PrepAway - Latest Free Exam Questions & Answers

Category: 642-515 (v.1)

Exam 642-515: Securing Networks with ASA Advanced (update September 17th, 2015)

Which two group policy features will require authentication, even if a username and password are configured on

Cisco ASA 5505 Adaptive Security Appliance is designed for providing high-performance security
services. Study the following exhibit carefully. You are asked to configure a Cisco ASA 5505
Adaptive Security Appliance as an Easy VPN hardware client. When the telecommuter using the
ASA 5505 Adaptive Security Appliance for remote access first tries to connect to resources on the
corporate network, he is prompted for authentication. Which two group policy features will require
authentication, even if a username and password are configured on the Easy VPN hardware
client? (Select two.)

which two interfaces would application of the service policy for the AIP-SSM be most effective while causing t

Study the following exhibit carefully. You work as the network administrator of a corporate Cisco
ASA security appliance with a Cisco ASA AIP-SSM. You are asked to use the AIP-SSM to protect
corporate DMZ web servers. The AIP-SSM has been configured, and a service policy has been
configured to identify the traffic to be passed to the AIP-SSM.
On which two interfaces would application of the service policy for the AIP-SSM be most effective
while causing the least amount of impact to Cisco ASA security appliance performance? (Choose
two.)

How will this configuration affect your next ASDM connection to this Cisco ASA security appliance?

You work as a network administrator for your company. Study the exhibit carefully. ASDM is short
for Adaptive Security Device Manager. You are responsible for multiple remote Cisco ASA security
appliances administered through Cisco ASDM. Recently, you have been tasked to configure one
of these Cisco ASA security appliances for SSL VPNs and are requiring a client certificate, as
shown. How will this configuration affect your next ASDM connection to this Cisco ASA security
appliance?

which VLAN tagging protocol will the Cisco ASA security appliance use to communicate with this switch?

You are a new employee of your company. Recently, you have been tasked to configure Cisco
ASA security appliance for multiple VLANs that use one physical interface. The switch to which the
physical Cisco ASA security appliance interface is connected should be configured for the
appropriate VLAN tagging protocol. In order to achieve this goal, which VLAN tagging protocol will
the Cisco ASA security appliance use to communicate with this switch?

Where did your Easy VPN hardware client get this backup server?

Cisco ASA 5500 Series Adaptive Security Appliances are easy-to-deploy solutions that integrate
world-class firewall, Unified Communications (voice/video) security, SSL and IPsec VPN, intrusion
prevention (IPS), and content security services in a flexible, modular product family. You are
asked to configure a Cisco ASA 5505 Adaptive Security Appliance as an Easy VPN hardware
client. In the process of configuration, you defined a list of backup servers for the security
appliance to use. After several hours of being connected to the primary VPN server, the security
appliance fails. You notice that your Easy VPN hardware client has now connected to a backup
server that is not defined within the configuration of the client. Where did your Easy VPN hardware
client get this backup server?


Page 2 of 912345...Last »