Win IT Exam with Last Dumps 2024


Cisco 200-301 Exam

Page 96/112
Viewing Questions 951 960 out of 1114 Questions
85.71%

Question 951
An engineer must configure R1 for a new user account. The account must meet these requirements:
* It must be configured in the local database.
* The username is engineer2.
* It must use the strongest password configurable.

Which command must the engineer configure on the router?
A. R1(config)# username engineer2 privilege 1 password 7 test2021
B. R1(config)# username engineer2 secret 4 $1$b1Ju$kZbBS1Pyh4QzwXyZ
C. R1(config)# username engineer2 algorithm-type scrypt secret test2021
D. R1(config)# username engineer2 secret 5 password $1$b1Ju$kZbBS1Pyh4QzwXyZ

Question 952
Which two VPN technologies are recommended by Cisco for multiple branch offices and large-scale deployments? (Choose two.)
A. GETVPN
B. DMVPN
C. site-to-site VPN
D. clientless VPN
E. IPsec remote access

Question 953
DRAG DROP -Drag and drop the statements about AAA services from the left onto the corresponding AAA services on the right. Not all options are used.
Image 200-301_953Q.png related to the Cisco 200-301 Exam
Image 200-301_953R.png related to the Cisco 200-301 Exam

Question 954
What is a characteristic of RSA?
A. It uses preshared keys for encryption.
B. It is a public-key cryptosystem.
C. It is a private-key encryption algorithm.
D. It requires both sides to have identical keys.

Question 955
Which security method is used to prevent man-in-the-middle attacks?
A. authentication
B. anti-replay
C. authorization
D. accounting


Question 956
Refer to the exhibit. This ACL is configured to allow client access only to HTTP, HTTPS, and DNS services via UDP. The new administrator wants to add TCP access to the ONS service.
Which configuration updates the ACL efficiently?
Image 200-301_956Q.png related to the Cisco 200-301 Exam
A. no ip access-list extended Services
ip access-list extended Services
30 permit tcp 10.0.0.0 0.255.255.255 host 198.51.100.11 eq domain
B. ip access-list extended Services
35 permit tcp 10.0.0.0 0.255.255.255 host 198.51.100.11 eq domain
C. ip access-list extended Services
permit tcp 10.0.0.0 0.255.255.255 host 198.51.100.11 eq domain
D. no ip access-list extended Services
ip access-list extended Services
permit udp 10.0.0.0 0.255.255.255 any eq 53
permit tcp 10.0.0.0 0.255.255.255 host 198.51.100.11 eq domain deny ip any any log

Question 957
Which WPA mode uses PSK authenticaton?
A. Local
B. Personal
C. Enterprise
D. Client

Question 958
DRAG DROP -Drag and drop the characteristics of northbound APIs from the left onto any position on the right. Not all characteristics are used.
Image 200-301_958Q.png related to the Cisco 200-301 Exam
Image 200-301_958R.png related to the Cisco 200-301 Exam

Question 959
Which benefit does Cisco DNA Center provide over traditional campus management?
A. Cisco DNA Center automates HTTPS for secure web access, and traditional campus management uses HTTP.
B. Cisco DNA Center leverages SNMPv3 for encrypted management, and traditional campus management uses SNMPv2.
C. Cisco DNA Center leverages APIs, and traditional campus management requires manual data gathering.
D. Cisco DNA Center automates SSH access for encrypted entry, and SSH is absent from traditional campus management.

Question 960
How does Chef configuration management enforce a required device configuration?
A. The Chef Infra Server uses its configured cookbook to push the required configuration to the remote device requesting updates.
B. The installed agent on the device connects to the Chef Infra Server and pulls its required configuration from the cookbook.
C. The Chef Infra Server uses its configured cookbook to alert each remote device when it is time for the device to pull a new configuration.
D. The installed agent on the device queries the Chef Infra Server and the server responds by pushing the configuration from the cookbook.



Premium Version