|
Question 20. A concern has been expressed that the switched infrastructure in an integrated network is vulnerable to VLAN hopping attacks. Which two configuration statements can be used to mitigate VLAN hopping? (Choose two.) A. switchport port-security B. switchport port-security tagging C. switchport access vlan D. switchport double-tag snooping E. switchport mode access Answer: C, E Question 21. You enter the command show ip ospf neighbor and see "two-way/DROTHER" listed as the state for neighbor 10.1.1.1. What does this status indicate? A. The neighbor 10.1.1.1 is not a DR or BDR. B. The neighbor relationship with 10.1 .1.1 has not yet completed. C. DR and BDR election is in progress. D. The neighbor 10.1.1.1 is the BDR. Answer: A Question 22. A customer with a large enterprise network wants to allow employees to work from home over the Internet. The customer anticipates a large amount of traffic, predominantly toward the central site. The customer also requires a VPN using strong user authentication and encryption to protect highly sensitive data. Which solution best meets this customer's requirements? A. remote-access VPN with software encryption B. remote-access VPN with hardware encryption C. site-to-site VPN with hub-and-spoke tunnels using 3DES and pre-shared secrets D. site-to-site Cisco Easy VPN Answer: B Question 23. Which two statements are correct about using Cisco Router and Security Device Manager (SDM) to configure the OSPF routing protocol? (Choose two.) A. Cisco SDM enforces the creation of area 0 when configuring DSPF. B. Cisco SDM will use the supplied wildcard mask to exclude the host bits from the configured network address. C. Cisco SDM allows the configuration of an area range to allow route summarization between OSPE areas. D. Cisco SDM allows the selection of OSPFv1 or OSPFv2. E. Cisco SDM allows the configuration of passive interfaces. Answer: B, E Question 24. Which three statements are correct about the IEEE 802.3af Power over Ethernet standard? (Choose three.) A. It defines a port that acts as a power source to be a PSE. B. It defines a powered device to be a PDE. C. It defines how a powered device is detected. D. It defines three methods of delivering Power over Ethernet to the discovered powered device. E. It describes five power classes to which a device may belong. F. It defines power class 0 as being reserved for future use. Answer: A, C, E Question 25. Users logging into Cisco Router and Security Device Manager should be authenticated using the Cisco ISP local user database. Currently, none of the users can access Cisco Router and Security Device Manager via HTTP. You should check the configuration of which command or commands when attempting to resolve this problem? A. ip http secure-server B. ip http authentication local C. line vty 0 5 login local D. aaa new-model aaa authentication login default local Answer: B Question 26. A customer in Europe needs to establish an 11-Mbps wireless bridge link between two office buildings that are approximately 1.3 km apart. The wireless link will pass through a public park, which contains a lake that is surrounded by trees. You run the range calculation and determine that the Cisco Aironet 1300 Series Outdoor Access Point/Bridge should work. You install the link using 10.5-dB yagis with 75 feet of standard Cisco cabling and both radios set at 20 mW. The wireless bridges are not able to establish or maintain a link. What is needed to successfully complete this link? A. An amplifier needs to be installed at one of the sites. B. The antenna must be raised high enough to clear the trees. C. Lower loss cabling needs to be used to bring the EIRP into legal limits. D. Due to the trees, a 21-dBi dish needs to be used for its narrower beam width. Answer: B Question 27. The customer wants to implement wireless security through implementation of WPAv2. Which component of WPAv2 would limit the rollout because of the continued use of old access points? A. 46-bit IV B. AES C. TKIP D. MIC Answer: B Question 28. Which statement is true about a Cisco Aironet 350 Series wireless client when its green LED appears to be off and its amber LED is blinking? A. The client adapter is scanning for a network. B. The client adapter is in ad hoc mode. C. The client adapter is performing a self-test. D. The client adapter is in power-save mode. Answer: D Question 29. You are troubleshooting OSPF neighbor establishment problems, which are occurring over Frame Relay interfaces that use the default OSPF network type. What should you verify in the router configuration? A. the ip ospf network point-to-point statement under the Frame Relay interface B. the ip ospf priority 0 statement on the Frame Relay interface on the designated router C. the neighbor statements on the Frame Relay interface D. the frame-relay map statement on the Frame Relay interface Answer: D Question 30. Which two statements describe traffic that would be permitted based on the current access list configuration? A. Telnet traffic from any outside host to the 172.16.10.2 host on the dmz2 B. HTTP and HTTP traffic from any outside host to the 172.16.10.1.2 host on the dmz1 C. Any IP traffic from any outside host to the 172.16.10.2 host on the dmz2 D. Any IP traffic from any outside host to the 172.16.1.2 host on the dmz2 Answer: A, B Question 31. Which statement is correct about the current address translation configurations on the security appliance? A. Dynamic NAT is used to translate the 10.0.1.100 host on the inside interface to a global address of 192.168.1.1 B. Port Address Translation (PAT) is used to translate any host on the inside interface to the 192.168.1.100 global address. C. Static NAT is used to translate the 172.16.1.2 host on the dmz1 interface to a global address of 192.168.1.102 D. Dynamic NAT is used to translate any host on dmz1 and dmz2 interfaces to a mapped address from the address from the address pool of 192.168.1.110 to 192.168.1.250 E. Static NAT is used to translate the 172.16.10.2 host on the dmz2 interface to a global address of 192.168.1.100 Answer: C Question 32. Which is the current configured default gateway IP address on the security appliance? A. 172.16.10.1 B. 172.16.1.1 C. 192.168.1.2 D. 10.0.1.1 E. 172.169.1.2 F. 172.16.10.2 Answer: C Question 33. Which hosts are allowed to manage this security appliance using the ASDM? A. The 10.0.100 host only B. The 172.16.1.2 host only C. The 172.16.10.2 host only D. Any host on the 10.0.1.0/24 subnet E. Any host on the 172.16.1.0/24 subnet F. Any host on the 172.16.10.0/24 Answer: A Question 34. What is the maximum number of VLANs and physical interfaces are supported based on the current security appliance software license? A. 25 VLANs and 6 interfaces B. 10 VLANs and 3 interfaces C. 50 VLANs and 8 interfaces D. 150 VLANs and 14 interfaces E. 100 VLANs and 10 interfaces Answer: A
|
Question 1. You work as the exchange administrator at ITCertKeys.com. The ITCertKeys.com network contains an Exchange Server 2007 Organization. The Active Directory structure of ITCertKeys.com consists of a root domain and a single child domain. The root domain is in ITCertKeys1 and the child domain in ITCertKeys2. You are in the process of installing Exchange Server 2007 in the child domain. In order to accomplish this task you decide to run the Setup /PrepareADcommand in the root domain. In your solution you need to ensure that Exchange can be installed on the child domain as well. What should you do? (Each correct answer presents a complete solution. Choose TWO.) A. You should run the Setup /ForestPrep command in the root domain. B. You should run the Setup /PrepareAllDomains command in the root domain. C. You should run the Setup /PrepareDomain command in the root domain. D. You should run the Setup /PrepareDomain command in the child domain. Answer: B, D Question 2. You work as the exchange administrator at ITCertKeys.com. The ITCertKeys.com network contains an Exchange Server 2007 Organization. The Active Directory forest of ITCertKeys.com contains a single site named ITCertKeysA. ITCertKeysA consists of a root domain and a single child domain. You have received instruction from the CIO to prepare the Active Directory as well as the domains. This task needs to be accomplished before you install the Exchange Server 2007 server. What should you do? (Each correct answer presents part of the solution. Choose TWO.) A. You should run the Setup /PrepareAllDomains command. B. You should run the Setup /ForestPrep command. C. You should run the Setup /PrepareAD command. D. You should run the Setup /DomainPrep command. Answer: A, C Question 3. You are employed as the exchange administrator at ITCertKeys.com. The ITCertKeys.com network contains an Exchange 2007 Organization. ITCertKeys.com has its headquarters in Stockholm where you are located. Due to company growth ITCertKeys.com opens a branch office in Athens and hires another administrator named Amy Wilson. You have received instruction from the CIO to configure the least amount permissions necessary for Amy Wilson who must be enabled to prepare Active Directory for Exchange Server 2007. What should you do? A. You must add the user account of the administrator to an Enterprise Admins group. You must add the administrator to an Exchange Full Administrator at the organizational level. B. You must add the user account of the administrator to the Exchange Enterprise Server group. You must add the user account of the administrator to the Domain Admins group. C. You must add the user account of the administrator to an Enterprise Admins group. You must add the user account of the administrator to a Schema Admins group. D. You must add the user account of the administrator to the Domain Admins group. You must add the administrator to an Exchange Full Administrator at the organizational level. Answer: D Explanation: The user is required to be a domain admin and Exchange Full Administrator. Does not require to be a member of the schema admins group as it does not mention having to extend the schema due to Windows 2008 upgrade etc. Question 4. You are employed as the exchange administrator at ITCertKeys.com. The ITCertKeys.com Exchange Server network has just been migrated to Exchange Server 2007. You are responsible for managing the Exchange network for ITCertKeys.com. Every mailbox server on the ITCertKeys.com network is configured with two storage groups as well as two databases for each of the storage groups. You have received instruction from the CIO to ensure that the ITCertKeys.com Exchange Server network is fault tolerant. You thus decide to implement local continuous replication (LCR). Now you need to configure the Mailbox server with LCR. What should you do? A. First change the ratio to a single database per storage group. Then run the Enable-DatabaseCopy cmdlet. Then run the Enable-StorageGroupCopy cmdlet. B. First run the Disable-StorageGroupCopy cmdlet. Then change the databases into a single storage group. Then run the Enable-StorageGroupCopy cmdlet. C. First change the database ratio to a single database per storage group. Then run the Disable-StorageGroupCopy cmdlet. Then run the Enable-DatabaseCopy cmdlet. D. First run the Disable-StorageGroupCopy cmdlet. Then change the databases ratio into a single storage group. Then run the Enable-DatabaseCopy cmdlet. Answer: A Question 5. You are employed as the exchange administrator at ITCertKeys.com. You are in the process of installing a new Exchange Server 2007 Organization. The native Exchange Server 2007 environment of ITCertKeys.com has the following server roles installed: * One Edge Transport server named ITCertKeys-EX01 * One Hub Transport server named ITCertKeys-EX02 You have received instruction from the CIO to configure the e-mail routing. In your solution you need to ensure that ITCertKeys-EX01 is configured is such a way so as to route e-mail between the Exchange organization and the Internet; and that ITCertKeys-EX02 is configured in such a way so as to route Internet e-mail to ITCertKeys-EX01. What should you do? (Each correct answer presents part of the solution. Choose TWO.) A. On ITCertKeys-EX02, first open the Exchange Management Console. Then import the Edge Subscription file. B. On ITCertKeys-EX01, first create a new Send connector named ITKEdge - Internet. Then add the *domain as an address space and specify to use DNS to route e-mail automatically. Then add ITCertKeys-EX01 as a source server. C. On ITCertKeys-EX02, first create a new Send connector named ITKHub. Then add the *domain as an address space and specify to use DNS to route e-mail automatically. Then add ITCertKeys-EX02 as a source server. D. On ITCertKeys-EX01, first open the Exchange Management Shell. Then export a new Edge Subscription file. Answer: A, D Question 6. You work as the exchange administrator at ITCertKeys.com. The ITCertKeys.com network contains an Exchange Server 2007 Organization. You are responsible for managing the Exchange network for ITCertKeys.com. You are currently preparing your Exchange 2007 organization in order to install the Mailbox server role on a newly purchased Exchange Server 2007 server named ITCertKeys-EX10. You have received instruction from the CIO to ensure that the ITCertKeys-EX10 read and write performance is optimal. In addition you also need to implement redundancy on ITCertKeys-EX10. You thus have to choose the appropriate type of array on which the mailbox database should be placed. What should you do? A. Make use of a dedicated RAID 10 array. B. Make use of a dedicated RAID 0 array. C. Make use of a dedicated RAID 1 array. D. Make use of a RAID 1 array that contains the operating system partition. Answer: A Question 7. You are employed as the exchange administrator at ITCertKeys.com. You are in the process of converting your Exchange 2000 Server environment to Exchange Server 2007. The ITCertKeys.com network contains a Windows 2000 native mode Active Directory domain as well as an Exchange 2000 organization. The Exchange 2000 organization is configured to run in mixed mode. You have been informed by the CIO that the schema master, the domain naming master as well as the PDC emulator all run on a Microsoft Windows 2000 Server domain controller. You receive instructions to prepare the environment for Exchange 2007. What should you do? (Each correct answer presents part of the solution. Choose TWO.) A. You should change the mixed mode Exchange 2000 organization to native mode. B. You should move the PDC emulator role to a Windows Server 2003 domain controller that has Service Pack 1 installed. C. You should move the schema master role to a Windows Server 2003 domain controller that has Service Pack 1. D. You should move the domain naming master role to a Windows Server 2003 domain controller that has Service Pack 1. Answer: A, C Question 8. You are employed as the exchange administrator at ITCertKeys.com. The ITCertKeys.com network contains an Exchange 2007 Organization. You are responsible for managing the Exchange network for ITCertKeys.com. You decide to install a two-node Single Copy Cluster (SCC) Mailbox server on the Exchange Server 2007 organization of ITCertKeys.com. You then name the network adapters ITKPublic and ITKPrivate. You have received instruction from the CIO to configure the TCP/IP binding order for the cluster servers. What should you do? A. You should move the Public connection to the top of the Adapters and Bindings tab. B. You should move the Private connection to the top of the Adapters and Bindings tab. C. You should open the properties of the cluster and move the ITKPrivate network to the top of the Network Priority tab. D. You should open the properties of the cluster and move the ITKPublic network to the top of the Network Priority tab. Answer: A Explanation: The Public connection must be first in order in the binding tab. Question 9. You are employed as the exchange administrator at ITCertKeys.com. The ITCertKeys.com network contains an Exchange Server 2007 Organization. ITCertKeys.com has its headquarters in Chicago and a branch office in Dallas. You have been assigned to the Dallas site office. Your instructions are to install Exchange Server 2007 on the new server. To ensure that no problems occur that might hinder the users of the Dallas site to perform their duties you decide to install the required components on the new server before you install Exchange Server 2007. What should you do? (Each correct answer presents part of the solution. Choose THREE.) A. Install Windows PowerShell 1.0. B. Install Network News Transfer Protocol (NNTP). C. Install Simple Mail Transfer Protocol (SMTP). D. Install Microsoft Management Console (MMC) 3.0. E. Install Microsoft .NET Framework 1.1. F. Install Microsoft .NET Framework 2.0 Answer: A, D, F Question 10. You work as the exchange administrator at ITCertKeys.com. The ITCertKeys.com network contains an Exchange Server 2007 Organization. You are responsible for managing the Exchange network for ITCertKeys.com. The ITCertKeys.com network contains a stand-alone server named ITCertKeys-EX01. You have received instruction from the CIO to install the appropriate Exchange Server 2007 server role on ITCertKeys-EX01. What should you do? A. The Hub Transport server role should be installed on ITCertKeys-EX01. B. The Mailbox server role should be installed on ITCertKeys-EX01. C. The Client Access server role should be installed on ITCertKeys-EX01. D. The Edge Transport server role should be installed on ITCertKeys-EX01. Answer: D
Copyright © 2004 CertsBraindumps.com Inc. All rights reserved.