2017 June New 210-260 Exam Questions has been updated! QUESTION 104 In a security context, which action can you take to address compliance? A. Implement rules to prevent a vulnerability B. Correct or counteract a vulnerability C. Reduce the severity of a vulnerability D. Follow directions from the security appliance manufacturer to remediate a vulnerability Answer: A QUESTION 105 How many times was a read-only string used to attempt a write operation? A. 6 B. 9 C. 4 D. 3 E. 2 Answer: B QUESTION 106 What can the SMTP preprocessor in a FirePOWER normalize? A. It can extract and decode email attachments in client to server traffic B. It can look up the email sender C. it compares known threats to the email sender D. It can forward the SMTP traffic to an email filter server E. It uses the Traffic Anomaly Detector Answer: A QUESTION 107 You want to allow all of your companies users to access the Internet without allowing other Web servers to collect the IP addresses of individual users. What two solutions can you use? (Choose two). A. Configure a proxy server to hide users local IP addresses B. Assign unique IP addresses to all users. C. Assign the same IP addresses to all users D. Install a Web content filter to hide users local IP addresses E. Configure a firewall to use Port Address Translation. Answer: AE QUESTION 108 Which two authentication types does OSPF support? (Choose two) A. plaintext B. MD5 C. HMAC D. AES 256 E. SHA-1 F. DES Answer: AB QUESTION 109 Refer to the exhibit. The Admin user is unable to enter configuration mode on a device with the given configuration. What change can you make to the configuration to correct the problem? A. Remove the Auto command keyword and arguments from the Username Admin privilege line B. Change the Privilege exec level value to 15 C. Remove the two Username Admin lines D. Remove the Privilege exec line. Answer: A Explanation: The router just executes "show running" and disconnects if set to auto. QUESTION 110 What command can you use to verify the binding table status? A. Show ip dhcp snooping binding B. Show ip dhcp snooping database C. show ip dhcp snooping statistics D. show ip dhcp pool E. show ip dhcp source binding F. show ip dhcp snooping Answer: B Explanation: "show ip dhcp snooping binding" shows the contents of the binding table, but the summary or overall status is shown by "show ip dhcp snooping database". QUESTION 111 If a switch receives a superior BPDU and goes directly into a blocked state, what mecanism must be in use? A. Etherchannel guard B. root guard C. loop guard D. BPDU guard Answer: D Explanation: The key here is the word 'switch'. The entire switch goes into a blocked state, meaning that it can't participate in STP, it is blocked. Root guard basically puts the port in a listening state rather than forwarding, still allowing the device to participate in STP. QUESTION 112 What type of packet creates and performs network operations on a network device? A. data plane packets B. management plane packets C. services plane packets D. control plane packets Answer: D QUESTION 113 Which two statements about stateless firewalls are true? (Choose two.) A. They compare the 5-tuple of each incoming packet against configurable rules. B. They cannot track connections. C. They are designed to work most efficiently with stateless protocols such as HTTP or HTTPS. D. Cisco IOS cannot implement them because the platform is stateful by nature. E. The Cisco ASA is implicitly stateless because it blocks all traffic by default. Answer: AB 210-260 New Dumps PDF: Dear visitor, you need to Register or Login to view links on Certify Chat.