Datasheet

9E0 - 100
Leading the way in IT testing and certification tools, www.testking.com
- 30 -
after examining the traffic feed and adjusting the feed to the sensor so it is within the rating
for the specific appliance
http://www.cisco.com/en/US/partner/products/sw/secursw/ps2113/prod_release_note09186a0
0801a00ac.html
QUESTION NO: 55
Which PIX Command will allow the PIX Firewall to authenticate its certification
authority (CA) by obtaining the CA’s self-signed certificate, which contains the CA’s
public key?
A. ca lock /all
B. show auth
C. Set ca auth
D. ca authenticate
Answer: D
Explanation: The ca authenticate command allows the PIX Firewall to authenticate its
certification authority (CA) by obtaining the CA's self-signed certificate, which contains the
CA's public key.
Reference: Cisco PIX Firewall Command Reference, Version 6.3
QUESTION NO: 56
What port would you be concerned about if you were worried bout DNS Zone Transfers
while protecting your infrastructure with a PIX?
A. UDP 12
B. UDP 53
C. TCP 62
D. UDP 45
Answer: B
Explanation:
Triggers on normal DNS zone transfers, in which the source port is 53.
Reference: Cisco IOS Intrusion Detection System Signature List
QUESTION NO: 57
If you wanted to show the running configuration of a PIX firewall, what command
would you use?
A. Show Running-Config
B. Write terminal
C. Show Config
D. Show pix