350-701 Free Update With 100% Exam Passing Guarantee [2021]
[Oct-2021] Verified Cisco Exam Dumps with 350-701 Exam Study Guide
NEW QUESTION 190
An engineer wants to generate NetFlow records on traffic traversing the Cisco ASA.
Which Cisco ASA
command must be used?
- A. ip flow-export destination 1.1.1.1 2055
- B. flow exporter
- C. flow-export destination inside 1.1.1.1 2055
- D. ip flow monitor input
Answer: C
Explanation:
The syntax of this command is: flow-export destination interface-name ipv4-address | hostname udp-port This command is used on Cisco ASA to configure Network Secure Event Logging (NSEL) collector to which NetFlow packets are sent. The destination keyword indicates that a NSEL collector is being configured. + The interface-name argument is the name of the ASA and ASA Services Module interface through which the collector is reached. + The ipv4-address argument is the IP address of the machine running the collector application. + The hostname argument is the destination IP address or name of the collector. + The udp-port argument is the UDP port number to which NetFlow packets are sent. You can configure a maximum of five collectors. After a collector is configured, template records are automatically sent to all configured NSEL collectors. Reference: https://www.cisco.com/c/en/us/td/docs/security/asa/asa84/configuration/guide/asa_84_cli_config/ monitor_nsel.html
The syntax of this command is: flow-export destination interface-name ipv4-address | hostname udp-port This command is used on Cisco ASA to configure Network Secure Event Logging (NSEL) collector to which NetFlow packets are sent. The destination keyword indicates that a NSEL collector is being configured.
+ The interface-name argument is the name of the ASA and ASA Services Module interface through which the collector is reached.
+ The ipv4-address argument is the IP address of the machine running the collector application.
+ The hostname argument is the destination IP address or name of the collector.
+ The udp-port argument is the UDP port number to which NetFlow packets are sent.
You can configure a maximum of five collectors. After a collector is configured, template records are automatically sent to all configured NSEL collectors.
Reference:
Explanation The syntax of this command is: flow-export destination interface-name ipv4-address | hostname udp-port This command is used on Cisco ASA to configure Network Secure Event Logging (NSEL) collector to which NetFlow packets are sent. The destination keyword indicates that a NSEL collector is being configured. + The interface-name argument is the name of the ASA and ASA Services Module interface through which the collector is reached. + The ipv4-address argument is the IP address of the machine running the collector application. + The hostname argument is the destination IP address or name of the collector. + The udp-port argument is the UDP port number to which NetFlow packets are sent. You can configure a maximum of five collectors. After a collector is configured, template records are automatically sent to all configured NSEL collectors. Reference: https://www.cisco.com/c/en/us/td/docs/security/asa/asa84/configuration/guide/asa_84_cli_config/ monitor_nsel.html
NEW QUESTION 191
An administrator configures new authorization policies within Cisco ISE and has difficulty profiling the devices. Attributes for the new Cisco IP phones that are profiled based on the RADIUS authentication are seen however the attributes for CDP or DHCP are not. What should the administrator do to address this issue?
- A. Configure the authentication port-control auto feature within Cisco ISE to identify the devices that are trying to connect
- B. Configure the device sensor feature within the switch to send the appropriate protocol information Explanation Device sensor is a feature of access devices. It allows to collect information about connected endpoints. Mostly, information collected by Device Sensor can come from the following protocols: + Cisco Discovery Protocol (CDP) + Link Layer Discovery Protocol (LLDP) + Dynamic Host Configuration Protocol (DHCP) Reference: https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/200292-ConfigureDevice-Sensor-for-ISE-Profilin.html
- C. Configure a service template within the switch to standardize the port configurations so that the correct information is sent to Cisco ISE
- D. Configure the ip dhcp snooping trust command on the DHCP interfaces to get the information to Cisco ISE
Answer: B
Explanation:
Device sensor is a feature of access devices. It allows to collect information about connected endpoints. Mostly, information collected by Device Sensor can come from the following protocols:
+ Cisco Discovery Protocol (CDP)
+ Link Layer Discovery Protocol (LLDP)
+ Dynamic Host Configuration Protocol (DHCP)
Explanation Device sensor is a feature of access devices. It allows to collect information about connected endpoints. Mostly, information collected by Device Sensor can come from the following protocols: + Cisco Discovery Protocol (CDP) + Link Layer Discovery Protocol (LLDP) + Dynamic Host Configuration Protocol (DHCP) Reference: https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/200292-ConfigureDevice-Sensor-for-ISE-Profilin.html
NEW QUESTION 192
Refer to the exhibit.
Which command was used to generate this output and to show which ports are authenticating with dot1x or mab?
- A. show authentication registrations
- B. show authentication method
- C. show dot1x all
- D. show authentication sessions
Answer: D
NEW QUESTION 193
Which two descriptions of AES encryption are true? (Choose two.)
- A. AES is more secure than 3DES.
- B. AES can use a 168-bit key for encryption.
- C. AES encrypts and decrypts a key three times in sequence.
- D. AES can use a 256-bit key for encryption.
- E. AES is less secure than 3DES.
Answer: A,D
Explanation:
Explanation/Reference: https://gpdb.docs.pivotal.io/43190/admin_guide/topics/ipsec.html
NEW QUESTION 194
Which two capabilities of Integration APIs are utilized with Cisco DNA center? (Choose two)
- A. Connect to Information Technology Service Management Platforms
- B. Create new SSIDs on a wireless LAN controller
- C. Upgrade software on switches and routers
- D. Automatically deploy new virtual routers
- E. Application monitors for power utilization of devices and IoT sensors
Answer: A,E
Explanation:
Explanation Integration API (Westbound) Integration capabilities are part of Westbound interfaces. To meet the need to scale and accelerate operations in modern data centers, IT operators require intelligent, end-to-end work flows built with open APIs. The Cisco DNA Center platform provides mechanisms for integrating Cisco DNA Assurance workflows and data with thirdparty IT Service Management (ITSM) solutions. Reference: https://developer.cisco.com/docs/dna-center/#!cisco-dna-center-platform-overview/events-andnotifications-eastbound -> Therefore answer D is correct. Westbound-Integration APIs Cisco DNA Center platform can power end-to-end IT processes across the value chain by integrating various domains such as ITSM, IPAM, and reporting. By leveraging the REST-based Integration Adapter APIs, bidirectional interfaces can be built to allow the exchange of contextual information between Cisco DNA Center and the external, third-party IT systems. The westbound APIs provide the capability to publish the network data, events and notifications to the external systems and consume information in Cisco DNA Center from the connected systems. Reference: https://blogs.cisco.com/networking/with-apis-cisco-dna-center-can-improve-your-competitiveadvantage Therefore the most suitable choice is Integration APIs can monitor for power utilization of devices and IoT sensors -> Answer C is correct.
Integration API (Westbound)
Integration capabilities are part of Westbound interfaces. To meet the need to scale and accelerate operations in modern data centers, IT operators require intelligent, end-to-end work flows built with open APIs. The Cisco DNA Center platform provides mechanisms for integrating Cisco DNA Assurance workflows and data with thirdparty IT Service Management (ITSM) solutions.
Reference:
-> Therefore answer D is correct.
Westbound-Integration APIs
Cisco DNA Center platform can power end-to-end IT processes across the value chain by integrating various domains such as ITSM, IPAM, and reporting. By leveraging the REST-based Integration Adapter APIs, bidirectional interfaces can be built to allow the exchange of contextual information between Cisco DNA Center and the external, third-party IT systems. The westbound APIs provide the capability to publish the network data, events and notifications to the external systems and consume information in Cisco DNA Center from the connected systems.
Therefore the most suitable choice is Integration APIs can monitor for power utilization of devices and IoT Explanation Integration API (Westbound) Integration capabilities are part of Westbound interfaces. To meet the need to scale and accelerate operations in modern data centers, IT operators require intelligent, end-to-end work flows built with open APIs. The Cisco DNA Center platform provides mechanisms for integrating Cisco DNA Assurance workflows and data with thirdparty IT Service Management (ITSM) solutions. Reference: https://developer.cisco.com/docs/dna-center/#!cisco-dna-center-platform-overview/events-andnotifications-eastbound -> Therefore answer D is correct. Westbound-Integration APIs Cisco DNA Center platform can power end-to-end IT processes across the value chain by integrating various domains such as ITSM, IPAM, and reporting. By leveraging the REST-based Integration Adapter APIs, bidirectional interfaces can be built to allow the exchange of contextual information between Cisco DNA Center and the external, third-party IT systems. The westbound APIs provide the capability to publish the network data, events and notifications to the external systems and consume information in Cisco DNA Center from the connected systems. Reference: https://blogs.cisco.com/networking/with-apis-cisco-dna-center-can-improve-your-competitiveadvantage Therefore the most suitable choice is Integration APIs can monitor for power utilization of devices and IoT sensors -> Answer C is correct.
NEW QUESTION 195
There are individual sites specified to be block listed in Cisco Umbrella?
- A. destination lists
- B. content categories
- C. security settings
- D. application settings
Answer: A
NEW QUESTION 196
An engineer adds a custom detection policy to a Cisco AMP deployment and encounters issues with the configuration The simple detection mechanism is configured, but the dashboard indicates that the hash is not 64 characters and is non-zero What is the issue?
- A. The hash being uploaded is part of a set in an incorrect format
- B. The engineer is attempting to upload a hash created using MD5 instead of SHA-256
- C. The engineer is attempting to upload a file instead of a hash
- D. The file being uploaded is incompatible with simple detections and must use advanced detections
Answer: B
NEW QUESTION 197
An administrator configures a new destination list in Cisco Umbrella so that the organization can block specific domains for its devices. What should be done to ensure that all subdomains of domain.com are blocked?
- A. Configure the *.com address in the block list.
- B. Configure the *.domain.com address in the block list
- C. Configure the *.domain.com address in the block list
- D. Configure the domain.com address in the block list
Answer: B
NEW QUESTION 198
An engineer is trying to securely connect to a router and wants to prevent insecure algorithms from being used.
However, the connection is failing. Which action should be taken to accomplish this goal?
- A. Configure the port using the ip ssh port 22 command.
- B. Enable the SSH server using the ip ssh server command.
- C. Disable telnet using the no ip telnet command.
- D. Generate the RSA key using the crypto key generate rsa command.
Answer: D
Explanation:
Explanation
https://learningnetwork.cisco.com/s/question/0D53i00000KsrhK/rsa-key
NEW QUESTION 199
Which feature requires a network discovery policy on the Cisco Firepower Next Generation Intrusion Prevention System?
- A. health monitoring
- B. URL filtering
- C. security intelligence
- D. impact flags
Answer: D
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/firepower/610/configuration/guide/fpmc-config-guide-v61/introduction_to_network_discovery_and_identity.html?bookSearch=true
NEW QUESTION 200
Drag and drop the descriptions from the left onto the correct protocol versions on the right.
Answer:
Explanation:
NEW QUESTION 201
An engineer is configuring 802.1X authentication on Cisco switches in the network and is using CoA as a mechanism. Which port on the firewall must be opened to allow the CoA traffic to traverse the network?
- A. UDP 1812
- B. TCP 6514
- C. UDP 1700
- D. TCP 49
Answer: C
Explanation:
Reference:
NEW QUESTION 202
Which compliance status is shown when a configured posture policy requirement is not met?
- A. compliant
- B. authorized
- C. noncompliant
- D. unknown
Answer: C
NEW QUESTION 203
What is the difference between deceptive phishing and spear phishing?
- A. Spear phishing is when the attack is aimed at the C-level executives of an organization
- B. Deceptive phishing is an attacked aimed at a specific user in the organization who holds a C-level role.
- C. A spear phishing campaign is aimed at a specific person versus a group of people.
- D. Deceptive phishing hijacks and manipulates the DNS server of the victim and redirects the user to a false webpage.
Answer: A
NEW QUESTION 204
Which two fields are defined in the NetFlow flow? (Choose two)
- A. output logical interface
- B. class of service bits
- C. destination port
- D. type of service byte
- E. Layer 4 protocol type
Answer: C,D
Explanation:
Explanation
Explanation
Cisco standard NetFlow version 5 defines a flow as a unidirectional sequence of packets that all share seven values which define a unique key for the flow:
+ Ingress interface (SNMP ifIndex)
+ Source IP address
+ Destination IP address
+ IP protocol
+ Source port for UDP or TCP, 0 for other protocols
+ Destination port for UDP or TCP, type and code for ICMP, or 0 for other protocols
+ IP Type of Service
Note: A flow is a unidirectional series of packets between a given source and destination.
NEW QUESTION 205
Which benefit is provided by ensuring that an endpoint is compliant with a posture policy configured in Cisco ISE?
- A. It adds endpoints to identity groups dynamically.
- B. It allows the endpoint to authenticate with 802.1xor MAB.
- C. It verifies that the endpoint has the latest Microsoft security patches installed.
- D. It allows CoA to be applied if the endpoint status is compliant.
Answer: C
NEW QUESTION 206
Drag and drop the descriptions from the left onto the correct protocol versions on the right.
Answer:
Explanation:
Explanation
NEW QUESTION 207
A switch with Dynamic ARP inspection enabled has received a spoofed ARP response on a trusted interface. How does the switch behave in this situation?
- A. It forwards the packet after validation by using the MAC Binding Table.
- B. It forwards the packet without validation.
- C. It drops the packet Without validation.
- D. It drops the packet after validation by using the IP & MAC Binding Table.
Answer: D
NEW QUESTION 208
Which Cisco solution does Cisco Umbrella integrate with to determine if a URL is malicious?
- A. AnyConnect
- B. DynDNS
- C. Talos
- D. AMP
Answer: C
Explanation:
Explanation
Explanation
When Umbrella receives a DNS request, it uses intelligence to determine if the request is safe, malicious or risky - meaning the domain contains both malicious and legitimate content. Safe and malicious requests are routed as usual or blocked, respectively. Risky requests are routed to our cloud-based proxy for deeper inspection. The Umbrella proxy uses Cisco Talos web reputation and other third-party feeds to determine if a URL is malicious.
NEW QUESTION 209
What is the function of SDN southbound API protocols?
- A. to enable the controller to make changes
- B. to allow for the static configuration of control plane applications
- C. to enable the controller to use REST
- D. to allow for the dynamic configuration of control plane applications
Answer: A
Explanation:
Explanation
NEW QUESTION 210
Which term describes when the Cisco Firepower downloads threat intelligence updates from Cisco Talos?
- A. authoring
- B. analysis
- C. consumption
- D. sharing
Answer: C
NEW QUESTION 211
......
Authentic Best resources for 350-701 Online Practice Exam: https://www.examprepaway.com/Cisco/braindumps.350-701.ete.file.html
350-701 Test Engine Practice Exam: https://drive.google.com/open?id=1uC9DEK8tjEt2xpqP8w_Sw3ECQN4Jh8LN