Datasheet

9E0 - 100
Leading the way in IT testing and certification tools, www.testking.com
- 6 -
What command could you use on your PIX Firewall to view the current names and
security levels for each interface?
A. Show ifconfig
B. Show nameif
C. Show all
D. Ifconfig /all
Answer: B
Explanation:
Use the show nameif command to determine which interface is being described in a message
containing this variable.
Reference: Cisco PIX Firewall Software
Introduction
QUESTION NO: 6
Which TCP session reassembly configuration parameter enforces that a valid TCP
session be establish before the Cisco IDS Sensor’s sensing engine analyzes the traffic
associated with the session?
A. TCP open establish timeout
B. TCP embryonic timeout
C. TCP closed timeout
D. TCP three way handshake
E. TCP sequence timeout
Answer: D
Explanation:
The goal of defining these reassembly settings is to ensure that the sensor does not allocate all
of its resources to datagrams that cannot be completely reconstructed, either because the
sensor missed some frame transmissions or because an attack is generating random
fragmented datagrams.
To specify that the sensor track only sessions for which the three-way handshake is
completed, select the TCP Three Way Handshake check box.
Reference: Tuning Sensor Configurations
QUESTION NO: 7
What can intrusion detection systems detect? (Choose three)
A. Network misuse
B. Network uptime
C. Unauthorized network access
D. Network downtime
E. Network throughput