PrepAway - Latest Free Exam Questions & Answers

Category: 642-648

642-648-Deploying Cisco ASA VPN Solutions (VPN v2.0)

As the network engineer, where would you look for the problem?

The ABC Corporation is changing remote-user authentication from pre-shared keys to certificate-based authentication. For most employee authentication, its group membership (the employees)
governs corporate access. Certain management personnel need access to more confidential
servers. Access is based on the group and name, such as finance and level_2. When it is time to
pilot the new authentication policy, a finance manager is able to access the department-assigned
servers but cannot access the restricted servers.

As the network engineer, where would you look for the problem?

Exhibit:

com server?

A temporary worker must use clientless SSL VPN with an SSH plug-in, in order to access the
console of an internal corporate server, the projects.xyz.com server. For security reasons, the
network security auditor insists that the temporary user is restricted to the one internal corporate
server, 10.0.4.18. You are the network engineer who is responsible for the network access of the
temporary user.
What should you do to restrict SSH access to the one projects.xyz.com server?


Page 10 of 12« First...89101112