Exam Prep Questions


Question 1

What is the default port CiscoWorks uses on the Web interface?

  • A. 1741

  • B. 80

  • C. 4117

  • D. 443

A1:

Answer A is correct. The default port for CiscoWorks is 1741. Answer B is incorrect because port 80 is the default port for a Web server, not the port for CiscoWorks' Web interface. Answer C is incorrect because this is an open port for any applications and it is not used for CiscoWorks. Answer D is incorrect because port 443 is the default for HTTPS secure communications.

Question 2

What is FWSM?

  • A. A CiscoWorks software module for switches

  • B. A CiscoWorks software backup utility

  • C. A firewall hardware module for the Catalyst 6500

  • D. A firewall hardware module for the Catalyst 1900

A2:

Answer C is correct. The Cisco Firewall Services Module (FWSM) is a PIX firewall-based module for the Catalyst 6500 Switch. Answers A and B are incorrect because FWSM is a hardware module ”not a software module or a backup utility for CiscoWorks. Answer D is incorrect because it is a module for the Catalyst 6500, not the smaller 1900 series.

Question 3

When using the PIX MC product, which tab would you use to create a group in which to place your PIX configuration?

  • A. Admin tab

  • B. Clock tab

  • C. Devices tab

  • D. Group tab

A3:

Answer C is correct. The Devices tab is used to create groups on the PIX MC Web interface. The Devices tab is also used to add and delete devices in the PIX MC system. Answer A is incorrect because the Admin tab is used to enable workflow and general system configurations. Answers B and D are incorrect because these tabs do not actually exist.

Question 4

On the PIX MC, what does a mandatory access rule do?

  • A. Provides a conduit list for the firewall

  • B. Provides an access rule that will be used first

  • C. Provides a mandatory device to the system

  • D. Provides a mandatory permission for administrators

A4:

Answer B is correct. The mandatory access rules are attached to groups in the PIX MC and are used as mandatory settings that all managed devices receive. Therefore, it takes priority over the access rules, meaning it will be used first. Answer A is incorrect because it is not used for conduit lists ”access rules are translated into access lists. Answer C is incorrect because mandatory access rules are rules on devices in the system. Answer D is incorrect because mandatory access rules do not provide permissions to administrators; they are used to provide control to devices.

Question 5

Default access rules take precedence over mandatory access rules. (True or False)

  • A. True

  • B. False

A5:

Answer B is correct. Mandatory access rules always take priority over device or default access rules. Therefore, answer A is incorrect.

Question 6

What is the default port for the Cisco Auto Update Server?

  • A. 80

  • B. 1741

  • C. 443

  • D. 8080

A6:

Answer C is correct. The default port the Auto Update Server uses is port 443. Answers A and D are incorrect because they are just normal Web server ports, not the AUS port. Answer B is incorrect because port 1741 is the default port used by CiscoWorks, not the AUS.

Question 7

Which of the following is a type of access rule used in the PIX MC product? (Select two.)

  • A. Global

  • B. Mandatory

  • C. Firewall

  • D. Default

A7:

Answers B and D are correct. The three types of access rules on the PIX MC product are mandatory, default, and device access rules. Answers A and C are incorrect because they are not access rules that can be used on the PIX MC product.

Question 8

Which of the following can be downloaded using the Auto Update Server? (Select three.)

  • A. Configuration files

  • B. Software images

  • C. PDM images

  • D. VPN configuration and activation keys only

A8:

Answers A, B, and C are correct. The AUS can download three types of files: configuration files, software images, and PDM images. Answer D is incorrect because the AUS does not download only VPN configuration settings or activation keys. It downloads the show configuration file.

Question 9

Which default group is installed on the PIX MC?

  • A. Device group

  • B. Firewall group

  • C. Global group

  • D. Office group

A9:

Answer C is correct. By default, a group called Global is created as the highest-level group. All other subgroups are created below this group. Remember that groups enable you to place devices with similar attributes together. Answers A, B, and D are incorrect because these groups are not created by default and must be manually created.

Question 10

Does PIX MC provide auto updated services for the PIX series firewalls? (True or False.)

  • A. True

  • B. False

A10:

Answer B is correct. The CiscoWorks Management Center for Firewall (PIX MC) provides configuration creation files for firewalls but does not provide auto updated features. The CiscoWorks Auto Update Server (AUS) product provides auto update features. Answer A is incorrect because B is the correct answer.




CSPFA Exam Cram 2 (Exam 642-521)
CCSP CSPFA Exam Cram 2 (Exam Cram 642-521)
ISBN: 0789730235
EAN: 2147483647
Year: 2003
Pages: 218

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net