350-701 Dumps

350-701 Free Practice Test

Cisco 350-701: Implementing and Operating Cisco Security Core Technologies

QUESTION 66

- (Exam Topic 3)
What are two functions of IKEv1 but not IKEv2? (Choose two)

Correct Answer: CE

QUESTION 67

- (Exam Topic 1)
Refer to the exhibit.
350-701 dumps exhibit
What does the number 15 represent in this configuration?

Correct Answer: B
The syntax of this command is shown below:snmp-server group [group-name {v1 | v2c | v3 [auth | noauth | priv]}] [read read-view] [write write-view] [notify notify-view] [access access-list]The command above restricts which IP source addresses are allowed to access SNMP functions on the router. You could restrict SNMP access by simply applying an interface ACL to block incoming SNMP packets that don’t come from trusted servers. However, this would not be as effective as using the global SNMP commands shown in this recipe. Because you can apply this method once for the whole router, it is much simpler than applying ACLs to block SNMP on all interfaces separately. Also, using interface ACLs would block not only SNMP packets intended for this router, but also may stop SNMP packets that just happened to be passing through on their way to some other destination device.

QUESTION 68

- (Exam Topic 3)
How does the Cisco WSA enforce bandwidth restrictions for web applications?

Correct Answer: C

QUESTION 69

- (Exam Topic 2)
Why is it important to implement MFA inside of an organization?

Correct Answer: C

QUESTION 70

- (Exam Topic 1)
When web policies are configured in Cisco Umbrella, what provides the ability to ensure that domains are blocked when they host malware, command and control, phishing, and more threats?

Correct Answer: B