aiotestking uk

400-251 Exam Questions - Online Test


400-251 Premium VCE File

Learn More 100% Pass Guarantee - Dumps Verified - Instant Download
150 Lectures, 20 Hours

Q1. According to RFC 4890, which three message must be dropped at the transit firewall/router?(Choose three.)

A. Router Renumbering(Type 138)

B. Node Information Query(Type 139)

C. Router Solicitation(Type 133)

D. Node information Response(Type

E. Router Advertisement(Type 134)

F. Neighbor Solicitaion(Type 135)

Answer: A,B,D

Q2. What is the name of the unique tool/feature in cisco security manager that is used to merge an access list based on the source/destination IP address service or combination of these to provide a manageable view of access policies?

A. merge rule tool

B. policy simplification tool

C. rule grouping tool

D. object group tool

E. combine rule tool

Answer: E

Q3. NWhich two statements about the ISO are true? (Choose two.

A. The ISO is a government-based organization.

B. The ISO has three membership categories: Member, Correspondent, and Subscribers.

C. Subscriber members are individual organizations.

D. Only member bodies have voting rights.

E. Correspondent bodies are small countries with their own standards organization.

Answer: B,D

Explanation: Member bodies are national bodies considered the most representative standards body in each country. These are the only members of ISO that have voting rights.

Q4. Refer to the exhibit. 

A. Modify the tunnel keys to match on the hub and spoke

B. Configure the ipnhrp cache non-authoritative command on the hub’s tunnel interface

C. Modify the NHRP hold times to match on the hub and spoke

D. Modify the NHRP network IDs to match on the hub and spoke

Answer: A

Q5. On which two protocols is VNC based?(Choose two)

A. Rdesktop

B. UDP

C. RFB

D. Terminal Services Client

E. CoRD

F. TCP

Answer: C,F

Q6. DRAG DROP

Drag each step in the SCEP workflow on the left into the correct order of operations on the right?

Answer:

Explanation:

Step 1: Obtain and validate CA cert.

Step 2: Generate a certificate signing request for the CA.

Step 3: Sent a request to SCEP server to confirm that the cert was signed. Step 4: Re- enroll the client and replace the existing certificate.

Step 5: Check Certificate revocation list.

Q7. Which Cisco product solution is designed for workload mobility between public-public and

private-public clouds?

A. Cisco Cloud Orchestrator

B. Cisco Unified Cloud

C. Cisco Intercloud Fabric

D. Cisco Metapod

Answer: C

Q8. DRAG DROP

Drag each SSI encryption algorithm on the left to the encryption and hashing values it uses on the Right?

Answer:

Explanation: 3DES-sha1: 168 bit encryption with 160 bit hash DES-sha1: 56 bit encryption with 160 bit hash Null sha1: 160 bit hash without encryption

RC4-md5: 128 bit with 128 bit hash RC4-sha1: 128 bit with 160 bit hash.

Q9. Which two statements about the anti-replay feature are true? (Choose two)

A. By default, the sender uses a single 1024-packet sliding window

B. By default, the receiver uses a single 64-packet sliding window

C. The sender assigns two unique sequence numbers to each clear-text packet

D. The sender assigns two unique sequence numbers to each encrypted packet

E. the receiver performs a hash of each packet in the window to detect replays

F. The replay error counter is incremented only when a packet is dropped

Answer: B,D

Q10. Which protocol does VNC use for remote access to a GUI?

A. RTPS

B. RARP

C. E6

D. SSH

E. RFB

Answer: D