1: | What are the three layers of the SAFE Enterprise blueprint?- Enterprise campus
- Service provider edge
- Enterprise building layer
- Enterprise core
- Enterprise edge layer
- Internet layer
|
2: | Which modules compose the enterprise campus layer?- Management module
- Enterprise Edge Distribution module
- WAN module
- Server module
- Building Distribution module
- Core module
- E-Commerce module
- Building module
|
3: | Which modules compose the enterprise edge layer?- Management module
- WAN module
- Server module
- E-Commerce module
- VPN and Remote Access module
- Corporate Internet module
|
4: | In the Management module of the enterprise campus, the Cisco IOS device provides which of the following functions?- Provides stateful packet filtering from the rest of the enterprise blueprint modules
- Provides IPSec termination for management
- Performs network intrusion detection
- Enforces traffic shaping and policing
- Provides user authentication services
|
5: | What is the role of the system administration host in the Management module?- Aggregates log information for the firewall and the NIDS devices
- Provides SNMP management and monitoring of network devices
- Provides for configuration, software, and content changes on network devices, and IPS on other network-management hosts
- Provides one-time, two-factor authentication services to the network devices
- Provides alarm aggregation and analysis for all network IDS appliances throughout the Campus and Corporate Internet modules
|
6: | What is the purpose of the Server module in the enterprise campus design?- The Server module provides access to end-user workstations.
- The Server module provides applications services to end users and other systems within the blueprint.
- The Server module provides quick routing and switching of traffic within the campus.
- The Server module provides access to network-management applications within the campus.
|
7: | What is the function of the Layer 3 switches in the Building Distribution module?- To provide traffic segmentation from the enterprise edge to the core
- To route and switch traffic as quickly as possible
- To provide for Layer 2 switch aggregation before the core, along with services such as filtering, QoS, CAR, and VLAN definition
- To facilitate the use of IDS in the module
- None of these answers is correct.
|
8: | Which of the following key devices are present in the Building module?- Layer 3 switch
- E-mail server
- IP phones
- Firewall
- Intrusion-detection appliance
- End-user workstations
- Web server
- Layer 2 switch
|
9: | What is the purpose of the access-control server in the Management module?- Provides for password authentication using a one-time, one-factor authentication service
- Authorizes users to execute commands using Kerberos authentication
- Provides access to the console port of other network devices
- Provides one-time, two-factor authentication services to the network devices
|
10: | What is the purpose of the Layer 3 switches in the Server module?- The switches in the module are not Layer 3 switches; they are Layer 2 switches.
- No special purpose is assigned to the Layer 3 switches in this module.
- The Layer 3 switches provide services such as traffic filtering, QoS, VLANs, and private VLANs to the servers. They also provide for traffic inspection through the use of integrated NIDS.
- The Layer 3 switches provide firewall services through the use of an integrated Firewall Service module.
|
11: | The E-Commerce module in the enterprise edge can be subdivided into three layers. What are they?- Internet layer
- Web layer
- Firewall layer
- Middle layer
- Internal layer
- Application servers layer
- Database layer
|
12: | Which of the following is a factor in determining whether a WAN module is needed?- When there is an unjustifiable cost factor of migrating to IPSec VPNs
- Whenever management feels that WANs are justified
- When QoS requirements cannot be met through the use of IPSec VPNs
- When private networks are needed for security reasons
- When legacy WAN connections exist
|
13: | What is the purpose of the firewalls in the E-Commerce module?- To provide traffic negotiation and control among the various layers of the e-commerce design
- To terminate VPNs coming into the E-Commerce module
- To provide inbound traffic enforcement only
- To provide network-level protection of resources through stateful filtering of traffic
- To terminate SSL connections coming into the E-Commerce module
|
14: | Which IPSec parameters are used in the VPN and Remote Access module of the SAFE Enterprise blueprint design?- AH, 3DES, SHA1-HMAC
- ESP, DES, SHA1-HMAC
- AH, AES-256, MD5-HMAC
- AH, AES-192, SHA1-HMAC
- ESP, 3DES, SHA1-HMAC
- ESP, AES-128, MD5-HMAC
- AH, NULL, SHA1-HMAC
|
15: | Which of the following are some of the functions of the firewalls in the Corporate Internet module?- Layer 4 to Layer 7 traffic inspection
- Stateful filtering of traffic
- Remote IPSec tunnel termination for users and remote sites
- Intrusion detection
- Caching of user credentials
- Differentiated access for remote-access users
|