210-260 Dumps 210-260 Exam Questions 210-260 New Questions 210-260 PDF 210-260 VCE Cisco

[PDF&VCE] Lead2pass Cisco 210-260 Exam Dumps Free Download (121-130)

2016 September Cisco Official New Released 210-260 Dumps in Lead2pass.com!

100% Free Download! 100% Pass Guaranteed!

Lead2pass 210-260 braindumps including the exam questions and the answer, completed by our senior IT lecturers and the Cisco product experts, include the current newest 210-260 exam questions.

Following questions and answers are all new published by Cisco Official Exam Center: http://www.lead2pass.com/210-260.html

QUESTION 121
Which statement correctly describes the function of a private VLAN?

A.    A private VLAN partitions the Layer 2 broadcast domain of a VLAN into subdomains
B.    A private VLAN partitions the Layer 3 broadcast domain of a VLAN into subdomains
C.    A private VLAN enables the creation of multiple VLANs using one broadcast domain
D.    A private VLAN combines the Layer 2 broadcast domains of many VLANs into one major
broadcast domain

Answer: A

QUESTION 122
Which Cisco feature can help mitigate spoofing attacks by verifying symmetry of the traffic path?

A.    Unidirectional Link Detection
B.    Unicast Reverse Path Forwarding
C.    TrustSec
D.    IP Source Guard

Answer: B

QUESTION 123
What is the most common Cisco Discovery Protocol version 1 attack?

A.    Denial of Service
B.    MAC-address spoofing
C.    CAM-table overflow
D.    VLAN hopping

Answer: A

QUESTION 124
What is the Cisco preferred countermeasure to mitigate CAM overflows?

A.    Port security
B.    Dynamic port security
C.    IP source guard
D.    Root guard

Answer: B

QUESTION 125
When a switch has multiple links connected to a downstream switch, what is the first step that STP takes to prevent loops?

A.    STP elects the root bridge
B.    STP selects the root port
C.    STP selects the designated port
D.    STP blocks one of the ports

Answer: A

QUESTION 126
Which countermeasures can mitigate ARP spoofing attacks? (Choose two.)

A.    Port security
B.    DHCP snooping
C.    IP source guard
D.    Dynamic ARP inspection

Answer: BD

QUESTION 127
Which of the following statements about access lists are true? (Choose three.)

A.    Extended access lists should be placed as near as possible to the destination
B.    Extended access lists should be placed as near as possible to the source
C.    Standard access lists should be placed as near as possible to the destination
D.    Standard access lists should be placed as near as possible to the source
E.    Standard access lists filter on the source address
F.    Standard access lists filter on the destination address

Answer: BCE

QUESTION 128
In which stage of an attack does the attacker discover devices on a target network?

A.    Reconnaissance
B.    Covering tracks
C.    Gaining access
D.    Maintaining access

Answer: A

QUESTION 129
Which type of security control is defense in depth?

A.    Threat mitigation
B.    Risk analysis
C.    Botnet mitigation
D.    Overt and covert channels

Answer: A

QUESTION 130
On which Cisco Configuration Professional screen do you enable AAA?

A.    AAA Summary
B.    AAA Servers and Groups
C.    Authentication Policies
D.    Authorization Policies

Answer: A

If you use Lead2pass braindump as your 210-260 exam prepare material, we guarantee your success in the first attempt. Lead2pass 210-260 dump provides you everything you will need to take your 210-260 Exam.

210-260 new questions on Google Drive: https://drive.google.com/open?id=0B3Syig5i8gpDLWhBVC0zekJKUUU

2016 Cisco 210-260 exam dumps (All 193 Q&As) from Lead2pass:

http://www.lead2pass.com/210-260.html [100% Exam Pass Guaranteed]