设为首页收藏本站language→→ 语言切换

鸿鹄论坛

 找回密码
 论坛注册

QQ登录

先注册再绑定QQ

查看: 2788|回复: 29
收起左侧

[其他] Do you want to study on cisco 350-701 together?

[复制链接]
发表于 2020-11-3 06:12:46 | 显示全部楼层 |阅读模式
Any one is studying on 350-701 now? if please add me to your wechat, so we can learn together.
. a1 w& |0 W+ W4 s" n
" g7 y1 A; P- z7 q# `$ Qplease send your wechat id to jhthello@hotmail.com.
" e* P: z0 z8 S4 {, e' c% {0 I' Z' Y1 B' o3 A" H. G( }
Thanks,
 楼主| 发表于 2020-11-3 23:10:12 | 显示全部楼层
Does anyone want to study together? we can have a daily discussion here. or on the wechat.
6 s2 s/ l  Y2 I2 O+ `
板凳 2020-11-3 23:10:12 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-5 01:38:08 | 显示全部楼层
Question 11
$ q4 x9 z4 E( p' {% A3 K& X7 |' Q3 w
Which two tasks allow NetFlow on a Cisco ASA 5500 Series firewall? (Choose two). w; X- N9 J: @. \5 m
. Y: M) o. B7 u/ d+ ~
A. Enable NetFlow Version 9.% c9 B; Y* e& u! X$ W% F
B. Create an ACL to allow UDP traffic on port 9996.1 H7 h, o/ f8 \/ H* R" l/ c8 A
C. Apply NetFlow Exporter to the outside interface in the inbound direction.
5 _- R  O& J+ l( R# jD. Create a class map to match interesting traffic.& ~( @9 ^+ H7 Q
E. Define a NetFlow collector by using the flow-export command.; l; V2 v4 N" o) l
# B; |$ }$ \+ ~
( ]$ B+ Y' Y* {% |# l% |. ?# _

5 h$ U8 [2 k- E6 [) n8 EAnswer: C E7 B5 V& a0 y& K8 W
地板 2020-11-5 01:38:08 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-5 23:09:26 | 显示全部楼层
QUESTION 25
9 n+ ^7 B2 f) FWhich VPN technology can support a multivendor environment and secure traffic between sites?7 y9 W8 _0 U; d6 i  t* Y
A. SSL VPN
" {9 U) X% d) y& A, Y1 iB. GET VPN
8 V0 K' G7 R' @) s( {C. FlexVPN8 L3 V! ^. `5 v1 @1 ~, _) o& O
D. DMVPN- X. V6 R0 Q( u$ |! g
Correct Answer: B
) F. h7 Y  Y* d, l4 q7 V
5# 2020-11-5 23:09:26 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-5 23:19:41 | 显示全部楼层
QUESTION 1131 \7 q  B& z: K& l8 D+ [
Under which two circumstances is a CoA issued? (Choose two)8 }; A- g8 F3 t! X
A. A new authentication rule was added to the policy on the Policy Service node.% R- U% H8 e+ d! Z' n' _: Q
B. An endpoint is profiled for the first time.
# v& U, ^. w' f" ]  p/ {C. A new Identity Service Engine server is added to the deployment with the Administration persona6 `3 D- n* {# M& P9 f! Q/ d+ y
D. A new Identity Source Sequence is created and referenced in the authentication policy.$ Y$ V! P- E; b: `* I. Z
E. An endpoint is deleted on the Identity Service Engine server.
+ G8 _! j: o3 d4 U, W  FCorrect Answer: BE1 U9 ^/ v4 `# M" |, M
4 u7 j) _  a/ a  n3 B

+ h( l* x& H* U, T7 Q9 IExplanation7 l* t1 A0 w- X" E. m( L& O# _- N
4 g1 t/ g: g+ Q& w3 ]
The profiling service issues the change of authorization in the following cases:/ _% _$ S! i3 p* R9 S* {
– Endpoint deleted—When an endpoint is deleted from the Endpoints page and the endpoint is disconnected or removed from the network.+ e& D* Z7 N# t; o  F% M. ]
An exception action is configured—If you have an exception action configured per profile that leads to an unusual or an unacceptable event from that endpoint. The profiling service moves the endpoint to the corresponding static profile by issuing a CoA.( {6 z. t5 i6 B9 Y
– An endpoint is profiled for the first time—When an endpoint is not statically assigned and profiled for the first time; for example, the profile changes from an unknown to a known profile.5 @9 z6 K% F7 e# e6 V- l
+ An endpoint identity group has changed—When an endpoint is added or removed from an endpoint identity group that is used by an authorization policy.
) |  Y; ^" u1 v- e  zThe profiling service issues a CoA when there is any change in an endpoint identity group, and the endpoint identity group is used in the authorization policy for the following:: q5 h* ^7 b3 M, w! r1 p
++ The endpoint identity group changes for endpoints when they are dynamically profiled
6 |& \; q& ?6 d/ }" I  L5 r6 [++ The endpoint identity group changes when the static assignment flag is set to true for a dynamic endpoint
# W5 d: f$ `/ E7 r– An endpoint profiling policy has changed and the policy is used in an authorization policy—When an endpoint profiling policy changes, and the policy is included in a logical profile that is used in an authorization policy. The endpoint profiling policy may change due to the profiling policy match or when an endpoint is statically assigned to an endpoint profiling policy, which is associated to a logical profile. In both the cases, the profiling service issues a CoA, only when the endpoint profiling policy is used in an authorization policy.
( Q  e* e6 A3 ?
2 ^- ~! A/ i* h9 P% OReference: https://www.cisco.com/c/en/us/td ... chapter_010100.html
6# 2020-11-5 23:19:41 回复 收起回复
回复 支持 反对

使用道具 举报

发表于 2020-11-6 20:00:49 | 显示全部楼层
what are you talking about
7# 2020-11-6 20:00:49 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-7 04:23:50 | 显示全部楼层
贾旭丶 发表于 2020-11-6 20:00
$ p  b" v/ x% b7 Nwhat are you talking about

' D* H0 i9 j4 m6 f+ |/ g, R5 t, A; pThis is the question which from the 350-701 exam? are you taking the exam ?
8# 2020-11-7 04:23:50 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-7 07:14:09 | 显示全部楼层
QUESTION 1
/ j4 i: a1 l# C* j5 w/ g9 EWhich attack is commonly associated with C and C++ programming languages?/ u' X: a5 h* x3 q# ]3 W( }
A. cross-site scriptingwrong
) b! g: s3 F% y8 c$ RB. DDoS
" ?: r  b* U' Q- X/ Z3 s1 Q  u1 rC. buffer overflow
$ u" w3 k2 U& s' ]$ LD. water holing& u/ ]* L$ i' O+ ?
Correct Answer: C
9# 2020-11-7 07:14:09 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-9 06:05:11 | 显示全部楼层
QUESTION 25 S/ o  S. g  p1 _
What is a language format designed to exchange threat intelligence that can be transported over the TAXII protocol?
, q4 \5 M  g' j: e( S9 M7 ~3 lA. SMTPwrong1 a# s9 Q0 \* h* S: W3 N( a8 q
B. pxGrid
+ D4 R4 A5 X& B$ f  aC. STIX
/ n* h1 A  [3 {) pD. XMPP
, M8 p+ J9 M7 `Correct Answer: C
10# 2020-11-9 06:05:11 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-10 00:07:14 | 显示全部楼层
QUESTION 3
8 Q( I" a- l" V8 X3 S# m) U* EWhich two preventive measures are used to control cross-site scripting? (Choose two)% ?- q, |2 r2 M1 h
A. Disable cookie inspection in the HTML inspection engine.wrong
5 I8 O$ M& v/ C0 X2 QB. Incorporate contextual output encoding/escaping$ Q; p4 x# @* U0 h  e# V0 U/ \* n
C. Enable client-side scripts on a per-domain basis, |9 S4 j) ^3 y# M. H
D. Run untrusted HTML input through an HTML sanitization engine.* m* C& `% e9 f, `: m
E. Same Site cookie attribute should not be used.
& m+ H' C2 j; h- f" J; tCorrect Answer: BC
11# 2020-11-10 00:07:14 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-10 23:14:27 | 显示全部楼层
QUESTION 4
5 y3 O, S% L) `( a: @Which two mechanisms are used to control phishing attacks? (Choose two)
* e- K. R0 i0 S; @A. Use antispyware software.wrong
( F& y) [, h; G% h/ S: Y, ZB. Implement email filtering techniques.
6 L4 `" B, c3 r- z8 y2 H) lC. Revoke expired CRL of the websites.
4 I7 x5 b9 ^7 W, m8 G9 sD. Enable browser alerts for fraudulent websites.
$ }0 s3 G+ j0 B5 }# H7 o% Q" oE. Define security group memberships.
3 @/ q' K8 T" I' v0 Y$ o) m1 XCorrect Answer: BD! e0 f3 v1 B9 `* P" H
8 b- J' P8 [$ Z
QUESTION 5* ]$ c, Z# l2 }8 M% S# s0 p! k; m
In which form of attack is alternate encoding, such as hexadecimal representation, most often observed?
" |3 k# V/ j/ ?7 SA. rootkit exploitwrong/ X- w* z& i* u6 |' C* D
B. Smurf8 O/ a' U& r* h8 V
C. distributed denial of service  T  N& L0 E! u  G
D. cross-site scripting' @1 O9 u& _; _- s- u: n  q
Correct Answer: D
12# 2020-11-10 23:14:27 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-13 11:27:55 | 显示全部楼层
QUESTION 64 ?8 G* P" c4 w; b
Which two behavioral patterns characterize a ping of death attack? (Choose two)- n9 B1 S  c+ Y6 c$ |1 ]- x6 c
A. Malformed packets are used to crash systems.
" x6 n8 S4 p" u7 h5 G/ Z" gB. The attack is fragmented into groups of 8 octets before transmission.
$ p: ~$ g% L. T/ Z4 e0 X) jC. The attack is fragmented into groups of 16 octets before transmission.& X' u* ]% H1 I7 h( P
D. Publicly accessible DNS servers are typically used to execute the attack.) s  k' h. @4 g% h
E. Short synchronized bursts of traffic are used to disrupt TCP connections.; ]( U6 W4 a' f% A9 z
Correct Answer: AB
: U( ], d6 L* e! RQUESTION 7- c# I8 h- O  Z
What is the difference between deceptive phishing and spear phishing?/ x: ?" U8 I+ z& F5 J3 W5 E
A. Deceptive phishing hijacks and manipulates the DNS server of the victim and redirects the user to a false webpage.
/ @9 B! I9 K( h& D9 f% |B. A spear phishing campaign is aimed at a specific person versus a group of people.
3 ]) N2 I, b4 c1 \/ K$ uC. Spear phishing is when the attack is aimed at the C-level executives of an organization.
7 i; v, R6 U4 B9 wD. Deceptive phishing is an attacked aimed at a specific user in the organization who holds a C-level role.
6 m. d& F+ m6 J; hCorrect Answer: B
13# 2020-11-13 11:27:55 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-15 04:03:32 | 显示全部楼层
QUESTION 8; t; ^0 P) w9 Z' Y
Which two endpoint measures are used to minimize the chances of falling victim to phishing and social engineering attacks? (Choose two)
7 ~1 `6 F) W8 ^9 _. [9 q' AA. Patch for cross-site scripting.
6 X  L7 ~5 U+ G" V  D3 vB. Perform backups to the private cloud.2 Y5 h, B" Q( K3 W. F6 A
C. Protect systems with an up-to-date antimalware program.
/ q6 d; S# y0 Q+ t/ ^7 iD. Protect against input validation and character escapes in the endpoint.0 E2 S, W$ j6 z" U5 C* }
E. Install a spam and virus email filter.+ @8 b% x& A+ G9 r
Correct Answer: CE' N. f8 v1 l& T" ?( v1 m/ h
QUESTION 9, t* ^  K* G/ |
Which two capabilities does TAXII support? (Choose two)1 O* ~/ Z+ s  Z6 O
A. Binding
( A; N- E. ^1 e; H. nB. Exchange
* u9 H6 X! V/ v: u( jC. Mitigating/ |' w# n# |) f$ G
D. Pull messaging
+ y2 R) ?# v& I+ k, U2 aE. Correlation8 A8 m1 b2 {% r& v- A, E
Correct Answer: AD: ~9 B8 F# L( L2 R2 a( Y
QUESTION 10: j' o, F& L& e/ F3 `, {
Which flaw does an attacker leverage when exploiting SQL injection vulnerabilities?
) G' c& m  p, K! D" l1 J: tA. web page images8 v- v  m/ ]! y4 J" g2 q
B. database: G+ [& t  L1 B' i# D1 ?
C. Linux and Windows operating systems
( v( V, ~+ A: T2 |- L+ dD. user input validation in a web page or web application
' @) P6 ]# f0 e% G+ I& iCorrect Answer: D
14# 2020-11-15 04:03:32 回复 收起回复
回复 支持 反对

使用道具 举报

 楼主| 发表于 2020-11-16 10:35:39 | 显示全部楼层
QUESTION 11" J9 u. d5 ]2 D4 w- F. `! T8 E
Which two prevention techniques are used to mitigate SQL injection attacks? (Choose two)6 @: J( O& H0 B- H
A. Secure the connection between the web and the app tier./ ~) Z% K( g, B2 I$ q
B. Use prepared statements and parameterized queries.8 O  L2 N1 E! ?) M
C. Check integer, float, or Boolean string parameters to ensure accurate values.
! d" h) Q1 {/ y- B; P. Q& I0 [D. Block SQL code execution in the web application database login.
% h8 ?/ j7 e: A5 k; I4 s5 RE. Write SQL code instead of using object-relational mapping libraries.& O! w1 c- L' w3 W& z
Correct Answer: BC
2 C8 y! k6 v% ^- @" mQUESTION 12; g7 n& t) U, l! v
Which form of attack is launched using botnets?! {4 b, y6 ]/ D# b# ?- m
A. DDOS
6 ^5 p- e" A+ e- s, p) F9 J& B% f2 ~B. EIDDOS4 s* Q: W5 N" g8 C  I
C. TCP flood
6 c2 |, U8 F' z0 R9 LD. virus5 P0 w4 D, o3 L% t
Correct Answer: A
- y2 q$ i- I2 \1 H. S: zQUESTION 13/ A. W7 p0 }8 y
Which type of attack is social engineering?
6 E! J& E4 c! ?6 JA. trojan
2 z) P- }! s  D9 K5 iB. malware. D9 U/ Y4 N3 b/ W, R6 e
C. phishing
2 Z  C" ]: b. \D. MITM- {: y; n, m0 Y( z% q
Correct Answer: C
15# 2020-11-16 10:35:39 回复 收起回复
回复 支持 反对

使用道具 举报

您需要登录后才可以回帖 登录 | 论坛注册

本版积分规则

QQ|Archiver|手机版|小黑屋|sitemap|鸿鹄论坛 ( 京ICP备14027439号 )  

GMT+8, 2025-1-23 04:00 , Processed in 0.061905 second(s), 10 queries , Redis On.  

  Powered by Discuz!

  © 2001-2025 HH010.COM

快速回复 返回顶部 返回列表