This page was exported from Easily Pass By Training Lead2pass Latest Dumps [ https://www.freebraindump.com ] Export date:Mon Mar 3 23:30:46 2025 / +0000 GMT ___________________________________________________ Title: [April 2018] Latest Released Cisco 400-251 Exam Question Free Download From Lead2pass 359q --------------------------------------------------- 400-251 Exam Dump Free Updation Availabe In Lead2pass: https://www.lead2pass.com/400-251.html QUESTION 21Refer to the exhibit which two statement about the given IPV6 ZBF configuration are true? (Choose two) A.    It provides backward compability with legacy IPv6 inspectionB.    It inspect TCP, UDP,ICMP and FTP traffic from Z1 to Z2.C.    It inspect TCP, UDP,ICMP and FTP traffic from Z2 to Z1.D.    It inspect TCP,UDP,ICMP and FTP traffic in both direction between z1 and z2.E.    It passes TCP, UDP,ICMP and FTP traffic from z1 to z2.F.    It provide backward compatibility with legacy IPv4 inseption. Answer: AB QUESTION 22In which class of applications security threads does HTTP header manipulation reside? A.    Session managementB.    Parameter manipulationC.    Software tamperingD.    Exception managements Answer: BExplanation:http://www.cgisecurity.com/owasp/html/ch11s04.htmlSession management doesn't have anything to do with HTTP header QUESTION 23What is the most commonly used technology to establish an encrypted HTTP connection? A.    the HTTP/1.1 Upgrade headerB.    the HTTP/1.0 Upgrade headerC.    Secure Hypertext Transfer ProtocolD.    HTTPS Answer: D QUESTION 24What functionality is provided by DNSSEC? A.    origin authentication of DNS dataB.    data confidentiality of DNS queries and answersC.    access restriction of DNS zone transfersD.    storage of the certificate records in a DNS zone file Answer: A QUESTION 25What are the two mechanism that are used to authenticate OSPFv3 packets?(Choose two) A.    MD5B.    ESPC.    PLAIN TEXTD.    AHE.    SHA Answer: BD QUESTION 26You have been asked to configure a Cisco ASA appliance in multiple mode with these settings: (A) You need two customer contexts, named contextA and contextB(B) Allocate interfaces G0/0 and G0/1 to contextA(C) Allocate interfaces G0/0 and G0/2 to contextB(D) The physical interface name for G0/1 within contextA should be "inside".(E) All other context interfaces must be viewable via their physical interface names. If the admin context is already defined and all interfaces are enabled, which command set will complete this configuration? A.    context contextAconfig-url disk0:/contextA.cfgallocate-interface GigabitEthernet0/0 visibleallocate-interface GigabitEthernet0/1 insidecontext contextBconfig-url disk0:/contextB.cfgallocate-interface GigabitEthernet0/0 visibleallocate-interface GigabitEthernet0/2 visibleB.    context contextaconfig-url disk0:/contextA.cfgallocate-interface GigabitEthernet0/0 visibleallocate-interface GigabitEthernet0/1 insidecontext contextbconfig-url disk0:/contextB.cfgallocate-interface GigabitEthernet0/0 visibleallocate-interface GigabitEthernet0/2 visibleC.    context contextAconfig-url disk0:/contextA.cfgallocate-interface GigabitEthernet0/0 invisibleallocate-interface GigabitEthernet0/1 insidecontext contextBconfig-url disk0:/contextB.cfgallocate-interface GigabitEthernet0/0 invisibleallocate-interface GigabitEthernet0/2 invisibleD.    context contextAconfig-url disk0:/contextA.cfgallocate-interface GigabitEthernet0/0allocate-interface GigabitEthernet0/1 insidecontext contextBconfig-url disk0:/contextB.cfgallocate-interface GigabitEthernet0/0allocate-interface GigabitEthernet0/2E.    context contextAconfig-url disk0:/contextA.cfgallocate-interface GigabitEthernet0/0 visibleallocate-interface GigabitEthernet0/1 insidecontext contextBconfig-url disk0:/contextB.cfgallocate-interface GigabitEthernet0/1 visibleallocate-interface GigabitEthernet0/2 visible Answer: A QUESTION 27Which statement about the cisco anyconnect web security module is true ? A.    It is VPN client software that works over the SSl protocol.B.    It is an endpoint component that is used with smart tunnel in a clientless SSL VPN.C.    It operates as an NAC agent when it is configured with the Anyconnect VPN client.D.    It is deployed on endpoints to route HTTP traffic to SCANsafe Answer: D QUESTION 28Which two statements about the SeND protocol are true? (Choose two) A.    It uses IPsec as a baseline mechanismB.    It supports an autoconfiguration mechanismC.    It must be enabled before you can configure IPv6 addressesD.    It supports numerous custom neighbor discovery messagesE.    It counters neighbor discovery threatsF.    It logs IPv6-related threats to an external log server Answer: BE Explanation:http://www.cisco.com/c/en/us/td/docs/security/ips/6-1/configuration/guide/cli/cliguide/cli_signature_engines.html#wp1141808 400-251 dumps full version (PDF&VCE): https://www.lead2pass.com/400-251.html Large amount of free 400-251 exam questions on Google Drive: https://drive.google.com/open?id=0B3Syig5i8gpDU1JrNmttR1dfUm8 --------------------------------------------------- Images: http://examgod.com/l2pimage/d8828ca53439_94E2/211_thumb.jpg --------------------------------------------------- --------------------------------------------------- Post date: 2018-04-12 02:57:40 Post date GMT: 2018-04-12 02:57:40 Post modified date: 2018-04-12 02:57:40 Post modified date GMT: 2018-04-12 02:57:40 ____________________________________________________________________________________________ Export of Post and Page as text file has been powered by [ Universal Post Manager ] plugin from www.gconverters.com