www.PassGuide.com- Successful for Cisco Certification or Full Refund for you

Pass4sure 642-541 CSI 2.83

Filed under: Pass4sure Cisco — admin @ 11:58 pm September 26, 2008
passguide cisco

Cisco SAFE Implementation Exam

Retired
Exam Number: 642-541
Associated Certifications: CCSP
Duration: 90 minutes (60-70 questions)
Available Languages: English
Click Here to Register: Pearson VUE or Prometric
Exam Policies: Read current policies and requirements
Exam Tutorial: Review type of exam questions

Exam Description Exam Topics Recommended Training Additional Resources
Exam Description
The Cisco SAFE Implementation exam tests the knowledge and skills needed to use the principles and axioms presented in the SAFE SMR, Enterprise, IP Telephony and Wireless LAN White Papers, and to implement them on specific security devices. The primary focus is on the labs, which allows the students to build complete end-to-end security solutions using SAFE White Papers as the blueprint. The configuration and functionality of the following devices in a SAFE SMR network are described in detail: IOS routers, PIX Firewalls, VPN Concentrators, Cisco IDS Sensors, Cisco Security Agent and the Cisco VPN Client. Basic implementation of a SAFE wireless LAN is also covered.

The SAFE White Papers can be downloaded for free.

Exam Topics
The following information provides general guidelines for the content likely to be included on this exam. However, other related topics may also appear on any specific delivery of the exam.

Security Fundamentals
Need for network security
Components of a complete security policy
Primary network threats and attacks
Common attacks and recommended mitigation techniques
Security issues implicit in common management protocols

SAFE Blueprint Overview
SAFE Blueprint Overview
Design Fundamentals
SAFE Axioms

The Cisco Security Portfolio
Cisco Security Portfolio Overview
Secure Connectivity-Cisco VPN 3000 Concentrator and Cisco VPN Optimized IOS
Perimeter Security Firewalls-Cisco PIX Firewall and Cisco IOS Firewall
Intrusion Protection-IDS
Identity-CSACS
Security Management-VMS
Cisco AVVID

SAFE Small Network Design
Small Network Design Overview
Small Network Corporate Internet Module
Small Network Campus Module
Implementation-ISP Router
Implementation-Cisco IOS Firewall
Implementation-PIX Firewall
Implementation-CSA

SAFE Midsize Network Design
Midsize Network Design
Midsize Network Corporate Internet Module Design Guidelines
Midsize Network Campus Module
Midsize Network Campus Module Design Guidelines
Midsize Network WAN Module
Implementation-ISP Router and Edge Router
Implementation-Network IPS
Implementation-VPN 3000 Concentrator
Implementation-Layer 3 Switch

SAFE Remote Network Design
Remote-User Network Overview
Key Devices and Threat Mitigation
Software Client Option
Remote Site Firewall Option
VPN 3002 Hardware Client Option
Remote Site Router Option

SAFE Enterprise Network Design
Enterprise Network Design Overview
Enterprise Campus
Enterprise Network Edge

SAFE IP Telephony Design
IP Telephony Concepts, Caveats and Axioms
IP Telephony Product Portfolio
IP Telephony Design Considerations
IP Telephony Design for Small, Medium and Large Network

SAFE Wireless LAN Design
Wireless LAN Security Concepts, Caveats and Axioms
WLAN Security Extensions
Cisco WLAN Product Portfolio
WLAN Design Approach
Standard WLAN Design
WLAN Design for Small, Medium, Enterprise and Remote Network
WLAN Implementation

1.Drag Drop question

Drag and drop question. Drag the items to the proper locations.

Correct Answers:

2.Drag Drop question

Drag and drop question. Drag the items to the proper locations.

Correct Answers:

3.Which IDS guideline should be followed, according to SAFE SMR?

A: use UDP resets more often than shunning, because UDP traffic is more difficult to spoof

B: use TCP resets more often than shunning, because TCP traffic is more difficult to spoof

C: use TCP resets no longer than 15 minutes D: use UDP resets no longer than 15 minutes Correct Answers: B

4.LAB

Correct Answers:

5.As an alternative design in the SAFE SMR small network campus module, a small filtering router can be placed between the rest of the network and which devices?

A: Layer 2 switches

B: management stations

C: corporate users

D: routers

Correct Answers: B

6.How are password attacks mitigated in the SAFE SMR midsize network design corporate Internet module?

A: filtering at the ISP, edge router, and corporate firewall

B: RFC 2827 and 1918 filtering at ISP edge and midsize network edge router

C: e-mail content filtering, HIDS, and host-based virus scanning

D: OS and IDS detection

E: CAR at the ISP edge and TCP setup controls at the firewall

Correct Answers: D

7.Following termination of the VPN tunnel, what action is performed on remote user traffic in the SAFE SMR midsize network design corporate Internet module?
A: Traffic is sent through a Layer 2 switch. B: Traffic is sent through a Layer 3 switch. C: Traffic is sent through a firewall.
D: Traffic is sent through a router.

Correct Answers: C

8.What are the SAFE guidelines when routing information is exchanged with an outside routing domain? (Select two.) A:Use exterior gateway protocols only.
B:Use exterior gateway protocols that operate between routing domains and do not allow administrators to build and act on policies.
C:Use exterior gateway protocols because they allow administrators to build and act on policies rather than just on reachability information.
D:Do not use autonomous system path filters on every EBGP peering session in network. E:Use exterior gateway protocols or static routes
F:Make certain that your outside peer advertises your routes to other peers for maximum reachability

Correct Answers: A, C

9.Which two Cisco components encompass secure management? Choose two. A:Cisco VPN Concentrators
B:CiscoWorks

C:Cisco IDS Sensors D:Cisco PIX Firewalls E:Web Device Managers Correct Answers: B, E

10.When is personal firewall software recommended in the software access option in the SAFE SMR remote user design environment?
A: when the VPN tunnel is established

B: when the VPN tunnel is not established

C: when the ISP does not provide firewall protection

D: when firewall protection is provided via the corporate connection

Correct Answers: B

Free 642-541 Exams’s PDF Download
Free Testking offers free demo for 642-541 PDF(VPN and Security Cisco SAFE Implementation Exam (CSI)). You can check out the interface, question quality and usability of our practice exams . We are the only one site can offer demo for almost all VPN and Security Cisco SAFE Implementation Exam (CSI).

Recommended Training about 642-541 exam PDF
The following courses are the recommended training for 642-541 exam PDF.
642-541 Q & A with Explanations
642-541 Audio Exam
642-541 Study Guide
642-541 Preparation Lab

Exam Number/Code: 642-541
Exam Name: VPN and Security Cisco SAFE Implementation Exam (CSI)
VUE Code: 642-541
Questions Type: Single choice,
Question Numbers of Real-exam: 60-70 questions

“VPN and Security Cisco SAFE Implementation Exam (CSI)”, also known as 642-541 exam, is a Cisco certification.
Preparing for the 642-541 exam? Searching 642-541 Test Questions, 642-541 Practice Exam, 642-541 Dumps?

With the complete collection of questions and answers, Pass4sure has assembled to take you through 228 Q&As to your 642-541 Exam preparation. In the 642-541 exam resources, you will cover every field and category in VPN and Security helping to ready you for your successful Cisco Certification.

Questions and Answers : 228 Q&As
Updated: April 26th , 2008
Market Price: $119.99
Member Price: $89.99

Free Pass4sure 642-541 CSI
Interactive Testing Engine Included!
228 Questions
Updated : 09/18/2008
Price : $87.99 $79.99

Free download:pass4sure 642-541

Free download:testking 642-541 CSI

Bookmark and Share
PassGuide Braindumps: provides high quality Cisco exam practice questions and Training Materials.Hel you Pass Cisco Certifications passguide cisco exams

Download Free Latest Pass4sure P4S PassForsure Braindumps

  1. Free Pass4sure ccsp 642-542 2.83
  2. Free Pass4sure 642-524 SNAF 2.83
  3. Free New pass4sure cisco ccsp dumps 2.83
  4. Free Pass4sure 642-873 ARCH 2.93
  5. Free Pass4sure 642-972 DCASD 2.93
  6. Free Pass4sure 650-261 CUCBE 2.83
  7. Free Pass4sure 642-061 RSSSE 2.73
  8. Free Pass4sure 642-181 PRSDI 2.73
  9. Free Pass4sure 642-961 CDCNID 2.93
  10. Free Pass4sure 642-521 CSPFA 2.93

4 Comments »

RSS feed for comments on this post. TrackBack URL

Leave a comment