[PDF&VCE] New Released Cisco 210-260 Exam Questions From Cisco Exam Center (111-120)

30 Sep

2016 September Cisco Official New Released 210-260 Dumps in Lead2pass.com!

100% Free Download! 100% Pass Guaranteed!

Cisco New Released Exam 210-260 exam questions are now can be download from Lead2pass! All questions and answers are the latest! 100% exam pass guarantee! Get this IT exam certification in a short time!

Following questions and answers are all new published by Cisco Official Exam Center: http://www.lead2pass.com/210-260.html

If a switch receives a superior BPDU and goes directly into a blocked state, what mecanism must be in use?

A.    Etherchannel guard
B.    root guard
C.    loop guard
D.    BPDU guard

Answer: D
The key here is the word ‘switch’. The entire switch goes into a blocked state, meaning that it can’t participate in STP, it is blocked. Root guard basically puts the port in a listening state rather than forwarding, still allowing the device to participate in STP.

What type of packet creates and performs network operations on a network device?

A.    data plane packets
B.    management plane packets
C.    services plane packets
D.    control plane packets

Answer: D

Which two statements about stateless firewalls are true? (Choose two.)

A.    They compare the 5-tuple of each incoming packet against configurable rules.
B.    They cannot track connections.
C.    They are designed to work most efficiently with stateless protocols such as HTTP or HTTPS.
D.    Cisco IOS cannot implement them because the platform is stateful by nature.
E.    The Cisco ASA is implicitly stateless because it blocks all traffic by default.

Answer: AB

What three actions are limitations when running IPS in promiscuous mode? (Choose three.)

A.    deny attacker
B.    deny packet
C.    modify packet
D.    request block connection
E.    request block host
F.    reset TCP connection

Answer: ABC

Which command will configure a Cisco ASA firewall to authenticate users when they enter the enable syntax using the local database with no fallback method?

A.    aaa authentication enable console LOCAL SERVER_GROUP
B.    aaa authentication enable console SERVER_GROUP LOCAL
C.    aaa authentication enable console local
D.    aaa authentication enable console LOCAL

Answer: D

Which accounting notices are used to send a failed authentication attempt record to a AAA server? (Choose two.)

A.    start-stop
B.    stop-record
C.    stop-only
D.    stop

Answer: AC

If the native VLAN on a trunk is different on each end of the link, what is a potential consequence?

A.    The interface on both switches may shut down
B.    STP loops may occur
C.    The switch with the higher native VLAN may shut down
D.    The interface with the lower native VLAN may shut down

Answer: B

Which type of IPS can identify worms that are propagating in a network?

A.    Policy-based IPS
B.    Anomaly-based IPS
C.    Reputation-based IPS
D.    Signature-based IPS

Answer: B

By which kind of threat is the victim tricked into entering username and password information at a disguised website?

A.    Spoofing
B.    Malware
C.    Spam
D.    Phishing

Answer: D

Which Cisco product can help mitigate web-based attacks within a network?

A.    Adaptive Security Appliance
B.    Web Security Appliance
C.    Email Security Appliance
D.    Identity Services Engine

Answer: B

Lead2pass gives the latest, authoritative and complete 210-260 braindumps for 210-260 exam, because of that, all of our candidates pass 210-260 certification without any problem. The biggest feature is the regular update of 210-260 PDF and VCE, which keeps our candidates’ knowledge up to date and ensures their 210-260 exam success.

210-260 new questions on Google Drive: https://drive.google.com/open?id=0B3Syig5i8gpDLWhBVC0zekJKUUU

2016 Cisco 210-260 exam dumps (All 193 Q&As) from Lead2pass:

http://www.lead2pass.com/210-260.html [100% Exam Pass Guaranteed]