+ All Categories
Home > Documents > Exam 642-825 Preparation Questions

Exam 642-825 Preparation Questions

Date post: 22-Mar-2016
Category:
Upload: clarkemichael-clarke
View: 220 times
Download: 0 times
Share this document with a friend
Description:
Certsking the leading source in certification preparation services, all certification guaranteed study material, question and answers, practice exams and many more at one place. This is a brand which fulfills all the requirements of certification preparation of exams. By Certsking 642-825 training kits get 100% results in any certification exams.
Popular Tags:
24
Exam 642-825 study material Made available by CertsKing.com Free 642-825 Exam Preparation Questions Exam 642-825 : Implementing Secure Converged Wide Area Networks (ISCW) For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642- 825.html
Transcript

Exam 642-825 study material

Made available by CertsKing.com

Free 642-825 Exam Preparation Questions

Exam 642-825: Implementing Secure Converged Wide Area Networks (ISCW)

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

Question:1 Refer to the exhibit. On the basis of this show ip cef command output ,What information can be derived ?

A. This router will use a PHP label to reach the destination network of 150.1.12.16. B. This router will advertise a label of "19" for the destination network of 150.1.12.16. C. This router will use a label of "21" to reach the destination network of 150.1.12.16. D. This router will advertise a label of "21" for the destination network of 150.1.12.16.

Answer: D Question:2 For the following options, based on the exhibit below. What type of high-availability option is being implemented?

A. Hot Standby Router Protocol B. IPsec dead peer detection C. IPsec stateful failover D. backing up a WAN connection with an IPsec VPN

Answer: B Question:3 To implement Easy VPN Remote capabilities, which requirement must be met? A. The destination peer must be a Cisco Easy VPN Server or VPN Concentrator supporting Cisco Easy VPN Server. B. The source peer must be a Cisco Easy VPN Server or VPN Concentrator supporting Cisco Easy VPN Server. C. The destination peer must be a Cisco Easy VPN Remote device. D. The destination peer must support all available encryption and authentication types.

Answer: A

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

Question:4 How to propagate overlapping customer prefixes in an MPLS VPN implementation? A. Separate BGP sessions are established between each customer edge LSR. B. A separate instance of the core IGP is used for each customer. C. Because customers have their own interfaces, distributed CEFs keep the forwarding tables separate. D. A route distinguisher is attached to each customer prefix.

Answer: D Question:5 What is the reason for the ping between the P4S-HQ router and the 192.168.1.193 interface on the P4S-Branch2 router failing?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. The default route is missing from the P4S-Branch2 router. B. When running EIGRP over GRE tunnels, you must manually configure the neighbor address using the eigrp

neighbor ipaddress command. C. The tunnel numbers for the tunnel between the P4S-HQ router and the P4S-Branch2 router do not match. D. The tunnel source is incorrect on the P4S-Branch2 router. It should be serial 2/0. E. The AS number for the EIGRP process on P4S-Branch2 should be 1 and not 11.

Answer: E Question:6 For the following statements, what is preventing a successful ping between the P4S-HQ router and the 192.168.1.10 interface on the P4S-Branch3 router?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. The default route is missing from the P4S-Branch3 router. B. The tunnel interface numbers for the tunnel between the P4S-HQ router and the P4S-Branch3 router do not match. C. The tunnel source is incorrect on the P4S-Branch3 router. It should be serial 2/0. D. The IP address on the tunnel interface for the P4S-Branch3 router has wrong IP mask. It should be

255.255.255.252. E. The network statement under router EIGRP on the P4S-Branch3 router is incorrect. It should be network

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

192.168.2.0.0.0.0.255.

Answer: A Question:7 What is preventing the P4S-HQ router and the P4S-Branch1 router from building up an EIGRP neighbor relationship?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. When running EIGRP over GRE tunnels, you must manually configure the neighbor address using the eigrp neighbor ipaddress command.

B. The tunnel destination address is incorrect on the P4S-HQ router. It should be 10.2.1.1 to match the interface address of the P4S-Branch1 router.

C. The tunnel source is incorrect on the P4S-Branch1 router. It should be serial 2/0. D. The default route is missing from the P4S-Branch1 router. E. The tunnel interface numbers for the tunnel between the P4S-HQ router and P4S-Branch1 router do not match.

Answer: B Question:8 What is the reason that tunnel 5 on the P4S-HQ router is down when its companion tunnel on the P4S-Branch5 router is up?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. The IP address on the tunnel interface on P4S-Branch5 is incorrect. It shoud be 192.168.1.16 255.255.255.252.

B. The tunnel source for tunnel 5 is incorrect on the P4S-HQ router. It should be serial 2/0. C. The tunnel numbers for tunnel between the P4S-HQ router and the P4S-Branch5 router do not match. D. The tunnel destination address for tunnel 5 is incorrect on the P4S-HQ router. It should be

10.2.5.1 to match the interface address of the P4S-Branch5 router.

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

E. The tunnel interface for tunnel 5 on the P4S-HQ router is in the administrative down state.

Answer: B Question:9 What is preventing the 192.168.1.150 network from appearing in the P4S-HQ router's routing table?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. The default route is missing from the P4S-Branch4 router. B. The IP address on the E0/0 interface for the P4S-Branch4 router has the wrong IP mask. It should be

255.255.255.252 C. The network statement under router EIGRP on the P4S-Branch4 router is incorrect. It should be network

192.168.1.0.0.0.255. D. When running EIGRP over GRE tunnels, you must manually configure the neighbor address using the eigrp neighbor

ipaddress command. E. The IP address on the tunnel interface on P4S-Branch4 is incorrect. It should be 192.168.1.12

255.255.255.252.

Answer: C Question:10 Look at the following exhibit carefully, LDP neighbor sessions have been built between P4S-RTB and P4S-RTC. In the process of troubleshooting, it is found that labels are being distributed between the two routers, however LFIB has no label swapping information. Why?

A. BGP neighbor sessions have not been established on both routers. B. IP Cisco Express Forwarding has not been enabled on both P4S-RTB and P4S-RTC. C. LDP has been enabled on one router and TDP has been enabled on the other. D. The IGP is summarizing the address space.

Answer: B Question:11 CBAC provides advanced traffic filtering functionality and can be used as an integral part of your network firewall. Which two descriptions are correct about the Cisco Classic (CBAC) IOS Firewall set? (Choose two.) A. It can block bulk encryption attacks. B. It can protect against denial of service attacks. C. Temporary ACL entries that allow selected traffic to pass are created and persist for the duration of the

communication session. D. Traffic originating from the router is considered trusted, so it is not inspected. Answer: B, D Question:12 Observe the following exhibit carefully, the output is produced by which Cisco security feature?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. CBAC B. IPS C. SSH D. AutoSecure

Answer: D Question:13 Study the following partial configuration displayed carefully, P4S-Host 1 fails to ping P4SServer 1. The network administrator has solved all network problems. What is the issue?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. P4S-R1 has the wrong tunnel source configured under the tunnel interface. B. An encryption algorithm has been configured on P4S-R1 and P4S-R2. C. The tunnel destinations on P4S-R1 and P4S-R2 are not on the same subnet. D. P4S-R2 has the wrong tunnel source configured under the tunnel interface.

Answer: D Question:14 Click here to input the answer. Lab

Answer: P4S-R1> enable P4S-R1# conf t P4S-R1(config)#aaa new-model P4S-R1(config)#username BDnet1 password Wer#1 P4S-R1(config)#tacacs-server host 10.6.6.254 key training P4S-R1(config)#aaa authentication login default local P4S-R1(config)#aaa authentication login vty group tacacs+ P4S-R1(config)#aaa authorization exec vty group tacacs+ P4S-R1(config)#line vty 0 4 P4S-R1(config)#authorization exec vty P4S-R1(config)# login authentication vty P4S-R1(config)#end P4S-R1#copy run start Test: P4S-R2#ssh 10.2.1.1 -l cisco Enter password: Cisco123 Question:15 Which statement best describes the configured IPsec transform set according to the following exhibit?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. Only the data field of the packet will be encrypted by the AES algorithm using a 256-bit key. B. Only the data field of the packet will be hashed using SHA. C. Only the address fields of the packet will be hashed using SHA. D. The data field of the packet will be encrypted by the AES algorithm using a 256-bit key, while the address fields of the

packet will be hashed using SHA.

Answer: D Question:16 Which two of following belong to reconnaissance attacks? (Choose two.) A. port scans B. ping sweeps C. denial of service attacks D. man-in-the-middle attacks

Answer: A, B Question:17 According to the following graphic, can you tell me which VPN IPv4 label is for the network 172.16.13.0/24?

A. 11 B. 17 C. 12308

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

D. 17, 12308

Answer: C Question:18 In a DMZ configuration, most computers on the LAN run behind a firewall connected to a public network like the Internet. Refer to the DMZ configuration presented in the following exhibit, which three items are correct? (Choose three.)

A. The device being enabled is a web server. B. The device being enabled is an FTP server. C. The device being enabled is located in the DMZ. D. The device being enabled has been assigned an IP address of 192.168.0.2.

Answer: A, C, D Question:19 PPPoE, Point-to-Point Protocol over Ethernet, is a network protocol for encapsulating Point-to-Point Protocol (PPP) frames inside Ethernet frames. What is the possible cause for the failure of the establishment of the PPPoE client session?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. The PPP LCP phase has failed because the correct DSL operating mode (DSL modulation) is not configured on the P4S-CPE router.

B. The PPP authentication phase has failed at the P4S-CPE. C. The PPP LCP phase has failed because of excessive link noise. D. The PPP NCP phase has failed because the local router cannot successfully initialize the DSLAM.

Answer: B Question:20 Study the following exhibit carefully, the edge router P4S-R1 in MPLS domain is configured for label switching. Which option best describes P4S-R1 after issuing the command show mpls interfaces detail on the interfaces of P4S-R1?

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. The router has established an LDP session with its neighbor on Fa1/1. However, packets cannot be forwarded out that interface because MPLS is not operational.

B. The router has established a TDP session with its neighbor on Fa0/1. Packets can be labeled and forwarded out that interface.

C. MPLS is not operating on Fa1/0, because the MTU size has exceeded the 1500 limit of Ethernet. D. LSP tunnel labeling has not been enabled on either interface Fa0/0 or Fa1/1, therefore MPLS is not operating on

Fa0/1.

Answer: A Question:21 According to the following presented information, which two items are correct regarding user access? (Choose two.)

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

A. Telnet access to this device is not possible because login access has not been configured. B. Access to the console port of this device may be gained by use of the "con2access" password. C. A username and password are needed to log in to a Telnet session to this device. D. A username and password are needed to log in to the console port of this device.

Answer: C, D Question:22 Multiprotocol Label Switching (MPLS) is a standards-approved technology for speeding up network traffic flow and making it easier to manage. Which action will the router take after disabling Cisco Express Forwarding on a P router in an MPLS network? A. start forwarding MPLS packets using process switching B. stop advertising MPLS labels C. start advertising all destination networks with an implicit null label value D. stop forwarding all traffic

Answer: B Question:23 DSL (Digital Subscriber Line) is a technology for bringing high- bandwidth information to homes and small businesses over ordinary copper telephone lines. Which form of DSL technology is typically used to replace T1 lines? A. VDSL B. HDSL

C. ADSL D. SDSL

Answer: B Case Study#1

Scenerio: This item involves some questions that you need to answer. You can click on the Questions button to the left to view these question. Change questions by clicking the numbers to the left of each question. In order to finish the questions, you will need to refer to the SDM and the topology, neither of which is currently visible. In order to gain access to either the topology or the SDM, click on the button to left side of the screen that corresponds to the section you wish to access. When you have completed viewing the topology or the SDM, you can return to your questions by clicking on the

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

Questions button to the left. Cruising industries is a large worldwide diving charter. Recently, this firm has upgraded its internet connectivity. As a new network technician, you have been tasked with documenting the active Firewall configurations on the P4S-R router using the Cisco Router and Security Device Manager (SDM) utility. Using the SDM output from Firewall and ACL Tasks under the Configure tab, answer the following questions: Topology:

Case Study# 1 (Questions)

Question:24 Which option is Correct? A. Both FastEthernet 0/0 and Serial 0/0/0 are trusted interface. B. Both FastEthernet 0/0 and Serial 0/0/0 are untrusted interface. C. FastEthernet 0/0 is a trusted interface and Serial 0/0/0 is an untrusted interface. D. FastEthernet 0/0 is an untrusted interface and Serial 0/0/0 is a trusted interface. Answer: C Question:25 Which two statements best describe a permissible incoming TCP packet on an untrusted interface in this configuration?(Choose two) A. The packet has a source address of 172.16.29.12 B. The packet has a source address of 10.94.61.29

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

C. The session originated from a trusted interface. D. The application is not specified within the inspection rule SDM_LOW. E. The packet has a source address of 198.133.219.144

Answer: C, E Question:26 Which two statements would specify a permissible incoming TCP packet a trusted interface in this configuration?(choose two) A. The packet has a source address of 10.94.61.118 B. The packet has a source address of 172.16.29.12 C. The packet has a source address of 198.133.219.16 D. The destination address is not specified within the inspection rule SDM_LOW. E. The destination address is specified within the inspection rule SDM_LOW. Answer: A, C

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html

For complete Exam 642-825 Training kits and Self-Paced Study Material

Visit:http://www.certsking.com/642-825.html

http://www.certsking.com/

For Latest 642-825 Exam Questions and study guides- visit- http://www.certsking.com/642-825.html


Recommended