Cisco SAFE Implementation Exam : 642-524 Exam
642-524 SNAF
Securing Networks with ASA Foundation
Exam Number: 642-524
Associated Certifications: CCSP
Duration: 90 minutes (60 questions)
Available Languages: English
Click Here to Register: Pearson VUE
Exam Policies: Read current policies and requirements
Exam Tutorial: Review type of exam questions
Exam DescriptionThe Securing Networks with ASA Foundation exam is one of the exams associated with the Cisco Certified Security Professional and the Cisco Firewall Specialist certifications. Candidates can prepare for this exam by taking the SNAF course. This exam includes simulations and tests a candidate’s knowledge and ability to describe, configure, verify and manage the Cisco ASA Security Appliance product.
Exam TopicsThe following topics are general guidelines for the content likely to be included. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice.
Configure Security Appliances for secured network connectivity
Configure and verify network and interface settings using ASDM and CLI
Configure and verify NAT globals, statics, NAT exemption, and Identity NAT using ASDM
Configure and verify access-lists with or without object groups using ASDM
Configure and verify routing and switching on Security Appliances
Describe the routing capabilities of the Security Appliance
Use ASDM to configure VLANs on a Security Appliance interface
Use ASDM to configure the passive RIP routing functionality of the Security Appliance
Configure and verify Authentication, Authorization, & Accounting services for Security Appliances
Configure ACS for Security Appliance support
Use ASDM to configure the Security Appliance AAA features
Configure and verify Auth-Proxy (cut-through proxy) using ASDM
Configure and verify Layer 3 & 4 protocol inspection, Modular Policy Framework, and threat detection for Security Appliances
Configure and verify Layer 3 and Layer 4 protocol inspection using ASDM
Configure and verify Modular Policy Framework using ASDM
Use ASDM to configure and verify threat detection
Configure and verify secure connectivity using VPNs
Configure and verify remote access VPNs using ASDM
Configure and verify IPsec VPN clients with preshared keys using ASDM
Configure and verify site-to-site VPNs with preshared keys using ASDM
Verify IKE and IPsec using ASDM and CLI
Configure and verify clientless SSL VPN using ASDM
Configure and verify active/standby and active/active failover features on Security Appliances
Configure and verify active/standby failover using ASDM
Configure and verify active/active failover using ASDM
Configure and verify redundant Interface using ASDM
Configure transparent firewall and virtual firewall features on a Security Appliance
Explain the purpose of virtual & transparent firewalls
Configure and verify the transparent firewall feature of the Security Appliance using CLI
Configure and verify the virtual firewall feature of the Security Appliance using ASDM
Monitor and manage installed Security Appliances
Update, backup, and restore configurations and software images using ASDM and CLI
Install and verify Licensing using ASDM
Configure and verify Console and SSH/Telnet access
Configure and utilize Logging using ASDM
Exam Number/Code: 642-524
Exam Name:Cisco SAFE Implementation Exam
“Cisco SAFE Implementation Exam”, also known as 642-524 exam, is a Cisco certification. With the complete collection of questions and answers, Actualtests has assembled to take you through 224 Q&A to your 642-524 Exam preparation. In the 642-524 exam resources, you will cover every field and category in CCSP helping to ready you for your successful Cisco Certification.
Free Demo DownloadActualtests offers free demo for 642-524 exam (Cisco SAFE Implementation Exam). You can check out the interface, question quality and usability of our practice exams before you decide to buy it.
Free Sample :PassGuide-it certification Printable PDF Or software
Download: Actualtest offers free demo for IT certification Exams You can check out the interface, question quality and usability of our IT Simulation exams before you decide to buy it. We are the only one site can offer demo for almost all products
http://demo.passguide.com/download
QUESTION 11
Certkiller .com site is site up as follows:
Aggregation-layer Cisco Catalyst 6500 Series Switches
Redundant supervisors
Certkiller .com is deploying a new version of Cisco IOS
Which supervisor redundancy mode or modes will allow an older version of Cisco IOS to
be maintained on a standby supervisor?
Actualtests.com – The Power of Knowing
A. RPR and RPR+
B. RPRR and SSO
C. SSO only
D. RPR only
Answer: D
QUESTION 12
Which command enables virtual firewalls on the FWSM?
A. Mode Context
B. Enable context
C. Enable virtual
D. Mode Multiple
Answer: D
QUESTION 13
Exhibit:
You work as a network administrator at Certkiller .com. You carefully study the exhibit.
Which command enables Telnet management of the FWSM from the remote
management workstation at 192.168.1.23?
A. telnet 192.168.1.0 255.255.255.0
B. telnet 10.0.1.0 255.255.255.0 outside
C. telnet 192.168.1.23 255.255.255.255 outside
D. telnet 10.0.1.2 outside
Answer: C
QUESTION 14
A POP3 and an SMTP server must be visible at the same address through an FWSM.
Which type of NAT is required?
A. Static NAT
B. Identity NAT
C. Policy dynamic NAT
D. dynamic NAT
Actualtests.com – The Power of Knowing
Answer: A
QUESTION 15
Which three statements are requirements for configuring a web browser to work with the
NAM Cisco Traffic Analyzer? (Choose three.)
A. Enable Java and JavaScript
B. Configure the browser to accept all cookie
C. Set the browser to accept all cookies
D. Configure the browser to check for newer versions of pages every time it loads a page
E. Install the Cisco Traffic Analyzer application
F. Set the browser cache to clear itself automatically when the use exits the browser
Answer: A,B,D
QUESTION 16
Certkiller .com has installed an FWSM in the data center. Which feature must be
configured to enable FTP to work?
A. Transparent mode
B. Deep packet inspection
C. Dynamic PAT
D. Access lists
E. Dynamic NAT
Answer: B
QUESTION 17
Which three are valid SPAN sources for the NAM? (Choose three.)
A. A VLAN
B. An EtherChannel
C. A line card
D. A port group
E. An MPLS tunnel
F. A port
Answer: A,B,F
QUESTION 18
Certkiller .com network is configured as follows:
NetFlow is on for all core switch interfaces
The NAM receives NDE packets from each switch
Reports show aggregate data for all interfaces
How would you view data for specific interfaces on a given switch?
Actualtests.com – The Power of Knowing
A. Enable NetFlow only on the interfaces that you want to view
B. Create a custom NDE data source in Cisco Traffic Analyzer and specify the interfaces
that you want to view
C. Create ACLs on the NAM data ports to filter the NDE traffic
D. Limit the NDE data capture by specifying the VLANs that apply to the interfaces that
you want to view
Answer: B
QUESTION 19
Which step will configure high availability on two IDSMs in in-line mode?
A. Install the IDSMs in separate chassis
B. Enable software bypass on the backup IDSM
C. Enable hardware bypass on the primary IDSM
D. Configure an EtherChannel between the two IDSMs
Answer: B
QUESTION 20
A switch is running RSTP and is connected to a switch running 802.1D. What happens
when a spanning-tree reconvergence is triggered?
A. Both switches revert to STP mode
B. The switch running 802.1D reverts to RSTP mode
C. The switch running RSTP reverts to 802.1D mode
D. The switches can’t converge
Answer: C
Free download:pass4sure CCSP 642-524
Free download?testking CCSP 642-524
Download Free PassGuide Product, Help you pass any it Exams,Click Me
| Actualtests Free Downloads |
|
Type
|
Exam Bible |
NEW Questions & Answers |
Latest Updated
|
Download link |
 |
All Actual-Test 's Exam Pack |
858
|
1 days ago |
Full Download
|
Download Free Latest Actualtests Certification Braindumps
- Free Actualtest Actualtests CCSP 642-544
- Free Actualtest Actualtests CCSP 642-533
- Free Actualtest Actualtests CCSP 642-521
- Free Actualtest Actualtests CCSP 642-503
- Free Actualtest Actualtests CCSP 642-511
- Free Actualtest Actualtests CCSP 642-551
- Free Actualtest Actualtests CCSP 642-523
- Free Actualtest Actualtests CCSP 642-591
- Free Actualtest Actualtests CCSP 642-522
- Free Actualtest Actualtests CCSP 642-515