Securing Networks with Cisco Routers and Switches Exam SNRS (642-502 Exam) Questions & Answers are created by our certified senior experts combination PROMETRIC or VUE true-to-date environmental examination of the original title.we promised that the 642-502 Q&A coverage of 98%. All of our content is custom written and kept current with several monthly updates on most of our products. As a Nowexam CCSP Certification candidate, you will have access to our updates for one year after the purchase date.
Cisco Certification 642-502 Braindumps page all the necessary 642-502 certification guide is available which not only includes Securing Networks with Cisco Routers and Switches Exam SNRS  Modeler but it also contains 642-502 Study Guide and practice exam.Our specialists who had created our Securing Networks with Cisco Routers and Switches Exam SNRS  Modeler Study Guide and Cisco Study Guide are certified by the vendors in which they prepare the tests. That is why you shouldn’t hesitate about our material quality, it is of the highest rank. You get the updated version.Our products are top quality and will assist you in gaining a true understanding of 642-502 technologies, without resorting to 642-502 Study Guide. Stop wasting time and money re-taking failed certification exams and start becoming more productive.Boost your career and your potential earnings. Purchase the 642-502 Nowexam products today and begin the path to success!
Nowexam Free Product CCSP 642-502 Exam Demo.For example:1.What are the two functions that crypto ACLs perform on outbound traffic? Choose two.
A.bypasses outbound traffic that should be protected by IPSec
B.selects inbound traffic
C.selects outbound traffic that should be protected by IPSec
D.sends outbound traffic that should not be protected by IPSec as clear text
E.discards outbound traffic that should not be protected by IPSec
F.discards outboun
Correct:C D
6.Where  are  access  profiles  stored  with  the  authentication  proxy  features  of  the  Cisco  IOS Firewall?
A.PIX Firewall
B.Cisco router
C.Cisco VPN Concentrator
D.Cisco Secure ACS authentication server
Correct:DÂ
7.Choose the correct command to allow IKE to establish the IPSec security associations.
A.crypto map 10 isakmp
B.crypto map 10 manual
C.crypto map MYMAP ipsec-isakmp
D.crypto map MYMAP ipsec-manual
E.crypto map MYMAP 10 ipsec-isakmp
F.crypto map MYMAP 10 ipsec-manual
Correct:EÂ
8.Choose the correct command to generate two RSA key pairs for use with certificate authority.
A.key generate rsa general-keys
B.key generate rsa usage-keys
C.crypto key generate rsa general-keys
D.crypto key generate rsa usage-keys
E.enable crypto key generate rsa general-keys
F.enable crypto key generate rsa usage-keys
Correct:DÂ
9.Which command is required to specify the authorization protocol for authentication proxy?
A.auth-proxy group tacacs+
B.aaa auth-proxy default group tacacs+
C.authorization auth-proxy default group tacacs+
D.aaa authorization auth-proxy default group tacacs+
E.aaa authorization auth-proxy group tacacs+
F.aaa authorization auth-proxy default group
Correct:DÂ
10.Which Cisco Catalyst IOS command can be used to mitigate a CAM table overflow attack?
A.switch(config-if)# port-security maximum 1
B.switch(config)# switchport port-security
C.switch(config-if)# port-security
D.switch(config-if)# switchport port-security maximum 1
E.switch(config-if)# switchport access
F.switch(config-if)# access maximum 1
Correct:D

Related Posts: