350-701 Exam PDF [2024] Tests Free Updated Today with Correct 630 Questions [Q241-Q262]

Share

350-701 Exam PDF [2024] Tests Free Updated Today with Correct 630 Questions

Cisco 350-701 Exam Preparation Guide and PDF Download

NEW QUESTION # 241
Drag and drop the NetFlow export formats from the left onto the descriptions on the right.

Answer:

Explanation:


NEW QUESTION # 242
Drag and drop the VPN functions from the left onto the description on the right.

Answer:

Explanation:

Explanation


NEW QUESTION # 243
What is the difference between deceptive phishing and spear phishing?

  • A. A spear phishing campaign is aimed at a specific person versus a group of people.
  • B. Deceptive phishing is an attacked aimed at a specific user in the organization who holds a C-level role.
  • C. Spear phishing is when the attack is aimed at the C-level executives of an organization.
  • D. Deceptive phishing hijacks and manipulates the DNS server of the victim and redirects the user to a false webpage.

Answer: A


NEW QUESTION # 244
Which MDM configuration provides scalability?

  • A. enabling use of device features such as camera use
  • B. pushing WPA2-Enterprise settings automatically to devices
  • C. automatic device classification with level 7 fingerprinting
  • D. BYOD support without extra appliance or licenses

Answer: D


NEW QUESTION # 245
What are two features of NetFlow flow monitoring? (Choose two)

  • A. Does not required packet sampling on interfaces
  • B. Copies all ingress flow information to an interface
  • C. Include the flow record and the flow importer
  • D. Can be used to track multicast, MPLS, or bridged traffic
  • E. Can track ingress and egress information

Answer: D,E

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/netflow/configuration/15-mt/nf-15-mt-book/cfgmpls-netflow.


NEW QUESTION # 246
What is the process of performing automated static and dynamic analysis of files against preloaded behavioral indicators for threat analysis?

  • A. deep visibility scan
  • B. advanced scanning
  • C. advanced sandboxing
  • D. point-in-time checks

Answer: C


NEW QUESTION # 247
What provides the ability to program and monitor networks from somewhere other than the DNAC GUI?

  • A. ASDM
  • B. desktop client
  • C. NetFlow
  • D. API

Answer: D

Explanation:
The Cisco DNA Center API provides the ability to program and monitor networks from somewhere other than the DNAC GUI. The API is a set of RESTful web services that allow users to interact with Cisco DNA Center programmatically. The API can be used to automate tasks, integrate with third-party applications, or create custom applications. The API exposes the same functionality as the DNAC GUI, such as design, provision, policy, assurance, and platform1. The API also provides documentation, examples, and testing tools for each API call1. References :=
* Cisco DNA Center User Guide, Release 2.3.3
* Cisco DNA Center User Guide, Release 2.2.2
* DNAC Tour Part 1: Introduction to Cisco DNA Center
* Cisco DNA Center Platform User Guide, Release 2.2.2


NEW QUESTION # 248
Which exfiltration method does an attacker use to hide and encode data inside DNS requests and queries?

  • A. DNS tunneling
  • B. DNSCrypt
  • C. DNS security
  • D. DNSSEC

Answer: A

Explanation:
ExplanationDNS Tunneling is a method of cyber attack that encodes the data of other programs or protocols in DNSqueries and responses. DNS tunneling often includes data payloads that can be added to an attacked DNSserver and used to control a remote server and applications.


NEW QUESTION # 249
Drag and drop the capabilities from the left onto the correct technologies on the right.

Answer:

Explanation:

Explanation


NEW QUESTION # 250
Which technology reduces data loss by identifying sensitive information stored in public computing environments?

  • A. Cisco Cloudlock
  • B. Cisco HyperFlex
  • C. Cisco SDA
  • D. Cisco Firepower

Answer: A


NEW QUESTION # 251
What is the result of running the crypto isakmp key ciscXXXXXXXX address 172.16.0.0 command?

  • A. secures all the certificates in the IKE exchange by using the key ciscXXXXXXXX
  • B. authenticates the IKEv1 peers in the 172.16.0.0/16 range by using the key ciscXXXXXXXX
  • C. authenticates the IKEv2 peers in the 172.16.0.0/16 range by using the key ciscXXXXXXXX
  • D. authenticates the IP address of the 172.16.0.0/32 peer by using the key ciscXXXXXXXX

Answer: B

Explanation:
Configure a Crypto ISAKMP Key
In order to configure a preshared authentication key, enter the crypto isakmp key command in global configuration mode:
crypto isakmp key cisco123 address 172.16.1.1
https://community.cisco.com/t5/vpn/isakmp-with-0-0-0-0-dmvpn/td-p/4312380 It is a bad practice but it is valid. 172.16.0.0/16 the full range will be accepted as possible PEER
https://www.examtopics.com/discussions/cisco/view/46191-exam-350-701-topic-1-question-71-discussion/#:~:text=Command%20reference%20is%20not%20decisive,172.16.1.128%20cisco123%0ACSR%2D1(config)%23 Testing without a netmask shows that command interpretation has a preference for /16 and /24. CSR-1(config)#crypto isakmp key cisco123 address 172.16.0.0 CSR-1(config)#do show crypto isakmp key | i cisco default 172.16.0.0 [255.255.0.0] cisco123 CSR-1(config)#no crypto isakmp key cisco123 address 172.16.0.0 CSR-1(config)#crypto isakmp key cisco123 address 172.16.1.0 CSR-1(config)#do show crypto isakmp key | i cisco default 172.16.1.0 [255.255.255.0] cisco123 CSR-1(config)#no crypto isakmp key cisco123 address 172.16.1.0 CSR-1(config)#crypto isakmp key cisco123 address 172.16.1.128 CSR-1(config)#do show crypto isakmp key | i cisco default 172.16.1.128 cisco123 CSR-1(config)#


NEW QUESTION # 252
Drag and drop the solutions from the left onto the solution's benefits on the right.

Answer:

Explanation:


NEW QUESTION # 253
In which two ways does Easy Connect help control network access when used with Casco TrustSec? Choose two.)

  • A. It allows multiple security products to share information and work together to enhance security posture in the network.
  • B. It integrates with third-party products to provide better visibility throughout the network.
  • C. It creates a dashboard in Cisco ISE that provides full visibility of all connected endpoints.
  • D. It allows for managed endpoints that authenticate to AD to be mapped to Security Groups (PassiveID).
  • E. It allows for the assignment of Security Group Tags and does not require 802.1x to be configured on the switch or the endpoint.

Answer: D,E

Explanation:
Explanation
Easy Connect simplifies network access control and segmentation by allowing the assignment of Security Group Tags to endpoints without requiring 802.1X on those endpoints, whether using wired or wireless connectivity.
Reference:
easy-connect-configuration-guide.pdf


NEW QUESTION # 254
In which form of attack is alternate encoding, such as hexadecimal representation, most often observed?

  • A. cross-site scripting
  • B. distributed denial of service
  • C. rootkit exploit
  • D. Smurf

Answer: A

Explanation:
Explanation
Cross site scripting (also known as XSS) occurs when a web application gathers malicious data from a user. The data is usually gathered in the form of a hyperlink which contains malicious content within it. The user will most likely click on this link from another website, instant message, or simply just reading a web board or email message.
Usually the attacker will encode the malicious portion of the link to the site in HEX (or other encoding methods) so the request is less suspicious looking to the user when clicked on.
For example the code below is written in hex: <a
href=javascript:alert&#
x28'XSS')>Click Here</a>
is equivalent to:
<a href=javascript:alert('XSS')>Click Here</a>
Note: In the format "&#xhhhh", hhhh is the code point in hexadecimal form.


NEW QUESTION # 255
A network administrator needs to find out what assets currently exist on the network. Third-party systems need to be able to feed host data into Cisco Firepower. What must be configured to accomplish this?

  • A. a Network Analysis policy to receive NetFlow data from the host
    You can configure discovery rules to tailor the discovery of host and application data to your needs.
    The Firepower System can use data from NetFlow exporters to generate connection and discovery events, and to add host and application data to the network map.
    A network analysis policy governs how traffic is decoded and preprocessed so it can be further evaluated, especially for anomalous traffic that might signal an intrusion attempt
  • B. a Threat Intelligence policy to download the data from the host
  • C. a File Analysis policy to send file data into Cisco Firepower
  • D. a Network Discovery policy to receive data from the host

Answer: D


NEW QUESTION # 256
A network administrator is configuring a switch to use Cisco ISE for 802.1X. An endpoint is failing authentication and is unable to access the network. Where should the administrator begin troubleshooting to verify the authentication details?

  • A. RADIUS Live Logs
  • B. Context Visibility
  • C. Accounting Reports
  • D. Adaptive Network Control Policy List

Answer: A

Explanation:
How To Troubleshoot ISE Failed Authentications & Authorizations
Check the ISE Live Logs
Login to the primary ISE Policy Administration Node (PAN).
Go to Operations > RADIUS > Live Logs
(Optional) If the event is not present in the RADIUS Live Logs, go to Operations > Reports > Reports > Endpoints and Users > RADIUS Authentications Check for Any Failed Authentication Attempts in the Log


NEW QUESTION # 257
Which solution stops unauthorized access to the system if a user's password is compromised?

  • A. AMP
  • B. VPN
  • C. SSL
  • D. MFA

Answer: D

Explanation:
MFA stands for multi-factor authentication, which is a security method that requires users to provide two or more pieces of evidence to verify their identity before accessing a system. MFA can prevent unauthorized access to the system if a user's password is compromised, because the attacker would also need to obtain the other factors, such as a one-time code, a biometric scan, or a physical token. MFA can be implemented using various technologies, such as SMS, email, phone call, mobile app, or hardware device. According to Microsoft, adopting MFA can prevent approximately 99.9% of compromised user accounts, significantly bolstering security measures against unauthorized access12. References:
* Implementing and Operating Cisco Security Core Technologies (SCOR) v1.0, Module 6: Secure Network Access and Visibility, Lesson 6.1: Implementing Secure Network Access
* 350-701 SCOR - Cisco, Exam Topics, 6.1 Implement secure network access
* What Is Unauthorized Access? 5 Key Prevention Best Practices - Cynet, Best Practice #3: Implement multi-factor authentication
* Unauthorized Access: Top 8 Practices for Detecting and Responding - Ekran System, Best Practice #3:
Use multi-factor authentication


NEW QUESTION # 258
Which Cisco solution does Cisco Umbrella integrate with to determine if a URL is malicious?

  • A. AMP
  • B. AnyConnect
  • C. Talos
  • D. DynDNS

Answer: C

Explanation:
Explanation
Explanation
When Umbrella receives a DNS request, it uses intelligence to determine if the request is safe, malicious or risky - meaning the domain contains both malicious and legitimate content. Safe and malicious requests are routed as usual or blocked, respectively. Risky requests are routed to our cloud-based proxy for deeper inspection. The Umbrella proxy uses Cisco Talos web reputation and other third-party feeds to determine if a URL is malicious.


NEW QUESTION # 259
An organization wants to improve its cybersecurity processes and to add intelligence to its data The organization wants to utilize the most current intelligence data for URL filtering, reputations, and vulnerability information that can be integrated with the Cisco FTD and Cisco WSA What must be done to accomplish these objectives?

  • A. Create an automated download of the Internet Storm Center intelligence feed into the Cisco FTD and Cisco WSA databases to tie to the dynamic access control policies.
  • B. Download the threat intelligence feed from the IETF and import it into the Cisco FTD and Cisco WSA databases
  • C. Create a Cisco pxGrid connection to NIST to import this information into the security products for policy use
  • D. Configure the integrations with Talos Intelligence to take advantage of the threat intelligence that it provides.

Answer: D


NEW QUESTION # 260
Drag and drop the VPN functions from the left onto the description on the right.

Answer:

Explanation:


NEW QUESTION # 261
What can be integrated with Cisco Threat Intelligence Director to provide information about security threats, which allows the SOC to proactively automate responses to those threats?

  • A. External Threat Feeds
  • B. Cisco Stealthwatch
  • C. Cisco Threat Grid
  • D. Cisco Umbrella

Answer: C

Explanation:
Reference:
https://blogs.cisco.com/developer/automate-threat-intelligence-using-cisco-threat-intelligencedirector


NEW QUESTION # 262
......

Verified & Correct 350-701 Practice Test Reliable Source Apr 05, 2024 Updated: https://www.practicetorrent.com/350-701-practice-exam-torrent.html

Free Cisco 350-701 Exam Files Downloaded Instantly: https://drive.google.com/open?id=17pfM_I8bQ3dZRnui2bF3RYV69whEVlzM