 70-515 Dumps
PDF & VCEMicrosoft 70-532 Dumps
PDF & VCEMicrosoft 70-533 Dumps
PDF & VCEMicrosoft 70-534 Dumps
PDF & VCEMicrosoft 70-640 Dumps
PDF & VCEMicrosoft 70-642 Dumps
PDF & VCEMicrosoft 70-646 Dumps
PDF & VCEMicrosoft 70-687 Dumps
PDF & VCEMicrosoft 70-688 Dumps
PDF & VCEMicrosoft 70-689 Dumps
PDF & VCEMicrosoft 70-692 Dumps
PDF & VCEMicrosoft 70-695 Dumps
PDF & VCEMicrosoft 70-696 Dumps
PDF & VCEMicrosoft 70-697 Dumps
PDF & VCEMicrosoft 74-335 Dumps
PDF & VCEMicrosoft 74-338 Dumps
PDF & VCEMicrosoft 74-343 Dumps
PDF & VCEMicrosoft 74-344 Dumps
PDF & VCEMicrosoft 74-409 Dumps
PDF & VCEMicrosoft 98-361 Dumps
PDF & VCEMicrosoft 98-367 Dumps
PDF & VCEMB2-700 Dumps
PDF & VCEMB2-701 Dumps
PDF & VCEMB2-702 Dumps
PDF & VCEMB2-703 Dumps
GetAll List Of Microsoft Dumps NOW

Cisco Dumps

PDF & VCECisco 200-120 Dumps
PDF & VCECisco 100-101 Dumps
PDF & VCECisco 200-101 Dumps
PDF & VCECisco 200-310 Dumps
PDF & VCECisco 200-355 Dumps
PDF & VCECisco 200-401 Dumps
PDF & VCECisco 210-260 Dumps
PDF & VCECisco 210-060 Dumps
PDF & VCECisco 210-065 Dumps
PDF & VCECisco 300-101 Dumps
PDF & VCECisco 300-115 Dumps
PDF & VCECisco 300-135 Dumps
PDF & VCECisco 300-206 Dumps
PDF & VCECisco 300-207 Dumps
PDF & VCECisco 300-208 Dumps
PDF & VCECisco 300-209 Dumps
PDF & VCECisco 300-070 Dumps
PDF & VCECisco 300-075 Dumps
PDF & VCECisco 300-080 Dumps
PDF & VCECisco 300-085 Dumps
PDF & VCECisco 400-101 Dumps
PDF & VCECisco 400-201 Dumps
PDF & VCECisco 400-051 Dumps
PDF & VCECisco 350-018 Dumps
PDF & VCECisco 642-035 Dumps

CompTIA Dumps

PDF & VCESY0-401 Dumps
PDF & VCEN10-006 Dumps
PDF & VCE220-901 Dumps
PDF & VCE220-902 Dumps
PDF & VCESG0-001 Dumps
PDF & VCECAS-002 Dumps
PDF & VCESK0-004 Dumps

Hottest Exam

PDF & VCEVMware VCP550 Dumps
PDF & VCEVMware VCP550D Dumps
PDF & VCEVMware 1V0-601 Dumps
PDF & VCEVMware 2V0-620 Dumps
PDF & VCEVCP5-DCV Dumps
PDF & VCEISC CISSP Dumps
PDF & VCEPMI PMP Dumps
PDF & VCEOracle 1Z0-051 Dumps
PDF & VCEOracle 1Z0-052 Dumps
PDF & VCEOracle 1Z0-060 Dumps
PDF & VCEOracle 1Z0-061 Dumps
PDF & VCECitrix 1Y0-201 Dumps
PDF & VCECitrix 1Y0-301 Dumps
PDF & VCECitrix 1Y0-401 Dumps
PDF & VCE312-50v9 Dumps
PDF & VCERHCSA EX200 Dumps
PDF & VCERHCE EX300 Dumps

Archives

Categories

200-125 Dumps 200-125 Exam Questions 200-125 New Questions 200-125 PDF 200-125 VCE 300-075 Dumps 300-075 Exam Questions 300-320 Dumps 300-320 Exam Questions 300-320 New Questions 300-320 PDF 300-320 VCE 400-101 Dumps 400-101 Exam Questions 400-101 New Questions 400-101 PDF 400-101 VCE 400-251 Dumps Amazon AWS-SysOps Exam Questions Cisco C_BOCR_11 Dumps C_BOCR_11 Exam Questions C_BOCR_11 New Questions C_BOCR_11 PDF C_BOCR_11 VCE C_HANAIMP151 Dumps C_HANAIMP151 Exam Questions C_HANAIMP151 New Questions C_HANAIMP151 PDF C_HANAIMP151 VCE C_TFIN22_66 Dumps C_TFIN22_66 Exam Questions C_TFIN22_66 New Questions C_TFIN22_66 PDF C_TFIN22_66 VCE C_TSCM52_67 Dumps C_TSCM52_67 Exam Questions C_TSCM52_67 New Questions C_TSCM52_67 PDF C_TSCM52_67 VCE HP Microsoft Oracle SAP
Proudly powered by WordPress
Theme: Flint by Star Verte LLC