350-401 Security • Complete Question Bank
Complete 350-401 Security question bank — all 0 questions with answers and detailed explanations.
Drag a concept onto its matching description — or click a concept then click the description.
Original standard, slow convergence
Fast convergence, backward compatible
Multiple spanning trees per VLAN group
Cisco proprietary, per-VLAN STP
Cisco proprietary, per-VLAN RSTP
Refer to the exhibit. Switch# show ip dhcp snooping binding MacAddress IpAddress Lease(sec) Type VLAN Interface ------------------ --------------- ---------- ------------- ---- -------------------- 00:1A:2B:3C:4D:5E 192.168.1.10 86400 dhcp-snooping 10 GigabitEthernet0/1 00:1A:2B:3C:4D:5F 192.168.1.11 86400 dhcp-snooping 10 GigabitEthernet0/2 Switch# show ip dhcp snooping statistics Packets Processed by DHCP Snooping = 100 Packets Dropped Because = 5 MAC Address Mismatch = 3 Invalid Server Replies = 2
Refer to the exhibit. interface GigabitEthernet0/1 ip access-group ACL-IN in ip verify source port-security ! ip access-list extended ACL-IN permit tcp 10.0.0.0 0.255.255.255 any eq 80 permit tcp 10.0.0.0 0.255.255.255 any eq 443 deny ip any any
Drag or tap steps into the slots.
A network engineer is configuring Control Plane Policing (CoPP) on a Cisco IOS XE router to protect against excessive ARP traffic. The engineer applies the following policy:
policy-map COPP-POLICY
class ARP-CLASS
police 8000 conform-action transmit exceed-action drop
After applying the service-policy to the control-plane, the engineer notices that legitimate ARP requests are being dropped during peak hours. Which action should the engineer take to resolve this issue while maintaining protection?
A network engineer configures a Cisco IOS router to authenticate administrative SSH logins against a Cisco ISE server using TACACS+. After applying the configuration, a valid ISE user can log in but receives no privilege level and cannot enter privileged EXEC mode. The relevant configuration is:
aaa new-model aaa authentication login default group tacacs+ local aaa authorization exec default group tacacs+ local
tacacs server ISE address ipv4 10.10.10.50 key Cisco123
Which action most directly resolves the problem?
A network security engineer is configuring Control Plane Policing (CoPP) on a Cisco ASR 1000 router to protect the route processor from excessive traffic. The engineer wants to rate-limit SSH traffic to 100 kbps with a burst of 8000 bytes, and ensure that any traffic exceeding the rate is dropped. The engineer applies the following policy:
policy-map COPP-POLICY
class SSH-CLASS
police 100000 8000 exceed-action drop
After applying the service-policy to the control plane, the engineer notices that SSH sessions intermittently disconnect during large file transfers over SCP. What is the most likely cause?