642-521 Exam
Cisco Secure PIX Firewall Advanced
- 科目编号:642-521
- 科目名称:Cisco Secure PIX Firewall Advanced
- 考题数目:192 Q&As
- 更新日期:2010-05-05
- 价 格 :
¥ 462.00¥ 413.00
免费下载 642-521 认证考题Demo
下载 642-521 PDF 认证考试题库
下载 642-521 测试版考试题库
选择 certinside 642-521 题库
642-521 考试是 Cisco 公司的 Cisco Secure PIX Firewall Advanced 认证考试官方代号,certinside 的 642-521 权威考试题库软件是 Cisco 认证厂商的授权产品,certinside 绝对保证第一次参加 642-521 考试的考生即可顺利通过,否则承诺全额退款!
Cisco Secure PIX Firewall Advanced 认证作为全球IT领域专家 Cisco 热门认证之一,是许多大中IT企业选择人才标准的必备条件。 如果你正在准备 642-521 考试,为 Cisco Cisco Secure PIX Firewall Advanced认证做最后冲刺,又苦于没有绝对权威的考试真题模拟, certinside 希望能助你成
1、certinside考题大师642-521试题都是考试原题的完美组合,覆盖率95%以上,答案由多位专业资深讲师原版破解得出,正确率100%,只要您使用本站的考试题库参加642-521 考试,我们保证您一次轻松通过考试;
2、售后服务第一!我们相信要想在当今时代取得成功,必须为广大用户提供全套的周到细致的全程优质售后服务,只有客户满意了,我们才能发展。客户至上是我们certinside考题大师的一贯宗旨;
3、certinside实行“一次不过全额退款”承诺。如果您购买我们642-521的考题,只要不是首次通过,凭盖有PROMETRIC或VUE考试中心钢印的考试成绩单,我们将退还您购买642-521考题大师的全部费用,绝对保证您的利益不受到任何的损失;
4、本站642-521题库根据642-521考试的变化动态更新,在厂家考题每次发生变化后,我们承诺2天内更新642-521题库。在您购买我们的产品之后,我们将提供90天的免费更新。确保642-521考题的覆盖率始终都在95%以上;我们提供2种 642-521 考题大师版本供你选择。
5、软件版本642-521 考试题库
优点:具有学习模式,测试模式,线上自动升级
缺点:仅限固定电脑使用,不可打印为文本,只能PC阅读
6、PDF 格式642-521 考试题库(部分最新更新科目已不提供PDF)
优点:不需下载安装软件,方便用户打印和携带,但也带来了可随意制的弊端,因此我们提醒用户不得随意公开或出售本站的642-521题库,一经发现立即取消其升级资格,且不予退款。
缺点:不具备测试模式,通过查看 certinside.cn网站及查收我们的更新E-MAIL获取更新信息。
certinside 的优势
642-521 试题的质量和价值
certinside 模拟测试题具有最高的专业技术含量,只供具有相关专业知识的专家和学者学习和研究之用。
100% 保证您通过 642-521 的考试
如果你使用 certinside 模拟测试,我们将保证你的第一次参加考试即取得成功,否则,我们将全额退款!
试用后再购买
certinside 提供每种产品免费测试。在您决定购买之前,请检测联接,可能存在的问题及试题质量和适用性。
certinside认证考试题库网专业提供Cisco 642-521 最新题库下载,完全覆盖 642-521 考试原题。
Exam : Cisco 642-521
Title : Cisco Secure PIX Firewall Advanced
1. Which statements about the PIX Firewall's DHCP capabilities are true? Choose two.
A. It can be a DHCP server.
B. It cannot be a DHCP client.
C. You must remove a configured domain name.
D. It can be a DHCP server and client simultaneously.
E. It cannot pass configuration parameters it receives from another DHCP server to its own DHCP clients.
F. The PIX Firewall's DHCP server can be configured to distribute the IP addresses of up to four DNS servers to its clients.
Answer: AD
2. What is the default port number that the PIX Firewall uses to contact the AUS?
A. 25
B. 110
C. 443
D. 444
Answer: C
3. While entering a list of host addresses to an ACL, the administrator left out an ACE for host 192.168.0.9. The administrator wants to add an access control entry for 192.168.0.9 between line 3 and line 4 of the existing access-list. What command should be entered to accomplish this addition?
A. pix1(config)# access-list aclin line 4
permit tcp any host 192.168.0.9 eq www
B. pix1(config)# access-list aclin line 3
permit tcp any host 192.168.0.9 eq www
C. pix1(config)# access-list aclin add-line 4
permit tcp any host 192.168.0.9 eq www
D. pix1(config)# access-list aclin add-line 3
permit tcp any host 192.168.0.9 eq www
Answer: A
4. You already created an ACL named ACLIN to permit traffic from certain Internet hosts to the web server on your DMZ. How do you make the ACL work? Choose two.
A. bind the ACL to the DMZ interface
B. bind the ACL to the inside interface
C. bind the ACL to the outside interface
D. create a static mapping for the DMZ interface
E. create a static mapping for the web server
F. create a conduit mapping for the web server
Answer: CE
5. If you configure a VPN between a Cisco VPN Client and the PIX Firewall using pre-shared keys for authentication, which should you do? Choose two.
A. Use pre-shared keys for authentication.
B. Use digital certificates for authentication instead of pre-shared keys.
C. Do not use digital certificates for authentication.
D. Ensure that the password on the VPN client matches the vpngroup password on the PIX Firewall.
E. Ensure that the group name differs from the VPN group name on the PIX Firewall.
F. Ensure that the group name on the VPN Client matches the vpngroup name on the PIX Firewall.
Answer: DF
6. What is the function of the support tool in the PIX MC?
A. to allow technical support to remotely administer the PIX MC
B. to show available support options for the PIX MC
C. to create a file that captures information about the PIX MC
D. to place the PIX MC in safe mode so you can troubleshoot it
Answer: C
7. Your primary PIX Firewall is currently the active unit in your failover topology. What will happen to the current IP addresses on the primary PIX Firewall if it fails?
A. They become those of the standby PIX Firewall.
B. The ones on the primary PIX Firewall remain the same, but the current IP addresses of the secondary become the virtual IP addresses you configured.
C. They are deleted.
D. The ones on both the primary and secondary PIX Firewalls are deleted and both assume the failover IP addresses you configured.
Answer: A
8. If the FTP protocol fixup is not enabled for a given port, which statements are true? Choose two.
A. Outbound standard FTP will work properly on that port.
B. Outbound passive FTP will not work properly on that port.
C. Outbound standard FTP will not work properly on that port.
D. Outbound standard FTP will work properly on that port if outbound traffic is not explicitly disallowed.
E. Inbound standard FTP will not work properly on that port even if a conduit to the inside server exists.
F. Outbound passive FTP will work properly on that port as long as outbound traffic is not explicitly disallowed.
Answer: CF


