You must understand the network security requirements to pass the CCIE Security certification written exam.

Question No. 1

Refer to the exhibit.

Which two effects of this configuration are true? (Choose two)

Answer: B, F

Question No. 2

Which three statements about SCEP are true? (Choose three.)

Answer: B, D, E

Question No. 3

Which type of attack use a large number of spoofed MAC addresses to emulate wireless client?

Answer: A

Question No. 4

Refer to the exhibit.

Which meaning of this error message on a Cisco ASA is true?

Answer: B

Question No. 5

On a Cisco Wireless LAN Controller (WLC), which web policy enables failed Layer 2 authentication to fall

back to WebAuth authentication with a user name and password?

Answer: A

Question No. 6

When an organization is choosing a cloud computing model to adopt, many consideration are studies to determine the most suitable model. To which model is cloud interdependency mainly attributed?

Answer: A

Question No. 7

Refer to the exhibit.

What feature does the given configuration implement?

Answer: A

Question No. 8

For which of the four portals is the SAML Single Sign-On on ISE supported? (Choose four)

Answer: B, C, D, F

Question No. 9

Which statement is true about Remote Triggered Black Hole Filtering feature (RTBH)?

Answer: B

Question No. 10

Which three loT attack areas as defined by Client.?

Answer: A, D, F

Question No. 11

Which statement correctly describes AES encryption algorithm?

Answer: A

Question No. 12

Which two statements about MACsec are true? (Choose two)

Answer: B, C

Question No. 13

Which two types of IPv6 capabilities does Cisco ISE release 2.0 support? (Choose two.)

Answer: B, E

Question No. 14

Which of the following is the correct statement regarding enabling SMTP encryption on ESA?

Answer: C

Question No. 15

Which three ISAKMP SA Message States can be output from the device that initiated an IPSec tunnel?

(Choose three)

Answer: A, B, D

