Question 81
A network engineer has entered the snmp-server user andy myv3 auth sha cisco priv aes 256 cisc0383320506 command and needs to send SNMP information to a host at Which command achieves this goal?
A. snmp-server host inside snmpv3 andy
B. snmp-server host inside version 3 myv3
C. snmp-server host inside snmpv3 myv3
D. snmp-server host inside version 3 andy

Question 82
An engineer wants to generate NetFlow records on traffic traversing the Cisco ASA. Which Cisco ASA command must be used?
A. flow exporter
B. ip flow-export destination 2055
C. flow-export destination inside 2055
D. ip flow monitor input

Question 83
Which two tasks allow NetFlow on a Cisco ASA 5500 Series firewall? (Choose two.)
A. Define a NetFlow collector by using the flow-export command
B. Create a class map to match interesting traffic
C. Create an ACL to allow UDP traffic on port 9996
D. Enable NetFlow Version 9
E. Apply NetFlow Exporter to the outside interface in the inbound direction

Question 84
Refer to the exhibit. A network administrator configures command authorization for the admin5 user. What is the admin5 user able to do on HQ_Router after this configuration?
Image 350-701_84Q.png related to the Cisco 350-701 Exam
A. set the IP address of an interface
B. add subinterfaces
C. complete no configurations Most Voted
D. complete all configurations

Question 85
A network engineer is configuring DMVPN and entered the crypto isakmp key cisc0383320506 address command on host A. The tunnel is not being established to host B. What action is needed to authenticate the VPN?
A. Change the password on host A to the default password
B. Enter the command with a different password on host B
C. Enter the same command on host B
D. Change isakmp to ikev2 in the command on host A

Question 86
How many interfaces per bridge group does an ASA bridge group deployment support?
A. up to 16
B. up to 2
C. up to 4
D. up to 8

Question 87
A network administrator configures Dynamic ARP Inspection on a switch. After Dynamic ARP Inspection is applied, all users on that switch are unable to communicate with any destination. The network administrator checks the Interface status of all interfaces, and there is no err-disabled interface. What is causing this problem?
A. DHCP snooping has not been enabled on all VLANs Most Voted
B. Dynamic ARP inspection has not been enabled on all VLANs
C. The ip arp inspection limit command is applied on all interfaces and is blocking the traffic of all users
D. The no ip arp inspection trust command is applied on all user host interfaces

Question 88
What is a difference between FlexVPN and DMVPN?
A. DMVPN uses only IKEv1. FlexVPN uses only IKEv2
B. FlexVPN uses IKEv2. DMVPN uses IKEv1 or IKEv2
C. DMVPN uses IKEv1 or IKEv2. FlexVPN only uses IKEv1
D. FlexVPN uses IKEv1 or IKEv2. DMVPN uses only IKEv2

Question 89
DRAG DROP -Drag and drop the capabilities of Cisco Firepower versus Cisco AMP from the left into the appropriate category on the right.Select and Place:
Image 350-701_89Q.png related to the Cisco 350-701 Exam
Image 350-701_89R.png related to the Cisco 350-701 Exam

Question 90
An engineer needs behavioral analysis to detect malicious activity on the hosts, and is configuring the organization's public cloud to send telemetry using the cloud provider's mechanisms to a security device. Which mechanism should the engineer configure to accomplish this goal?
A. sFlow
B. NetFlow
C. mirror port
D. VPC flow logs

