<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Cisco Certification  Exams &#38; Training Materials &#187; 642-825</title>
	<atom:link href="http://www.ciscoexams.org/category/642-825/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ciscoexams.org</link>
	<description>ccna,ccda,ccnp,ccdp,ccsp,ccvp,ccie,ccip,ccde,cse</description>
	<lastBuildDate>Mon, 11 Jan 2010 09:11:50 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>passguide cisco 642-825 v3.31</title>
		<link>http://www.ciscoexams.org/passguide-cisco-642-825-v3-31/</link>
		<comments>http://www.ciscoexams.org/passguide-cisco-642-825-v3-31/#comments</comments>
		<pubDate>Mon, 21 Dec 2009 06:13:21 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[ccnp]]></category>
		<category><![CDATA[PassGuide]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=1217</guid>
		<description><![CDATA[Download 642-825 exam notes immediately with the unlimited access plan from PassGuide. Our exclusive 642-825 (Implementing Secure Converged Wide Area Networks) exam tutorials are loaded with the authentic 642-825 study materials professionals need, in a handy easy to read and print 642-825 PDF. These are the same 642-825 exam questions you find in other 642-825 [...]]]></description>
			<content:encoded><![CDATA[<p>Download 642-825 exam notes immediately with the unlimited access plan from PassGuide. Our exclusive 642-825 (Implementing Secure Converged Wide Area Networks) exam tutorials are loaded with the authentic 642-825 study materials professionals need, in a handy easy to read and print 642-825 PDF. These are the same 642-825 exam questions you find in other 642-825 testing engines, with the exception that our 642-825 answers are verified accurate!</p>
<p>While we can&#8217;t provide 642-825 audio exams, you will find that each 642-825 study guide is a veritable 642-825 boot camp waiting to explode in your mind, bringing you the 642-825 exams questions and answers at a pace you can work with. Learn at your own pace and develop your very own 642-825 simulations knowing that all of the 642-825 test questions are real, and the 642-825 practice exam questions are 100% accurate. No other Cisco 642-825 course can provide the results ActualCerts does and has for thousands of professionals world wide.</p>
<p>With each Cisco 642-825 test, you also get unlimited access to all of our other PDF downloads for all the other vendors&#8217; exams. This is lifetime unlimited access, including future exams not yet released, as well as their updates. You are buying more than the 642-825 dumps of your dreams. And these are more than mere Cisco 642-825 brain dumps! Each and every 642-825 exam is a complete work of art guaranteeing you test success. If you fail to pass, at your request we will refund your money and cancel your account. We are committed to your 642-825 course and your 642-825 certification.<span id="more-1217"></span><br />
http://www.sendspace.com/file/uinud2<br />
http://uploading.com/files/cfd7fce2/free%2BPassGuide%2Bccnp%2B642-825%2BV3.31.zip/<br />
http://www.2shared.com/file/10128271/d2ba58fe/free_PassGuide_ccnp_642-825_V3.html</p>
<p>http://www.4shared.com/file/177826820/83213e2f/free_PassGuide_ccnp_642-825_V3.html<br />
http://rapidshare.com/files/323787081/free_PassGuide_ccnp_642-825_V3.31.zip.html</p>
<p>http://www.4shared.com/file/177826820/83213e2f/free_PassGuide_ccnp_642-825_V3.html</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/passguide-cisco-642-825-v3-31/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>642-825</title>
		<link>http://www.ciscoexams.org/642-825/</link>
		<comments>http://www.ciscoexams.org/642-825/#comments</comments>
		<pubDate>Thu, 05 Mar 2009 09:58:23 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=1044</guid>
		<description><![CDATA[Exam Number/Code: 642-825
Exam Name:ISCW &#8211; Implementing Secure Converged Wide Area Networks
VUE Code: 642-825
Exam Language(s): English
The Cisco certificates give you possibility to work in any country of the world because they are acknowledged in all countries equally. This 642-825 torrent certificate helps not only to improve your knowledge and skills, but it also helps your career, [...]]]></description>
			<content:encoded><![CDATA[<p>Exam Number/Code: 642-825<br />
Exam Name:ISCW &#8211; Implementing Secure Converged Wide Area Networks<br />
VUE Code: 642-825<br />
Exam Language(s): English</p>
<p>The <a href="http://www.ciscoexams.org">Cisco certificate</a>s give you possibility to work in any country of the world because they are acknowledged in all countries equally. This 642-825 torrent certificate helps not only to improve your knowledge and skills, but it also helps your career, gives a possibility for qualified usage of 642-825 exams products under different conditions. The majority of companies in the sphere of information technologies require the presence of Cisco exam for the work in the company, and that makes obtaining this Cisco certificate necessary. Many IT specialists were not able to obtain the Cisco certificate from the first attempt, which was the result of poor preparation for the examination, using preparatory <a href="http://www.ciscoexams.org/category/642-825/">642-825 study guide</a> of poor quality.<br />
642-825 Braindumps with Complete Answers, Purchase now!!!</p>
<p>Free Sample Printable PDF VCE Download: Click Me Free download:<br />
The Cisco Certification leader among the providers of Cisco Braindumps preparatory materials is 642-825 products such as Cisco Braindumps, 642-825 Study Guides, 642-825 Tutorial, 642-825 pdf Exam Questions with Answers, 642-825 Trainings, 642-825 Online Course and free PDF. It obtained its leadership and trust of the users from the very beginning of its work on the 642-825 vce training materials market. All the 642-825 Cisco aids have been created by people who are personally familiar with 642-825 exams and who know all the difficulties and popular mistakes made by those who take a Cisco test. The entire material is logically composed in such a way that everything becomes easy to understand for anyone. Many Cisco 642-825 Braindumps guides include audio and video material. It is really easy to acquire 642-825 Cisco exams becausy of great variety of methods of payment.</p>
<p>Search Help For Free 642-825 dumps<br />
Pass4sure p4s 642-825 Torrent<br />
testking tk 642-825 test Questons and Answers(Q &#038; As with Expert Explanations)<br />
actualtest 642-825 real exams</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/642-825/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>642-825 ISCW</title>
		<link>http://www.ciscoexams.org/642-825-iscw/</link>
		<comments>http://www.ciscoexams.org/642-825-iscw/#comments</comments>
		<pubDate>Fri, 10 Oct 2008 04:08:39 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[ccnp]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=911</guid>
		<description><![CDATA[Implementing Secure Converged Wide Area Networks 
    Exam Number:     642-825
Associated Certifications: CCNP  
Duration: 90 minutes
Available Languages: English
Click Here to Register: Pearson VUE 
Exam Policies: Read current policies and requirements
Exam Tutorial: Review type of exam questions 
Exam Description    Exam Topics    Recommended Training [...]]]></description>
			<content:encoded><![CDATA[<p>Implementing Secure Converged Wide Area Networks </p>
<p>    Exam Number:     642-825<br />
Associated Certifications: <a href="http://www.ccnp.cc">CCNP  </a><br />
Duration: 90 minutes<br />
Available Languages: English<br />
Click Here to Register: Pearson VUE <span id="more-911"></span><br />
Exam Policies: Read current policies and requirements<br />
Exam Tutorial: Review type of exam questions </p>
<p>Exam Description    Exam Topics    Recommended Training    Additional Resources<br />
Exam Description<br />
The Implementing Secure Converged Wide Area Networks (ISCW 642-825) is a qualifying exam for the Cisco Certified Network Professional CCNP®. The ISCW 642-825 exam will certify that the successful candidate has important knowledge and skills necessary to secure and expand the reach of an enterprise network to teleworkers and remote sites with focus on securing remote access and VPN client configuration. The exam covers topics on Cisco hierarchical network model as it pertains to the WAN, teleworker configuration and access, frame mode MPLS, site-to-site IPSEC VPN, Cisco EZVPN, strategies used to mitigate network attacks, Cisco device hardening and IOS firewall features. </p>
<p>Exam Topics<br />
The following information provides general guidelines for the content likely to be included on the exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes the guidelines below may change at any time without notice.</p>
<p>Implement basic teleworker services.<br />
Describe Cable (HFC) technologies.<br />
Describe xDSL technologies.<br />
Configure ADSL (i.e., PPPoE or PPPoA).<br />
Verify basic teleworker configurations. </p>
<p>Implement Frame-Mode MPLS.<br />
Describe the components and operation of Frame-Mode MPLS (e.g., packet-based MPLS VPNs).<br />
Configure and verify Frame-Mode MPLS. </p>
<p>Implement a site-to-site IPSec VPN<br />
Describe the components and operations of IPSec VPNs and GRE Tunnels.<br />
Configure a site-to-site IPSec VPN/GRE Tunnel with SDM (i.e., preshared key).<br />
Verify IPSec/GRE Tunnel configurations (i.e., IOS CLI configurations).<br />
Describe, configure, and verify VPN backup interfaces.<br />
Describe and configure Cisco Easy VPN solutions using SDM. </p>
<p>Describe network security strategies.<br />
Describe and mitigate common network attacks (i.e., Reconnaissance, Access, and Denial of Service).<br />
Describe and mitigate Worm, Virus, and Trojan Horse attacks.<br />
Describe and mitigate application-layer attacks (e.g., management protocols). </p>
<p>Implement Cisco Device Hardening<br />
Describe, Configure, and verify AutoSecure/One-Step Lockdown implementations (i.e., CLI and SDM).<br />
Describe, configure, and verify AAA for Cisco Routers.<br />
Describe and configure threat and attack mitigation using ACLs.<br />
Describe and configure IOS secure management features (e.g., SSH, SNMP, SYSLOG, NTP, Role-Based CLI, etc.) </p>
<p>Implement Cisco IOS firewall.<br />
Describe the functions and operations of Cisco IOS Firewall (e.g., Stateful Firewall, CBAC, etc.).<br />
Configure Cisco IOS Firewall with SDM.<br />
Verify Cisco IOS Firewall configurations (i.e., IOS CLI configurations, SDM Monitor). </p>
<p>Describe and configure Cisco IOS IPS.<br />
Describe the functions and operations of IDS and IPS systems (e.g., IDS/IPS signatures, IPS Alarms, etc.)<br />
Configure Cisco IOS IPS using SDM. </p>
<p>CISCO  ccnp 642-825 Pass4sure<br />
CISCO  ccnp 642-825 Pdf<br />
CISCO  ccnp 642-825 Study Guide<br />
CISCO  ccnp 642-825 Exam<br />
CISCO  ccnp 642-825 Torrent<br />
CISCO  ccnp 642-825 Braindumps<br />
CISCO  ccnp 642-825 Actual Tests<br />
CISCO  ccnp 642-825 Real Exams<br />
CISCO  ccnp 642-825 Exams<br />
CISCO  ccnp 642-825 P4S<br />
cisco  ccnp 642-825 testking</p>
<p>     642-825 Practice engine</p>
<p>     642-825 question and answers</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/642-825-iscw/feed/</wfw:commentRss>
		<slash:comments>8</slash:comments>
		</item>
		<item>
		<title>Actualtests  CCNP 642-825</title>
		<link>http://www.ciscoexams.org/actualtest-ccnp-642-825/</link>
		<comments>http://www.ciscoexams.org/actualtest-ccnp-642-825/#comments</comments>
		<pubDate>Mon, 06 Oct 2008 04:58:01 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[ccnp]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=790</guid>
		<description><![CDATA[642-825 : Implementing Secure Converged Wide Area Networks Last Updated Thursday, September 25, 2008 with 287 Questions 
ISCW &#8211; Implementing Secure Converged Wide Area Networks
Exam Number: 642-825 Exam
Associated Certifications: ISCW &#8211; Implementing Secure Converged Wide Area Networks
Duration: 310 Q&#038;As
Available Language(s): English
Exam Details
The Implementing Secure Converged Wide Area Networks (ISCW 642-825) is a qualifying exam for [...]]]></description>
			<content:encoded><![CDATA[<p>642-825 : Implementing Secure Converged Wide Area Networks Last Updated Thursday, September 25, 2008 with 287 Questions <span id="more-790"></span></p>
<p>ISCW &#8211; Implementing Secure Converged Wide Area Networks<br />
Exam Number: <a href="http://www.ciscoexams.org/category/642-825/">642-825 Exam</a><br />
Associated Certifications: ISCW &#8211; Implementing Secure Converged Wide Area Networks<br />
Duration: 310 Q&#038;As<br />
Available Language(s): English<br />
Exam Details<br />
The Implementing Secure Converged Wide Area Networks (ISCW 642-825) is a qualifying exam for the Cisco Certified Network Professional CCNP®. The ISCW <a href="http://www.ciscoexams.org/actualtest-ccnp-642-825/">642-825 exam</a> will certify that the successful candidate has important knowledge and skills necessary to secure and expand the reach of an enterprise network to teleworkers and remote sites with focus on securing remote access and VPN client configuration. The exam covers topics on Cisco hierarchical network model as it pertains to the WAN, teleworker configuration and access, frame mode MPLS, site-to-site IPSEC VPN, Cisco EZVPN, strategies used to mitigate network attacks, Cisco device hardening and IOS firewall features. </p>
<p>Free 642-825 Exams&#8217;s PDF Download<br />
Free Actualtests offers free demo for 642-825 PDF(ISCW &#8211; Implementing Secure Converged Wide Area Networks). You can check out the interface, question quality and usability of our practice exams . We are the only one site can offer demo for almost all ISCW &#8211; Implementing Secure Converged Wide Area Networks. </p>
<p>Recommended Training about 642-825 exam PDF<br />
The following courses are the recommended training for 642-825 exam PDF.<br />
642-825 Q &#038; A with Explanations<br />
642-825 Audio Exam<br />
642-825 Study Guide<br />
642-825 Preparation Lab<br />
642-825 Exam Preparation from Actualtests with FULL explanations include:<br />
Comprehensive questions with complete details<br />
Detailed explanations of all the questions<br />
Questions accompanied by exhibits<br />
Verified Answers Researched by Industry Experts<br />
Drag and Drop questions as experienced in the Actual Exams<br />
Questions updated on regular basis<br />
These questions and answers are backed by our GUARANTEE.<br />
Like actual certification exams our product is in multiple-choice questions (MCQs).<br />
642-825 Exam: Actualtests&#8217;s ISCW &#8211; Implementing Secure Converged Wide Area Networks PDF<br />
The ISCW &#8211; Implementing Secure Converged Wide Area Networks PDF for preparing for the 642-825 exam &#8211; Actualtests&#8217;s ISCW &#8211; Implementing Secure Converged Wide Area Networks. Actualtests is your premier source for practice tests, and true testing environment. Nothing will prepare you for your next exam like a Actualtests. You find it all here at ciscoexams.org.</p>
<p>QUESTION 1:<br />
A few small Certkiller locations use HFC cable to connect to the Certkiller WAN.<br />
Which HFC cable network statement is true about the downstream data channel to<br />
the customer and the upstream data channel to the service provider?<br />
A. The upstream data path is assigned a channel in a higher frequency range than the<br />
downstream path has.<br />
B. The downstream data path is assigned a 30 MHz channel and the upstream data path is<br />
assigned a 1 MHz channel.<br />
C. The downstream data path is assigned a fixed bandwidth channel and the upstream<br />
data path uses a variable bandwidth channel.<br />
D. Both upstream and downstream data paths are assigned in 6 MHz channels.<br />
E. None of the above.<br />
Answer: D<br />
Explanation:<br />
Hybrid fiber-coaxial (HFC): A mixed optical-coaxial network in which optical fiber<br />
replaces some or all of the traditional trunk portion of the cable network.<br />
The HFC architecture is the evolution of an initial cable system and signifies a network<br />
that incorporates both optical fiber along with coaxial cable to create a broadband<br />
network. By upgrading a cable plant to an HFC architecture, you can deploy a data<br />
network over an HFC system to offer high-speed Internet services and you can serve<br />
more subscribers. The cable network is segmented into smaller service areas in which<br />
fewer amplifiers are cascaded after each optical node-typically five or fewer. The<br />
tree-and-branch network architecture for HFC can be a fiber backbone, cable area<br />
network, superdistribution, fiber to the feeder, or a ring.<br />
Downstream: An RF signal transmission (TV channels, data) from source (headend) to<br />
the destination (subscribers). Downstream is also called a forward path.<br />
Upstream: An RF signal transmission opposite to downstream-from subscribers to the<br />
headend. Upstream is also called a return or reverse path.<br />
Delivering services over a cable network requires different RF frequencies-the outgoing<br />
frequencies are in the 50-to-860 MHz range, the incoming are in the 5-to-42 MHz range.<br />
To deliver data services over a cable network TV channels which usually operate at 6<br />
MHz range for the downstream, and 6 MHz or less (for asymmetric cable connections)<br />
for upstream traffic from the corresponding frequency range are usually used.<br />
QUESTION 2:<br />
Many small Certkiller branch offices use broadband cable for data connection<br />
access. Which three modulation signaling standards are used in broadband cable<br />
technology? (Select three)<br />
642-825<br />
Actualtests.com &#8211; The Power of Knowing<br />
A. S-Video<br />
B. NTSC<br />
C. SECAM<br />
D. PAL<br />
E. FEC<br />
F. FDM<br />
G. MLP<br />
Answer: B, C, D<br />
Explanation:<br />
Broadband: Data transmission where multiple pieces of data are sent simultaneously to<br />
increase the effective rate of transmission. In cable systems, the term broadband refers to<br />
the frequency-division multiplexing (FDM) of many signals in a wide radio frequency<br />
(RF) bandwidth over an HFC network, and the capability to handle vast amounts of<br />
information.<br />
NTSC is a North American TV technical standard for analog TV systems. The standard<br />
was created in 1941 and is named after the National Television System Committee<br />
formed in 1940. The standard uses a 6-MHz modulated signal. PAL is a color encoding<br />
system used in broadcast television systems in most of Europe, Asia, Africa, Australia,<br />
Brazil, and Argentina, and uses a 6-MHz, 7-MHz, or 8-MHz modulated signal. The color<br />
difference signals an alternate phase at the horizontal line rate. SECAM is an analog<br />
color TV system used in France and certain Eastern European countries that uses an<br />
8-MHz modulated signal.<br />
QUESTION 3:<br />
Some of the smaller Certkiller locations use HFC cable to connect to the Certkiller<br />
WAN. Which two statements are true about broadband cable (HFC) systems?<br />
(Select two)<br />
A. Cable modems operate at Layers 1, 2, and 3 of the OSI model.<br />
B. Cable modems operate at Layers 1 and 2 of the OSI model.<br />
C. A function of the cable modem termination system is to convert the digital data stream<br />
from the end user host into a modulated RF signal for transmission onto the cable system.<br />
D. Cable modems only operate at Layer 1 of the OSI model.<br />
E. A function of the cable modem termination system (CMTS) is to convert the<br />
modulated signal from the cable modem into a digital signal.<br />
Answer: B, E<br />
Explanation:<br />
Hybrid fiber-coaxial (HFC): A mixed optical-coaxial network in which optical fiber<br />
replaces some or all of the traditional trunk portion of the cable network.<br />
642-825<br />
Actualtests.com &#8211; The Power of Knowing<br />
The HFC architecture is the evolution of an initial cable system and signifies a network<br />
that incorporates both optical fiber along with coaxial cable to create a broadband<br />
network. By upgrading a cable plant to an HFC architecture, you can deploy a data<br />
network over an HFC system to offer high-speed Internet services and you can serve<br />
more subscribers. The cable network is segmented into smaller service areas in which<br />
fewer amplifiers are cascaded after each optical node-typically five or fewer. The<br />
tree-and-branch network architecture for HFC can be a fiber backbone, cable area<br />
network, superdistribution, fiber to the feeder, or a ring.<br />
QUESTION 4:<br />
A Certkiller remote user is getting Internet access from the local cable provider.<br />
When an individual is connected to the Internet by way of a CATV cable service,<br />
what kind of traffic is considered upstream traffic?<br />
A. Traffic going from the user&#8217;s home traveling to the headend.<br />
B. Broadcast traffic, including the cable TV signals.<br />
C. Traffic between the headend and the TV signal.<br />
D. Traffic between the headend and the supplier antenna.<br />
E. Traffic from outside the local cable segment serving the user&#8217;s home.<br />
F. All of the above can be considered upstream<br />
Answer: A<br />
Explanation:<br />
In the CATV space, the downstream channels in a cable plant (cable head-end to<br />
subscribers) is a point-to-multipoint channel. This does have very similar characteristics<br />
to transmitting over an Ethernet segment where one transmitter is being listened to by<br />
many receivers. The major difference is that base-band modulation has been replaced by<br />
a more densely modulated RF carrier with very sophisticated adaptive signal processing<br />
and forward error correction (FEC).<br />
In the upstream direction (subscriber cable modems transmitting towards the head-end)<br />
the environment is many transmitters and one receiver. This introduces the need for<br />
precise scheduling of packet transmissions to achieve high utilization and precise power<br />
control so as to not overdrive the receiver or other amplifier electronics in the cable<br />
system. Since the upstream direction is like a single receiver with many antennas, the<br />
channels are much more susceptible to interfering noise products. In the cable industry,<br />
we generally call this ingress noise. As ingress noise is an inherent part of CATV plants,<br />
the observable impact is an unfortunate rise in the average noise floor in the upstream<br />
channel. To overcome this noise jungle, upstream modulation is not as dense as in the<br />
downstream and we have to use more effective FEC as used in the downstream.<br />
Reference: http://www.cisco.com/warp/public/759/ipj_1-3/ipj_1-3_catv.html<br />
QUESTION 5:<br />
642-825<br />
Actualtests.com &#8211; The Power of Knowing<br />
A new cable modem was shipped to the home of a Certkiller user, where it is being<br />
installed for the first time. When a DOCSIS 1.1 compliant cable modem first<br />
initializes, (boots up) what does it do?<br />
A. Establishes IP connectivity (DHCP).<br />
B. Determines the time of day.<br />
C. Requests a DOCSIS configuration file from a TFTP server.<br />
D. Scan for a downstream channel and the establishment of timing synchronization with<br />
the CMTS.<br />
E. None of the above.<br />
Answer: D<br />
Explanation:<br />
According to the DOCSIS (Data-over-Cable Service Interface Specifications) when you<br />
first power up a cable modem it starts scanning (starting at a low frequency) for a cable<br />
signal. When it &#8216;hears&#8217; a cable modem stream it listens for a broadcast (from the service<br />
provider) which contains information (ie. frequency) needed to talk back with the head<br />
end. It then &#8216;talks back&#8217; and if it communicates the right authentication information, it is<br />
allowed to proceed.<br />
References: Page 225 of the CCNP Self-Study BCRAN (642-821) ISBN: 1-58720-084-8<br />
http://www.cisco.com/en/US/products/hw/cable/ps2217/products_feature_guide_chapter09186a008019b57f.ht<br />
m<br />
QUESTION 6:<br />
You are building a small network at your home and you intend on connecting your<br />
cable modem to a Cisco router. Which router interface would you connect the<br />
modem to?<br />
A. Synchronous serial<br />
B. Asynchronous serial<br />
C. Ethernet<br />
D. auxiliary<br />
E. BRI<br />
Answer: C<br />
Explanation:<br />
In certain environments where a non Cisco Cable Modem (CM) is used, and the CM is<br />
only capable of bridging, a Cisco router such as the Cisco 806 can be connected to the<br />
Cable Modem via the Ethernet interface. The routing can then be performed by the Cisco<br />
router behind the Cable Modem and the Client PC or Customer Premises Equipment<br />
(CPE) will be connected to the Cisco router. Network Address Translation (NAT) can<br />
642-825<br />
Actualtests.com &#8211; The Power of Knowing<br />
then be configured on the Cisco router.<br />
When the Cisco router is connected behind the Cable Modem the first problem that might<br />
be encountered is not obtaining an IP address dynamically on the Cisco router&#8217;s Ethernet<br />
interface. Most Internet Service Providers (ISPs) allow only one host or PC behind the<br />
Cable Modem. Some ISPs assign an IP address to the PC based on the host name.<br />
Therefore, if you have a Cisco router behind the Cable Modem, then the host name for<br />
the router configured using the hostname command should be the same host name given<br />
by the ISP.<br />
Example:<br />
QUESTION 7:<br />
When a cable modem is being provisioned to operate with a host system for Internet<br />
services, which two options must occur before Layer 1 and 2 connectivity can<br />
occur? (Choose two)<br />
A. The cable modem must request an IP address and core configuration information from<br />
a Dynamic Host Configuration Protocol (DHCP) server.<br />
B. The cable modem powering up must scan and lock on the RF data channel in the<br />
downstream path.<br />
C. The modem must request a DOCSIS configuration file from a TFTP server.<br />
D. The cable modem must register with the CMTS.<br />
E. The modem must read specific maintenance messages in the downstream path.<br />
Answer: B, E<br />
Explanation:<br />
According to the DOCSIS (Data-over-Cable Service Interface Specifications) when you<br />
first power up a cable modem it starts scanning (starting at a low frequency) for a cable<br />
signal. When it &#8216;hears&#8217; a cable modem stream it listens for a broadcast (from the service<br />
provider) which contains information (ie. frequency) needed to talk back with the head<br />
end. It then &#8216;talks back&#8217; and if it communicates the right authentication information, it is<br />
allowed to proceed. Once these steps are completed, layers 1 and 2 will be operational.<br />
QUESTION 8:<br />
How is cable broadband technology able to transmit downstream and upstream<br />
data while at the same time delivering television content?<br />
A. The cable operator uses the VHF hyperband to transmit and receive data signals.<br />
642-825<br />
Actualtests.com &#8211; The Power of Knowing<br />
B. The cable operator assigns any available spectrum to data, depending on how its own<br />
television spectrum is being used.<br />
C. The cable operator uses specific bandwidths for data signals specified by DOCSIS.<br />
D. The cable operator places its data signals into clean areas where there is no<br />
interference from noise or other signals.<br />
Answer: C<br />
Explanation:<br />
Developed by CableLabs and approved by the ITU in March 1998, Data Over<br />
Cable Service Interface Specification (DOCSIS) defines interface standards for<br />
cable modems and supporting equipment. In a cable TV system, signals from the<br />
various channels are each given a 6-MHz slice of the cable&#8217;s available bandwidth and<br />
then sent down the cable to your house. In some systems, coaxial cable is the only<br />
medium used for distributing signals.<br />
When a cable company offers Internet access over the cable, Internet information can use<br />
the same cables because the cable modem system puts downstream data &#8212; data sent from<br />
the Internet to an individual computer &#8212; into a 6-MHz channel. On the cable, the data<br />
looks just like a TV channel. So Internet downstream data takes up the same amount of<br />
cable space as any single channel of programming. Upstream data &#8212; information sent<br />
from an individual back to the Internet &#8212; requires even less of the cable&#8217;s bandwidth, just<br />
2 MHz, since the assumption is that most people download far more information than<br />
they upload.<br />
QUESTION 9:<br />
Certkiller operates a DSL network. What does the &#8220;dsl operating-mode auto&#8221;<br />
command configure on a Cisco router?<br />
A. It configures a Cisco router to automatically detect the proper modulation method to<br />
use when connecting an ATM interface.<br />
B. It configures a Cisco router to automatically detect the proper DSL type (ADSL,<br />
IDSL, HDSL, VDSL) to use when connecting an ATM interface.<br />
C. It configures a Cisco router to automatically detect the proper encapsulation method to<br />
use when connecting an ATM interface.<br />
D. It configures a Cisco router to automatically detect the proper authentication method<br />
to use when connecting an ATM interface.<br />
642-825<br />
Actualtests.com &#8211; The Power of Knowing<br />
E. None of the above<br />
Answer: A<br />
Explanation:<br />
dsloperating-mode auto interface configuration command to specify that the router<br />
automatically detect the DSL modulation that the service provider is using and set the<br />
DSL modulation to match. An incompatible DSL modulation configuration can result in<br />
failure to establish a DSL connection to the DSLAM of the service provider<br />
Example:<br />
QUESTION 10:<br />
Certkiller is a DSL service provider using providing xDSL to its customers. Which<br />
statement about xDSL implementations is true?<br />
A. All xDSL standards operate in lower frequencies than the POTS system and can<br />
therefore coexist on the same media.<br />
B. Other than providing higher data rates, HDSL is identical to ADSL.<br />
C. The ADSL standard operates in higher frequencies than the POTS system and can<br />
therefore coexist on the same media.<br />
D. The HDSL standard operates in higher frequencies than the POTS system and can<br />
therefore coexist on the same media.<br />
E. All xDSL standards operate in higher frequencies than the POTS system and therefore<br />
can coexist on the same media.<br />
F. None of the above.</p>
<p>Free download?<a href="http://www.pass4sure.com/s.php?userid=100042&#038;dest=http://www.pass4sure.com/642-825.html&#038;type=1">pass4sure ccnp 642-825</a><br />
Free download?<a href="http://www.examguard.net/testking/cisco">testking ccnp 642-825</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/actualtest-ccnp-642-825/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>TestInside	CCNP 642-825</title>
		<link>http://www.ciscoexams.org/testinside-ccnp-642-825/</link>
		<comments>http://www.ciscoexams.org/testinside-ccnp-642-825/#comments</comments>
		<pubDate>Tue, 30 Sep 2008 02:14:24 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[ccnp]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=703</guid>
		<description><![CDATA[Implementing Secure Converged Wide Area Networks : 642-825 Exam
Exam Number/Code: 642-825
Exam Name: Implementing Secure Converged Wide Area Networks
Questions and Answers: 172 Q&#038;As
Price: $69.00
Update Time: 2008-6-25
&#8220;Implementing Secure Converged Wide Area Networks&#8221;, also known as 642-825 exam, is a Cisco certification.
Preparing for the 642-825 exam? Searching 642-825 Test Questions, 642-825 Practice Exam, 642-825 Dumps?
Free 642-825 Demo Download
TestInside [...]]]></description>
			<content:encoded><![CDATA[<p>Implementing Secure Converged Wide Area Networks : 642-825 Exam<span id="more-703"></span><br />
Exam Number/Code: 642-825<br />
Exam Name: Implementing Secure Converged Wide Area Networks<br />
Questions and Answers: 172 Q&#038;As<br />
Price: $69.00<br />
Update Time: 2008-6-25</p>
<p>&#8220;Implementing Secure Converged Wide Area Networks&#8221;, also known as 642-825 exam, is a Cisco certification.<br />
Preparing for the <a href="http://www.ciscoexams.org/ ccnp-iscw-official-exam-certification-guide/">642-825 exam</a>? Searching 642-825 Test Questions, 642-825 Practice Exam, <a href="http://www.ciscoexams.org/ccnp-iscw-official-exam-certification-guide/">642-825 Dumps</a>?</p>
<p>Free 642-825 Demo Download<br />
TestInside offers free demo for 642-825 exam ( Implementing Secure Converged Wide Area Networks). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. We are the only one site can offer demo for almost all products. </p>
<p>1.  When configuring  the Cisco  VPN Client  with transparent tunneling,  what is  true about  the IPSec  over  TCP</p>
<p>option?</p>
<p>A. The port number is negotiated automatically.</p>
<p>B. Clients will have access to the secured tunnel and local resources.</p>
<p>C. The port number must match the configuration on the secure gateway.</p>
<p>D. Packets are encapsulated using Protocol 50 (Encapsulating Security Payload, or ESP). Answer:C</p>
<p>2. Refer to the exhibit.</p>
<p>MPLS must be enabled on all routers in the MPLS domain that consists of Cisco routers and equipment of other</p>
<p>vendors. What MPLS distribution protocol(s) should be used on router R2 FastEthernet interface Fa0/0 so that the</p>
<p>Label Information Base (LIB) table is populated across the MPLS domain? A. Only LDP should be enabled on Fa0/0 interface.<br />
B. Only TDP should be enabled on Fa0/0 interface.</p>
<p>C. Both distribution protocols LDP and TDP should be enabled on the Fa0/0 interface.</p>
<p>D. MPLS cannot be enabled in a domain consisting of Cisco and non-Cisco devices. Answer:C</p>
<p>3. Which two statements about common network attacks are true? (Choose two.)</p>
<p>A.  Access  attacks  can  consist  of  password  attacks,  trust  exploitation,  port  redirection,  and  man-in-the-middle attacks.<br />
B. Access attacks can consist of password attacks, ping sweeps, port scans, and man-in-the-middle attacks.</p>
<p>C. Access attacks can consist of packet sniffers, ping sweeps, port scans, and man-in-the-middle attacks.</p>
<p>D.  Reconnaissance  attacks  can  consist  of  password  attacks,  trust  exploitation,  port  redirection  and  Internet information queries.<br />
E.  Reconnaissance  attacks  can  consist  of  packet  sniffers,  port  scans,  ping  sweeps,  and  Internet  information queries.<br />
F. Reconnaissance attacks can consist of ping sweeps, port scans, man-in-middle attacks and Internet information queries.<br />
Answer:AE</p>
<p>4. Which two statements about worms, viruses, or Trojan horses are true? (Choose two.)</p>
<p>A. A Trojan horse has three components: an enabling vulnerability, a propagation mechanism, and a payload.</p>
<p>B. A Trojan horse virus propagates itself by infecting other programs on the same computer. C. A virus cannot spread to a new computer without human assistance.<br />
D. A virus has three components: an enabling vulnerability, a propagation mechanism, and a payload.</p>
<p>E. A worm can spread itself automatically from one computer to the next over an unprotected network.</p>
<p>F. A worm is a program that appears desirable but actually contains something harmful. Answer:CE</p>
<p>5. Which two statements about management protocols are true? (Choose two.)</p>
<p>A. Syslog version 2 or above should be used because it provides encryption of the syslog messages.</p>
<p>B.  NTP  version  3  or  above  should  be  used  because  these  versions  support  a  cryptographic  authentication mechanism between peers.<br />
C.  SNMP version  3  is  recommended  since  it  provides  authentication  and  encryption  services  for  management</p>
<p>packets.</p>
<p>D. SSH, SSL and Telnet are recommended protocols to remotely manage infrastructure devices.</p>
<p>E. TFTP authentication (username and password) is sent in an encrypted format, and no additional encryption is required.<br />
Answer:BC</p>
<p>6. Which two statements about the Cisco AutoSecure feature are true? (Choose two.)</p>
<p>A. All passwords entered during the AutoSecure configuration must be a minimum of 8 characters in length.</p>
<p>B. Cisco123 would be a valid password for both the enable password and the enable secret commands.</p>
<p>C. The auto secure command can be used to secure the router login as well as the NTP and SSH protocols.</p>
<p>D. For an interactive full session of AutoSecure, the auto secure login command should be used.</p>
<p>E.  If  the  SSH  server  was  configured,  the  1024  bit  RSA keys  are  generated  after  the  auto  secure  command  is enabled.<br />
Answer:CE</p>
<p>7. Which three statements are correct about MPLS-based VPNs? (Choose three.)</p>
<p>A. Route Targets (RTs) are attributes attached to a VPNv4 BGP route to indicate its VPN membership.</p>
<p>B. Scalability becomes challenging for a very large, fully meshed deployment. C. Authentication is done using a digital certificate or pre-shared key.<br />
D. A VPN client is required for client-initiated deployments.</p>
<p>E. A VPN client is not required for users to interact with the network.</p>
<p>F. An MPLS-based VPN is highly scalable because no site-to-site peering is required. Answer:AEF</p>
<p>8. Which IPsec mode will encrypt a GRE tunnel to provide multiprotocol support and reduced overhead?</p>
<p>A. 3DES</p>
<p>B. multipoint GRE C. tunnel<br />
D. transport</p>
<p>Answer:D</p>
<p>9. Which two statements are true about broadband cable (HFC) systems? (Choose two.)</p>
<p>A. Cable modems only operate at Layer 1 of the OSI model.</p>
<p>B. Cable modems operate at Layers 1 and 2 of the OSI model.</p>
<p>C. Cable modems operate at Layers 1, 2, and 3 of the OSI model.</p>
<p>D. A function of the cable modem termination system (CMTS) is to convert the modulated signal from the cable modem into a digital signal.<br />
E. A function of the cable modem termination system is to convert the digital data stream from the end user host into a modulated RF signal for transmission onto the cable system.<br />
Answer:BD</p>
<p>10. Refer to the exhibit.</p>
<p>Which two statements about the AAA configuration are true? (Choose two.)</p>
<p>A. A good security practice is to have the none parameter configured as the final method used to ensure that no other authentication method will be used.<br />
B. If a TACACS+ server is not available, then a user connecting via the console port would not be able to gain access since no other authentication method has been defined.<br />
C. If a TACACS+ server is not available, then the user Bob could be able to enter privileged mode as long as the proper enable password is entered.<br />
D.  The  aaa  new-model  command  forces  the  router  to  override  every  other  authentication  method  previously configured for the router lines.<br />
E. To increase security, group radius should be used instead of group tacacs+.</p>
<p>F. Two authentication options are prescribed by the displayed aaa authentication command. Answer:DF</p>
<p>11. Refer to the exhibit.</p>
<p>When you are using the Quick Setup option of the Site-to-Site VPN wizard on the SDM to configure an IPsec</p>
<p>VPN, which three settings can you configure? (Choose three.) A. peer identity<br />
B. crypto map</p>
<p>C. pre-shared key</p>
<p>D. transform set priority</p>
<p>E. source interface and destination IP address F. encapsulation security payload Answer:ACE</p>
<p>12. Refer to the exhibit.</p>
<p>SDM has been used to configure the locations from which the signature definition file (SDF) will be loaded. What</p>
<p>will happen if the SDF files in flash are not available at startup? A. All traffic will flow uninspected or will be dropped.<br />
B. All traffic will be marked as uninspected and will be checked after the signature file is loaded.</p>
<p>C. All traffic will be inspected by the built-in signatures bundled with Cisco IOS Software.</p>
<p>D. All traffic will be inspected by the pre-built signatures bundled in the attack-drop.sdf file. Answer:A</p>
<p>13. Drag each Cisco Easy VPN connection process on the left to its step on the right.</p>
<p>Free download?<a href="http://www.pass4sure.com/s.php?userid=100042&#038;dest=http://www.pass4sure.com/642-825.html&#038;type=1">pass4sure ccnp 642-825</a><br />
Free download?<a href="http://www.examguard.net/testking/cisco">testking ccnp 642-825</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/testinside-ccnp-642-825/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>BSCI &amp; ISCW &#8211; Cisco Network Academy Program</title>
		<link>http://www.ciscoexams.org/bsci-iscw-cisco-network-academy-program/</link>
		<comments>http://www.ciscoexams.org/bsci-iscw-cisco-network-academy-program/#comments</comments>
		<pubDate>Tue, 23 Sep 2008 16:56:32 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[642-901]]></category>
		<category><![CDATA[bsci]]></category>
		<category><![CDATA[iscw]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=628</guid>
		<description><![CDATA[http://rapidshare.com/files/147701653/Cisco_Network_Academy_-_ISCW.part1.rar
http://rapidshare.com/files/147702228/Cisco_Network_Academy_-_ISCW.part2.rar
http://rapidshare.com/files/147704595/Cisco_Network_Academy_-_ISCW.part3.rar
http://rapidshare.com/files/147705196/Cisco_Network_Academy_-_ISCW.part4.rar
http://rapidshare.com/files/147705399/Cisco_Network_Academy_-_ISCW.part5.rar
http://rapidshare.com/files/147697939/Cisco_Network_Academy_BSCI.part1.rar
http://rapidshare.com/files/147699289/Cisco_Network_Academy_BSCI.part2.rar
http://rapidshare.com/files/147700566/Cisco_Network_Academy_BSCI.part3.rar
http://rapidshare.com/files/147701077/Cisco_Network_Academy_BSCI.part4.rar
]]></description>
			<content:encoded><![CDATA[<p>http://rapidshare.com/files/147701653/Cisco_Network_Academy_-_ISCW.part1.rar<br />
http://rapidshare.com/files/147702228/Cisco_Network_Academy_-_ISCW.part2.rar<br />
http://rapidshare.com/files/147704595/Cisco_Network_Academy_-_ISCW.part3.rar<br />
http://rapidshare.com/files/147705196/Cisco_Network_Academy_-_ISCW.part4.rar<br />
http://rapidshare.com/files/147705399/Cisco_Network_Academy_-_ISCW.part5.rar<br />
http://rapidshare.com/files/147697939/Cisco_Network_Academy_BSCI.part1.rar<br />
http://rapidshare.com/files/147699289/Cisco_Network_Academy_BSCI.part2.rar<br />
http://rapidshare.com/files/147700566/Cisco_Network_Academy_BSCI.part3.rar<br />
http://rapidshare.com/files/147701077/Cisco_Network_Academy_BSCI.part4.rar</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/bsci-iscw-cisco-network-academy-program/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Testking CCNP  642-825</title>
		<link>http://www.ciscoexams.org/testking-ccnp-642-825-2/</link>
		<comments>http://www.ciscoexams.org/testking-ccnp-642-825-2/#comments</comments>
		<pubDate>Fri, 19 Sep 2008 06:57:43 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[ccnp]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=577</guid>
		<description><![CDATA[Implementing Secure Converged Wide Area Networks 
    Exam Number:     642-825
Associated Certifications: CCNP
Duration: 90 minutes
Available Languages: English
Click Here to Register: Pearson VUE
Exam Policies: Read current policies and requirements
Exam Tutorial: Review type of exam questions 
QUESTION 1:
A few small Certkiller locations use HFC cable to connect to the Certkiller WAN. [...]]]></description>
			<content:encoded><![CDATA[<p>Implementing Secure Converged Wide Area Networks </p>
<p>    Exam Number:     642-825<br />
Associated Certifications: CCNP<br />
Duration: 90 minutes<br />
Available Languages: English<br />
Click Here to Register: Pearson VUE<br />
Exam Policies: Read current policies and requirements<br />
Exam Tutorial: Review type of exam questions <span id="more-577"></span><br />
QUESTION 1:</p>
<p>A few small Certkiller locations use HFC cable to connect to the Certkiller WAN. Which HFC cable network statement is true about the downstream data channel to the customer and the upstream data channel to the service provider?</p>
<p>A. The upstream data path is assigned a channel in a higher frequency range than the downstream path has.<br />
B. The downstream data path is assigned a 30 MHz channel and the upstream data path is assigned a 1 MHz channel.<br />
C. The downstream data path is assigned a fixed bandwidth channel and the upstream data path uses a variable bandwidth channel.<br />
D. Both upstream and downstream data paths are assigned in 6 MHz channels.<br />
E. None of the above. Answer: D<br />
Explanation:<br />
Hybrid fiber-coaxial (HFC): A mixed optical-coaxial network in which optical fiber replaces some or all of the traditional trunk portion of the cable network.<br />
The HFC architecture is the evolution of an initial cable system and signifies a network that incorporates both optical fiber along with coaxial cable to create a broadband network. By upgrading a cable plant to an HFC architecture, you can deploy a data network over an HFC system to offer high-speed Internet services and you can serve<br />
more subscribers. The cable network is segmented into smaller service areas in which fewer amplifiers are cascaded after each optical node-typically five or fewer. The<br />
tree-and-branch network architecture for HFC can be a fiber backbone, cable area network, superdistribution, fiber to the feeder, or a ring.<br />
Downstream: An RF signal transmission (TV channels, data) from source (headend) to the destination (subscribers). Downstream is also called a forward path.<br />
Upstream: An RF signal transmission opposite to downstream-from subscribers to the headend. Upstream is also called a return or reverse path.<br />
Delivering services over a cable network requires different RF frequencies-the outgoing frequencies are in the 50-to-860 MHz range, the incoming are in the 5-to-42 MHz range.<br />
To deliver data services over a cable network TV channels which usually operate at 6<br />
MHz range for the downstream, and 6 MHz or less (for asymmetric cable connections)<br />
for upstream traffic from the corresponding frequency range are usually used.</p>
<p>QUESTION 2:</p>
<p>Many small Certkiller branch offices use broadband cable for data connection access. Which three modulation signaling standards are used in broadband cable technology? (Select three)</p>
<p>A. S-Video</p>
<p>TK</p>
<p>642-825</p>
<p>B. NTSC<br />
C. SECAM D. PAL<br />
E. FEC F. FDM G. MLP<br />
Answer: B, C, D Explanation:<br />
Broadband: Data transmission where multiple pieces of data are sent simultaneously to increase the effective rate of transmission. In cable systems, the term broadband refers to the frequency-division multiplexing (FDM) of many signals in a wide radio frequency<br />
(RF) bandwidth over an HFC network, and the capability to handle vast amounts of information.<br />
NTSC is a North American TV technical standard for analog TV systems. The standard was created in 1941 and is named after the National Television System Committee<br />
formed in 1940. The standard uses a 6-MHz modulated signal. PAL is a color encoding system used in broadcast television systems in most of Europe, Asia, Africa, Australia, Brazil, and Argentina, and uses a 6-MHz, 7-MHz, or 8-MHz modulated signal. The color difference signals an alternate phase at the horizontal line rate. SECAM is an analog<br />
color TV system used in France and certain Eastern European countries that uses an<br />
8-MHz modulated signal.</p>
<p>QUESTION 3:</p>
<p>Some of the smaller Certkiller locations use HFC cable to connect to the Certkiller<br />
WAN. Which two statements are true about broadband cable (HFC) systems?<br />
(Select two)</p>
<p>A. Cable modems operate at Layers 1, 2, and 3 of the OSI model. B. Cable modems operate at Layers 1 and 2 of the OSI model.<br />
C. A function of the cable modem termination system is to convert the digital data stream from the end user host into a modulated RF signal for transmission onto the cable system.<br />
D. Cable modems only operate at Layer 1 of the OSI model.<br />
E. A function of the cable modem termination system (CMTS) is to convert the modulated signal from the cable modem into a digital signal.<br />
Answer: B, E Explanation:<br />
Hybrid fiber-coaxial (HFC): A mixed optical-coaxial network in which optical fiber replaces some or all of the traditional trunk portion of the cable network.<br />
The HFC architecture is the evolution of an initial cable system and signifies a network that incorporates both optical fiber along with coaxial cable to create a broadband network. By upgrading a cable plant to an HFC architecture, you can deploy a data</p>
<p>TK</p>
<p>642-825</p>
<p>network over an HFC system to offer high-speed Internet services and you can serve<br />
more subscribers. The cable network is segmented into smaller service areas in which fewer amplifiers are cascaded after each optical node-typically five or fewer. The<br />
tree-and-branch network architecture for HFC can be a fiber backbone, cable area network, superdistribution, fiber to the feeder, or a ring.</p>
<p>QUESTION 4:</p>
<p>A Certkiller remote user is getting Internet access from the local cable provider. When an individual is connected to the Internet by way of a CATV cable service, what kind of traffic is considered upstream traffic?</p>
<p>A. Traffic going from the user&#8217;s home traveling to the headend. B. Broadcast traffic, including the cable TV signals.<br />
C. Traffic between the headend and the TV signal.<br />
D. Traffic between the headend and the supplier antenna.<br />
E. Traffic from outside the local cable segment serving the user&#8217;s home. F. All of the above can be considered upstream<br />
Answer: A Explanation:<br />
In the CATV space, the downstream channels in a cable plant (cable head-end to subscribers) is a point-to-multipoint channel. This does have very similar characteristics<br />
to transmitting over an Ethernet segment where one transmitter is being listened to by<br />
many receivers. The major difference is that base-band modulation has been replaced by<br />
a more densely modulated RF carrier with very sophisticated adaptive signal processing and forward error correction (FEC).<br />
In the upstream direction (subscriber cable modems transmitting towards the head-end)<br />
the environment is many transmitters and one receiver. This introduces the need for<br />
precise scheduling of packet transmissions to achieve high utilization and precise power control so as to not overdrive the receiver or other amplifier electronics in the cable system. Since the upstream direction is like a single receiver with many antennas, the channels are much more susceptible to interfering noise products. In the cable industry,<br />
we generally call this ingress noise. As ingress noise is an inherent part of CATV plants, the observable impact is an unfortunate rise in the average noise floor in the upstream channel. To overcome this noise jungle, upstream modulation is not as dense as in the downstream and we have to use more effective FEC as used in the downstream.<br />
Reference: http://www.cisco.com/warp/public/759/ipj_1-3/ipj_1-3_catv.html</p>
<p>QUESTION 5:</p>
<p>A new cable modem was shipped to the home of a Certkiller user, where it is being installed for the first time. When a DOCSIS 1.1 compliant cable modem first initializes, (boots up) what does it do?</p>
<p>TK</p>
<p>642-825</p>
<p>A. Establishes IP connectivity (DHCP).<br />
B. Determines the time of day.<br />
C. Requests a DOCSIS configuration file from a TFTP server.<br />
D. Scan for a downstream channel and the establishment of timing synchronization with the CMTS.<br />
E. None of the above. Answer: D<br />
Explanation:<br />
According to the DOCSIS (Data-over-Cable Service Interface Specifications) when you first power up a cable modem it starts scanning (starting at a low frequency) for a cable signal. When it &#8216;hears&#8217; a cable modem stream it listens for a broadcast (from the service provider) which contains information (ie. frequency) needed to talk back with the head end. It then &#8216;talks back&#8217; and if it communicates the right authentication information, it is allowed to proceed.<br />
References: Page 225 of the CCNP Self-Study BCRAN (642-821) ISBN: 1-58720-084-8<br />
http://www.cisco.com/en/US/products/hw/cable/ps2217/products_feature_guide_chapter09186a008019b57f.ht<br />
m</p>
<p>QUESTION 6:</p>
<p>You are building a small network at your home and you intend on connecting your cable modem to a Cisco router. Which router interface would you connect the modem to?</p>
<p>A. Synchronous serial B. Asynchronous serial C. Ethernet<br />
D. auxiliary<br />
E. BRI Answer: C<br />
Explanation:<br />
In certain environments where a non Cisco Cable Modem (CM) is used, and the CM is only capable of bridging, a Cisco router such as the Cisco 806 can be connected to the<br />
Cable Modem via the Ethernet interface. The routing can then be performed by the Cisco router behind the Cable Modem and the Client PC or Customer Premises Equipment<br />
(CPE) will be connected to the Cisco router. Network Address Translation (NAT) can then be configured on the Cisco router.<br />
When the Cisco router is connected behind the Cable Modem the first problem that might<br />
be encountered is not obtaining an IP address dynamically on the Cisco router&#8217;s Ethernet interface. Most Internet Service Providers (ISPs) allow only one host or PC behind the Cable Modem. Some ISPs assign an IP address to the PC based on the host name. Therefore, if you have a Cisco router behind the Cable Modem, then the host name for</p>
<p>Interactive Testing Engine Included!<br />
277 Questions<br />
Updated : 09/01/2008<br />
Price : $87.99 $79.99</p>
<p>Free download?<a href="http://affiliate.testking.com/adhit.php?i=0&#038;c=MjEyMnxFNzY0&#038;ad_channel=603">testking CCNP  642-825 </a></p>
<p>Free download?<a href=" http://www.pass4sure.com/s.php?userid=100042&#038;dest=http://www.pass4sure.com/642-825.html&#038;type=1">pass4sure CCNP  642-825 </a></p>
<p>Free download?pass4sure CCNP  642-825 </p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/testking-ccnp-642-825-2/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Download New Pass4sure p4s ccnp iscw 642-825 v3.10</title>
		<link>http://www.ciscoexams.org/download-new-pass4sure-p4s-ccnp-iscw-642-825-v310/</link>
		<comments>http://www.ciscoexams.org/download-new-pass4sure-p4s-ccnp-iscw-642-825-v310/#comments</comments>
		<pubDate>Fri, 05 Sep 2008 02:13:14 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[ccnp]]></category>
		<category><![CDATA[iscw]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=472</guid>
		<description><![CDATA[ISCW &#8211; Implementing Secure Converged Wide Area Networks : 642-825 Exam
A new cable modem was shipped to the home of a certifyme.comuser, where it is being
installed for the first time. When a DOCSIS 1.1 compliant cable modem first
initializes, (boots up) what does it do?
A. Establishes IP connectivity (DHCP).
B. Determines the time of day.
C. Requests a [...]]]></description>
			<content:encoded><![CDATA[<p>ISCW &#8211; Implementing Secure Converged Wide Area Networks : 642-825 Exam<span id="more-472"></span></p>
<p>A new cable modem was shipped to the home of a certifyme.comuser, where it is being<br />
installed for the first time. When a DOCSIS 1.1 compliant cable modem first<br />
initializes, (boots up) what does it do?<br />
A. Establishes IP connectivity (DHCP).<br />
B. Determines the time of day.<br />
C. Requests a DOCSIS configuration file from a TFTP server.<br />
D. Scan for a downstream channel and the establishment of timing synchronization with<br />
the CMTS.<br />
E. None of the above.<br />
Answer: D<br />
Explanation:<br />
According to the DOCSIS (Data-over-Cable Service Interface Specifications) when you<br />
first power up a cable modem it starts scanning (starting at a low frequency) for a cable<br />
signal. When it &#8216;hears&#8217; a cable modem stream it listens for a broadcast (from the service<br />
provider) which contains information (ie. frequency) needed to talk back with the head<br />
end. It then &#8216;talks back&#8217; and if it communicates the right authentication information, it is<br />
allowed to proceed.</p>
<p>References: Page 225 of the CCNP Self-Study BCRAN (642-821) ISBN: 1-58720-084-8<br />
http://www.cisco.com/en/US/products/hw/cable/ps2217/products_feature_guide_chapter09186a008019b57f.htm<br />
QUESTION NO: 6<br />
You are building a small network at your home and you intend on connecting your<br />
cable modem to a Cisco router. Which router interface would you connect the<br />
modem to?<br />
A. Synchronous serial<br />
B. Asynchronous serial<br />
C. Ethernet<br />
D. auxiliary<br />
E. BRI<br />
Answer: C<br />
Explanation:<br />
In certain environments where a non Cisco Cable Modem (CM) is used, and the CM is<br />
only capable of bridging, a Cisco router such as the Cisco 806 can be connected to the<br />
Cable Modem via the Ethernet interface. The routing can then be performed by the Cisco<br />
router behind the Cable Modem and the Client PC or Customer Premises Equipment<br />
(CPE) will be connected to the Cisco router. Network Address Translation (NAT) can<br />
then be configured on the Cisco router.<br />
When the Cisco router is connected behind the Cable Modem the first problem that might<br />
be encountered is not obtaining an IP address dynamically on the Cisco router&#8217;s Ethernet<br />
interface. Most Internet Service Providers (ISPs) allow only one host or PC behind the<br />
Cable Modem. Some ISPs assign an IP address to the PC based on the host name.<br />
Therefore, if you have a Cisco router behind the Cable Modem, then the host name for<br />
the router configured using the hostname command should be the same host name given<br />
by the ISP.<br />
QUESTION NO: 7<br />
When a cable modem is being provisioned to operate with a host system for Internet<br />
services, which two options must occur before Layer 1 and 2 connectivity can<br />
occur? (Choose two)<br />
A. The cable modem must request an IP address and core configuration information from<br />
a Dynamic Host Configuration Protocol (DHCP) server.<br />
B. The cable modem powering up must scan and lock on the RF data channel in the<br />
downstream path.<br />
C. The modem must request a DOCSIS configuration file from a TFTP server.<br />
D. The cable modem must register with the CMTS.<br />
E. The modem must read specific maintenance messages in the downstream path.<br />
Answer: B, E<br />
Explanation:<br />
According to the DOCSIS (Data-over-Cable Service Interface Specifications) when you<br />
first power up a cable modem it starts scanning (starting at a low frequency) for a cable<br />
signal. When it &#8216;hears&#8217; a cable modem stream it listens for a broadcast (from the service<br />
provider) which contains information (ie. frequency) needed to talk back with the head<br />
end. It then &#8216;talks back&#8217; and if it communicates the right authentication information, it is<br />
allowed to proceed. Once these steps are completed, layers 1 and 2 will be operational.<br />
QUESTION NO: 8<br />
How is cable broadband technology able to transmit downstream and upstream<br />
data while at the same time delivering television content?<br />
A. The cable operator uses the VHF hyperband to transmit and receive data signals.<br />
B. The cable operator assigns any available spectrum to data, depending on how its own<br />
television spectrum is being used.<br />
C. The cable operator uses specific bandwidths for data signals specified by DOCSIS.<br />
D. The cable operator places its data signals into clean areas where there is no<br />
interference from noise or other signals.<br />
Answer: C</p>
<p>QUESTION NO: 9<br />
certifyme.comoperates a DSL network. What does the &#8220;dsl operating-mode auto&#8221;<br />
command configure on a Cisco router?<br />
A. It configures a Cisco router to automatically detect the proper modulation method to<br />
use when connecting an ATM interface.<br />
B. It configures a Cisco router to automatically detect the proper DSL type (ADSL,<br />
IDSL, HDSL, VDSL) to use when connecting an ATM interface.<br />
C. It configures a Cisco router to automatically detect the proper encapsulation method to<br />
use when connecting an ATM interface<br />
D. It configures a Cisco router to automatically detect the proper authentication method<br />
to use when connecting an ATM interface.<br />
E. None of the above<br />
Answer: A<br />
Explanation:<br />
dsloperating-mode auto interface configuration command to specify that the router<br />
automatically detect the DSL modulation that the service provider is using and set the<br />
DSL modulation to match. An incompatible DSL modulation configuration can result in<br />
failure to establish a DSL connection to the DSLAM of the service provider<br />
Example:</p>
<p>Free Down:<a href="http://www.pass4sure.com/s.php?userid=100042&#038;dest=http://www.pass4sure.com/642-825.html&#038;type=1">pass4sure CCNP ISCW 642-825 V3.10</a><br />
<a href="http://affiliate.testking.com/adhit.php?i=0&#038;c=MjEyMnxFNzY0&#038;ad_channel=603">Testking iscw 642-825</a></p>
<p>password:www.ccnp.cc</p>
<p>Questions and Answers : 310 Q&#038;As<br />
Updated: 2008-09-02<br />
Market Price: $129.99<br />
Member Price: $89.99</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/download-new-pass4sure-p4s-ccnp-iscw-642-825-v310/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Pass4sure  Cisco  CCNP  ISCW   642-825 Exam</title>
		<link>http://www.ciscoexams.org/pass4sure-cisco-ccnp-iscw-642-825-exam/</link>
		<comments>http://www.ciscoexams.org/pass4sure-cisco-ccnp-iscw-642-825-exam/#comments</comments>
		<pubDate>Fri, 15 Aug 2008 02:10:59 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[ccnp]]></category>
		<category><![CDATA[iscw]]></category>
		<category><![CDATA[pass4sure]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=437</guid>
		<description><![CDATA[ISCW &#8211; Implementing Secure Converged Wide Area Networks : 642-825 Exam
Exam Number/Code: 642-825
Exam Name: ISCW &#8211; Implementing Secure Converged Wide Area Networks
VUE Code: 642-825
Questions Type: Single choice,
Exam	:	Cisco 642­825
Title	:
Implementing Secure Converged
Wide Area Networks (ISCW)
Update :	Demo
1. Refer to the exhibit, which shows a PPPoA diagram and partial SOHO77 configuration.
Which command needs to be applied to the SOHO77 [...]]]></description>
			<content:encoded><![CDATA[<p>ISCW &#8211; Implementing Secure Converged Wide Area Networks : 642-825 Exam<span id="more-437"></span></p>
<p>Exam Number/Code: 642-825<br />
Exam Name: ISCW &#8211; Implementing Secure Converged Wide Area Networks<br />
VUE Code: 642-825<br />
Questions Type: Single choice,</p>
<p>Exam	:	Cisco 642­825</p>
<p>Title	:</p>
<p>Implementing Secure Converged</p>
<p>Wide Area Networks (ISCW)</p>
<p>Update :	Demo</p>
<p>1. Refer to the exhibit, which shows a PPPoA diagram and partial SOHO77 configuration.</p>
<p>Which command needs to be applied to the SOHO77 to complete the configuration?</p>
<p>A. encapsulation aal5snap applied to the PVC.</p>
<p>B. encapsulation aal5ciscoppp applied to the PVC</p>
<p>C. encapsulation aal5ciscoppp applied to the ATM0 interface</p>
<p>D. encapsulation aal5mux ppp dialer applied to the ATM0 interface</p>
<p>E. encapsulation aal5mux ppp dialer applied to the PVC Answer: E</p>
<p>2. Which three techniques should be used to secure management protocols? (Choose three.)</p>
<p>A. Configure SNMP with only read­only community strings.</p>
<p>B. Encrypt TFTP and syslog traffic in an IPSec tunnel.</p>
<p>C. Implement RFC 3704 filtering at the perimeter router when allowing syslog access from devices on the outside of a firewall.<br />
D. Synchronize the NTP master clock with an Internet atomic clock.</p>
<p>E. Use SNMP version 2.</p>
<p>F. Use TFTP version 3 or above because these versions support a cryptographic authentication mechanism between peers.<br />
Answer: ABC</p>
<p>3. What are two steps that must be taken when mitigating a worm attack? (Choose two.)</p>
<p>A. Inoculate systems by applying update patches. B. Limit traffic rate.<br />
C. Apply authentication.</p>
<p>D. Quarantine infected machines. E. Enable anti­spoof measures Answer: AD</p>
<p>4. What is a reason for implementing MPLS in a network? A. MPLS eliminates the need of an IGP in the core.<br />
B. MPLS reduces the required number of BGP­enabled devices in the core.</p>
<p>C. Reduces routing table lookup since only the MPLS core routers perform routing table lookups.</p>
<p>D. MPLS eliminates the need for fully meshed connections between BGP enabled devices. Answer: B</p>
<p>5. Which three statements about IOS Firewall configurations are true? (Choose three.)</p>
<p>A. The IP inspection rule can be applied in the inbound direction on the secured interface.</p>
<p>B. The IP inspection rule can be applied in the outbound direction on the unsecured interface.</p>
<p>C. The ACL applied in the outbound direction on the unsecured interface should be an extended ACL.</p>
<p>D. The ACL applied in the inbound direction on the unsecured interface should be an extended ACL.</p>
<p>E. For temporary openings to be created dynamically by Cisco IOS Firewall, the access­list for the returning traffic must be a standard ACL.<br />
F. For temporary openings to be created dynamically by Cisco IOS Firewall, the IP inspection rule must be applied to the secured interface.<br />
Answer: ABD</p>
<p>6. Which three IPsec VPN statements are true? (Choose three.) A. IKE keepalives are unidirectional and sent every ten seconds.<br />
B. IKE uses the Diffie­Hellman algorithm to generate symmetrical keys to be used by IPsec peers.</p>
<p>C. IPsec uses the Encapsulating Security Protocol (ESP) or the Authentication Header (AH) protocol for exchanging keys.<br />
D. Main mode is the method used for the IKE phase two security association negotiations.</p>
<p>E. Quick mode is the method used for the IKE phase one security association negotiations.</p>
<p>F. To establish IKE SA, main mode utilizes six packets while aggressive mode utilizes only three packets. Answer: ABF</p>
<p>7. Which three MPLS statements are true? (Choose three.)</p>
<p>A. Cisco Express Forwarding (CEF) must be enabled as a prerequisite to running MPLS on a Cisco router.<br />
B. Frame­mode MPLS inserts a 32­bit label between the Layer 3 and Layer 4 headers.</p>
<p>C. MPLS is designed for use with frame­based Layer 2 encapsulation protocols such as Frame Relay, but</p>
<p>is not supported by ATM because of ATM fixed­length cells.</p>
<p>D. OSPF, EIGRP, IS­IS, RIP, and BGP can be used in the control plane. E. The control plane is responsible for forwarding packets.<br />
F. The two major components of MPLS include the control plane and the data plane. Answer: ADF</p>
<p>8. Refer to the exhibit.</p>
<p>What are the two options that are used to provide High Availability IPsec? (Choose two.)</p>
<p>A. RRI</p>
<p>B. IPsec Backup Peerings</p>
<p>C. Dynamic Crypto Map</p>
<p>D. HSRP</p>
<p>E. IPsec Stateful Switchover (SSO) F. Dual Router Mode (DRM) IPsec Answer: AD</p>
<p>9. Refer to the exhibit. What type of security solution will be provided for the inside network?</p>
<p>A. The TCP connection that matches the defined ACL will be reset by the router if the connection does not</p>
<p>complete the three­way handshake within the defined time period.</p>
<p>B. The router will reply to the TCP connection requests. If the three­way handshake completes successfully, the router will establish a TCP connection between itself and the server.<br />
C. The TCP traffic that matches the ACL will be allowed to pass through the router and create a TCP</p>
<p>connection with the server.</p>
<p>D. The router will intercept the traceroute messages. It will validate the connection requests before forwarding the packets to the inside network.<br />
Answer: B</p>
<p>10. Refer to the exhibit.</p>
<p>Which statement about the authentication process is true?</p>
<p>A. The LIST1 list will disable authentication on the console port.</p>
<p>B. Because no method list is specified, the LIST1 list will not authenticate anyone on the console port.</p>
<p>C. All login requests will be authenticated using the group tacacs+ method. D. All login requests will be authenticated using the local database method.<br />
E. The default login authentication will automatically be applied to all login connections.</p>
<p>Answer: A</p>
<p>11. Which three statements about the Cisco Easy VPN feature are true? (Choose three.)</p>
<p>A. If the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.</p>
<p>B. The Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.</p>
<p>C. The VPN client initiates aggressive mode (AM) if a pre­shared key is used for authentication during the</p>
<p>IKE phase 1 process.</p>
<p>D. The VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.<br />
E. The VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series</p>
<p>concentrators.</p>
<p>F. When connecting with a VPN client, the VPN server must be configured for ISAKMP group 1, 2 or 5. Answer: ABC</p>
<p>12. What are three features of the Cisco IOS Firewall feature set? (Choose three.) A. network­based application recognition (NBAR)</p>
<p>B. authentication proxy</p>
<p>C. stateful packet filtering</p>
<p>D. AAA services E. proxy server F. IPS<br />
Answer: BCF</p>
<p>13. Refer to the exhibit.</p>
<p>What does the &#8220;26&#8243; in the first two hop outputs indicate?</p>
<p>A. the outer label used to determine the next hop</p>
<p>B. the IPv4 label for the destination network</p>
<p>C. the IPv4 label for the forwarding router D. the IPv4 label for the destination router Answer: B</p>
<p>14. Which two statements about the Cisco AutoSecure feature are true? (Choose two.)</p>
<p>A. All passwords entered during the AutoSecure configuration must be a minimum of 8 characters in length.<br />
B. Cisco123 would be a valid password for both the enable password and the enable secret commands.</p>
<p>C. The auto secure command can be used to secure the router login as well as the NTP and SSH</p>
<p>protocols.</p>
<p>D. For an interactive full session of AutoSecure, the auto secure login command should be used.</p>
<p>E. If the SSH server was configured, the 1024 bit RSA keys are generated after the auto secure command</p>
<p>is enabled.</p>
<p>Answer: CE</p>
<p>15. Refer to the exhibit. Which statement is true about the configuration of split tunnels using SDM?</p>
<p>A. Any protected subnets that are entered represent subnets at the end user&#8217;s site that will be accessed</p>
<p>without going through the encrypted tunnel.</p>
<p>B. Any protected subnets that are entered represent subnets at the end user&#8217;s site that will be accessed through the encrypted tunnel.<br />
C. Any protected subnets that are entered represent subnets at the VPN server site that will be accessed</p>
<p>without going through the encrypted tunnel.</p>
<p>D. Any protected subnets that are entered represent subnets at the VPN server site that will be accessed</p>
<p>through the encrypted tunnel. Answer: D</p>
<p>16. Refer to the exhibit. Which statement is true about the partial MPLS configuration that is shown?</p>
<p>A. The route­target both 100:2 command sets import and export route­targets for vrf2.</p>
<p>B. The route­target both 100:2 command changes a VPNv4 route to a IPv4 route.</p>
<p>C. The route­target import 100:1 command sets import route­targets routes specified by the route map.</p>
<p>D. The route­target import 100:1 command sets import route­targets for vrf2 that override the other route­target configuration.<br />
Answer: A</p>
<p>17. Which two mechanisms can be used to detect IPsec GRE tunnel failures? (Choose two).</p>
<p>A. Dead Peer Detection (DPD) B. CDP<br />
C. isakmp keepalives</p>
<p>D. GRE keepalive mechanism</p>
<p>E. The hello mechanism of the routing protocol across the IPsec tunnel</p>
<p>Answer: AE</p>
<p>18. Which two statements are true about broadband cable (HFC) systems? (Choose two.)</p>
<p>A. Cable modems only operate at Layer 1 of the OSI model.</p>
<p>B. Cable modems operate at Layers 1 and 2 of the OSI model.</p>
<p>C. Cable modems operate at Layers 1, 2, and 3 of the OSI model.</p>
<p>D. A function of the cable modem termination system (CMTS) is to convert the modulated signal from the</p>
<p>cable modem into a digital signal.</p>
<p>E. A function of the cable modem termination system is to convert the digital data stream from the end user host into a modulated RF signal for transmission onto the cable system.<br />
Answer: BD</p>
<p>19. What are three configurable parameters when editing signatures in Security Device Manager (SDM)?</p>
<p>(Choose three.) A. AlarmSeverity<br />
B. AlarmKeepalive</p>
<p>C. AlarmTraits D. EventMedia E. EventAlarm F. EventAction Answer: ACF</p>
<p>20. Which two statements about common network attacks are true? (Choose two.)</p>
<p>A. Access attacks can consist of password attacks, trust exploitation, port redirection, and man­in­the­middle attacks.<br />
B. Access attacks can consist of password attacks, ping sweeps, port scans, and man­in­the­middle attacks.<br />
C. Access attacks can consist of packet sniffers, ping sweeps, port scans, and man­in­the­middle attacks.</p>
<p>D. Reconnaissance attacks can consist of password attacks, trust exploitation, port redirection and</p>
<p>Internet information queries.</p>
<p>E. Reconnaissance attacks can consist of packet sniffers, port scans, ping sweeps, and Internet information queries.<br />
F. Reconnaissance attacks can consist of ping sweeps, port scans, man­in­middle attacks and Internet</p>
<p>information queries. Answer: AE</p>
<p>21. Refer to the exhibit.</p>
<p>Which three statements describe the steps that are required to configure an IPsec site­to­site VPN using a</p>
<p>GRE tunnel? (Choose three.)</p>
<p>A. The command access­list 110 permit gre must be configured to specify which traffic will be encrypted.</p>
<p>B. The command access­list 110 permit ip must be configured to specify which hosts can use the tunnel.</p>
<p>C. The tunnel destination 172.17.63.18 command must be configured on the Tunnel0 interface.</p>
<p>D. The tunnel mode gre command must be configured on the Tunnel0 interface.</p>
<p>E. The tunnel source Ethernet1 command must be configured on the Tunnel0 interface.</p>
<p>F. The tunnel source Tunnel0 command must be configured on the Tunnel0 interface. Answer: ACE</p>
<p>22. Which form of DSL technology is typically used as a replacement for T1 lines?</p>
<p>A. VDSL B. HDSL C. ADSL D. SDSL<br />
E. G.SHDSL</p>
<p>F. IDSL Answer: B</p>
<p>23. Which three statements are true when configuring Cisco IOS Firewall features using the SDM?</p>
<p>(Choose three.)</p>
<p>A. A custom application security policy can be configured in the Advanced Firewall Security Configuration dialog box.<br />
B. An optional DMZ interface can be specified in the Advanced Firewall Interface Configuration dialog</p>
<p>box.</p>
<p>C. Custom application policies for e­mail, instant messaging, HTTP, and peer­to­peer services can be created using the Intermediate Firewall wizard.<br />
D. Only the outside (untrusted) interface is specified in the Basic Firewall Interface Configuration dialog</p>
<p>box.</p>
<p>E. The outside interface that SDM can be launched from is configured in the Configuring Firewall for</p>
<p>Remote Access dialog box.</p>
<p>F. The SDM provides a basic, intermediate, and advanced firewall wizard. Answer: ABE</p>
<p>24. Refer to the exhibit. On the basis of the partial configuration, which two statements are true? (Choose two.)</p>
<p>A. A CBAC inspection rule is configured on router RTA.</p>
<p>B. A named ACL called SDM_LOW is configured on router RTA.</p>
<p>C. A QoS policy has been applied on interfaces Serial 0/0 and FastEthernet 0/1.</p>
<p>D. Interface Fa0/0 should be the inside interface and interface Fa0/1 should be the outside interface.</p>
<p>E. On interface Fa0/0, the ip inspect statement should be incoming.</p>
<p>F. The interface commands ip inspect SDM_LOW in allow CBAC to monitor multiple protocols.</p>
<p>Answer: AF</p>
<p>25. Which three statements about frame­mode MPLS are true? (Choose three.)</p>
<p>A. MPLS has three distinct components consisting of the data plane, the forwarding plane, and the control plane.<br />
B. The control plane is a simple label­based forwarding engine that is independent of the type of routing</p>
<p>protocol or label exchange protocol.</p>
<p>C. The CEF FIB table contains information about outgoing interfaces and their corresponding Layer 2</p>
<p>header.</p>
<p>D. The MPLS data plane takes care of forwarding based on either destination addresses or labels.</p>
<p>E. To exchange labels, the control plane requires protocols such as Tag Distribution Protocol (TDP) or</p>
<p>MPLS Label Distribution Protocol (LDP).</p>
<p>F. Whenever a router receives a packet that should be CEF­switched, but the destination is not in the FIB, the packet is dropped.<br />
Answer: DEF</p>
<p>26. What are the four fields in an MPLS label? (Choose four.) A. version<br />
B. experimental</p>
<p>C. label</p>
<p>D. protocol</p>
<p>E. TTL</p>
<p>F. bottom­of­stack indicator</p>
<p>Answer: BCEF</p>
<p>27. Which statement is true when ICMP echo and echo­reply are disabled on edge devices?</p>
<p>A. Pings are allowed only to specific devices. B. CDP information is not exchanged.</p>
<p>C. Port scans can no longer be run.</p>
<p>D. Some network diagnostic data is lost.</p>
<p>E. Wireless devices need to be physically connected to the edge device.</p>
<p>F. OSPF routing needs the command ip ospf network non­broadcast enabled. Answer: D</p>
<p>28. Which statement is true about a worm attack?</p>
<p>A. Human interaction is required to facilitate the spread.</p>
<p>B. The worm executes arbitrary code and installs copies of itself in the memory of the infected computer.</p>
<p>C. Extremely large volumes of requests are sent over a network or over the Internet.</p>
<p>D. Data or commands are injected into an existing stream of data. That stream is passed between a client and server application.<br />
Answer: B</p>
<p>29. Refer to the exhibit. Which order correctly identifies the steps to provision a cable modem to connect</p>
<p>to a headend as defined by the DOCSIS standard?</p>
<p>A. A, D, C, G, E, F, B</p>
<p>B. A, D, E, G, C, F, B C. C, D, F, G, E, A, B D. C, D, F, G, A, E, B E. F, D, C, G, A, E, B F. F, D, C, G, E, A, B Answer: E</p>
<p>30. Refer to the exhibit.</p>
<p>On the basis of the information that is provided, which two statements are true? (Choose two.)</p>
<p>A. An IPS policy can be edited by choosing the Edit button.</p>
<p>B. Right­clicking on an interface will display a shortcut menu with options to edit an action or to set severity levels.<br />
C. The Edit IPS window is currently in Global Settings view.</p>
<p>D. The Edit IPS window is currently in IPS Policies view. E. The Edit IPS window is currently in Signatures view.<br />
F. To enable an IPS policy on an interface, click on the interface and deselect Disable. Answer: AD</p>
<p>KillTest.com was founded in 2006. The safer,easier way to help you pass any IT<br />
Certification exams . We provide high quality IT Certification exams practice questions and answers(Q&#038;A). Especially   Adob e,   Apple,   Cit rix,   Compt ia,   EM C,<br />
 HP,     Hu aW ei,   LPI,   No rtel,   Oracle ,   SUN,   Vmw are  and so on. And help you pass any IT Certification exams at the first try.<br />
You can reach us at any of the email addresses listed below. English Customer:	Chinese Customer: Sales	: sales@Killtest.com	sales@Killtest.net<br />
Support: support@Killtest.com	support@Killtest.com</p>
<p>&#8220;<a href="http://www.ccnp.cc/tag/iscw">ISCW</a> &#8211; Implementing Secure Converged Wide Area Networks&#8221;, also known as 642-825 exam, is a <a href="http://www.ciscoexams.org">Cisco certification</a>.<br />
Preparing for the <a href="http://www.ciscoexams.org/ccnp-iscw-official-exam-certification-guide/">642-825 exam</a>? Searching 642-825 Test Questions, 642-825 Practice Exam, <a href="http://www.ciscoexams.org/ccnp-iscw-official-exam-certification-guide/">642-825 Dumps</a>?</p>
<p>With the complete collection of questions and answers, Pass4sure has assembled to take you through 172 Q&#038;As to your 642-825 Exam preparation. In the 642-825 exam resources, you will cover every field and category in <a href="http://www.ccnp.cc">CCNP</a> helping to ready you for your successful Cisco Certification.<br />
Questions and Answers : 172 Q&#038;As<br />
Updated: April 5th , 2008<br />
Market Price: $129.99<br />
Member Price: $89.99</p>
<p>Free down: <a href="http://www.pass4sure.com/s.php?userid=100042&#038;dest=http://www.pass4sure.com/642-825.html&#038;type=1">pass4sure ccnp  642-825 v3.10</a></p>
<p>Free down: <a href="http://affiliate.testking.com/adhit.php?i=0&#038;c=MjEyMnxFNzY0&#038;ad_channel=603">testking ccnp 642-825</a></p>
<p>password:www.ccnp.cc</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/pass4sure-cisco-ccnp-iscw-642-825-exam/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Pass4sure  Cisco  CCNP Iscw  642-825  Exam v2.95</title>
		<link>http://www.ciscoexams.org/pass4sure-cisco-ccnp-iscw-642-825-exam-v295/</link>
		<comments>http://www.ciscoexams.org/pass4sure-cisco-ccnp-iscw-642-825-exam-v295/#comments</comments>
		<pubDate>Wed, 16 Jul 2008 22:44:48 +0000</pubDate>
		<dc:creator>Free Cisco Exams Learning Resources</dc:creator>
				<category><![CDATA[642-825]]></category>
		<category><![CDATA[ccnp]]></category>
		<category><![CDATA[iscw]]></category>

		<guid isPermaLink="false">http://www.ciscoexams.org/?p=325</guid>
		<description><![CDATA[ISCW &#8211; Implementing Secure Converged Wide Area Networks : 642-825 Exam

The Implementing Secure Converged Wide Area Networks (ISCW 642-825) is a qualifying exam for the Cisco Certified Network Professional CCNP®. The ISCW 642-825 exam will certify that the successful candidate has important knowledge and skills necessary to secure and expand the reach of an enterprise [...]]]></description>
			<content:encoded><![CDATA[<p>ISCW &#8211; Implementing Secure Converged Wide Area Networks : <a href="http://www.pass4sure.cc/free-lateat-pass4sure-cisco-ccnp-iscw-642-825-exam-v295/">642-825</a> Exam<span id="more-325"></span></p>
<p><a href="http://www.pass4sure.cc/wp-content/uploads/2008/07/1.jpg"><img class="aligncenter size-medium wp-image-1263" title="1" src="http://www.pass4sure.cc/wp-content/uploads/2008/07/1-300x223.jpg" alt="" width="300" height="223" /></a></p>
<p><a href="http://www.pass4sure.cc/wp-content/uploads/2008/07/2.jpg"><img class="alignnone size-medium wp-image-1264" title="2" src="http://www.pass4sure.cc/wp-content/uploads/2008/07/2-300x215.jpg" alt="" width="300" height="215" /></a>The Implementing Secure Converged Wide Area Networks (ISCW 642-825) is a qualifying exam for the Cisco Certified Network Professional CCNP®. The ISCW <a href="http://www.ciscoexams.org/category/642-825">642-825 </a>exam will certify that the successful candidate has important knowledge and skills necessary to secure and expand the reach of an enterprise network to teleworkers and remote sites with focus on securing remote access and VPN client configuration. The exam covers topics on Cisco hierarchical network model as it pertains to the WAN, teleworker configuration and access, frame mode MPLS, site-to-site IPSEC VPN, Cisco EZVPN, strategies used to mitigate network attacks, Cisco device hardening and IOS firewall features.</p>
<div class="details">
<p>Exam Number/Code: <strong><span class="sfont"><a href="http://affiliate.testking.com/adhit.php?i=0&amp;c=MjEyMnxFNzY0&amp;ad_channel=603">642-825</a></span></strong><br />
Exam Name: <span class="sfont">ISCW &#8211; Implementing Secure Converged Wide Area Networks</span><br />
VUE Code: <strong>642-825</strong><br />
Questions Type: Single choice,</p>
</div>
<p>Exam	:	Cisco 642­-825</p>
<p>Title	:</p>
<p>Implementing Secure Converged</p>
<p>Wide Area Networks (ISCW)</p>
<p>Update :	Demo</p>
<p>1. Refer to the exhibit, which shows a PPPoA diagram and partial SOHO77 configuration.</p>
<p>Which command needs to be applied to the SOHO77 to complete the configuration?</p>
<p>A. encapsulation aal5snap applied to the PVC.</p>
<p>B. encapsulation aal5ciscoppp applied to the PVC</p>
<p>C. encapsulation aal5ciscoppp applied to the ATM0 interface</p>
<p>D. encapsulation aal5mux ppp dialer applied to the ATM0 interface</p>
<p>E. encapsulation aal5mux ppp dialer applied to the PVC Answer: E</p>
<p>2. Which three techniques should be used to secure management protocols? (Choose three.)</p>
<p>A. Configure SNMP with only read­only community strings.</p>
<p>B. Encrypt TFTP and syslog traffic in an IPSec tunnel.</p>
<p>C. Implement RFC 3704 filtering at the perimeter router when allowing syslog access from devices on the outside of a firewall.<br />
D. Synchronize the NTP master clock with an Internet atomic clock.</p>
<p>E. Use SNMP version 2.</p>
<p>F. Use TFTP version 3 or above because these versions support a cryptographic authentication mechanism between peers.<br />
Answer: ABC</p>
<p>3. What are two steps that must be taken when mitigating a worm attack? (Choose two.)</p>
<p>A. Inoculate systems by applying update patches. B. Limit traffic rate.<br />
C. Apply authentication.</p>
<p>D. Quarantine infected machines. E. Enable anti­spoof measures Answer: AD</p>
<p>4. What is a reason for implementing MPLS in a network? A. MPLS eliminates the need of an IGP in the core.<br />
B. MPLS reduces the required number of BGP­enabled devices in the core.</p>
<p>C. Reduces routing table lookup since only the MPLS core routers perform routing table lookups.</p>
<p>D. MPLS eliminates the need for fully meshed connections between BGP enabled devices. Answer: B</p>
<p>5. Which three statements about IOS Firewall configurations are true? (Choose three.)</p>
<p>A. The IP inspection rule can be applied in the inbound direction on the secured interface.</p>
<p>B. The IP inspection rule can be applied in the outbound direction on the unsecured interface.</p>
<p>C. The ACL applied in the outbound direction on the unsecured interface should be an extended ACL.</p>
<p>D. The ACL applied in the inbound direction on the unsecured interface should be an extended ACL.</p>
<p>E. For temporary openings to be created dynamically by Cisco IOS Firewall, the access­list for the returning traffic must be a standard ACL.<br />
F. For temporary openings to be created dynamically by Cisco IOS Firewall, the IP inspection rule must be applied to the secured interface.<br />
Answer: ABD</p>
<p>6. Which three IPsec VPN statements are true? (Choose three.) A. IKE keepalives are unidirectional and sent every ten seconds.<br />
B. IKE uses the Diffie­Hellman algorithm to generate symmetrical keys to be used by IPsec peers.</p>
<p>C. IPsec uses the Encapsulating Security Protocol (ESP) or the Authentication Header (AH) protocol for exchanging keys.<br />
D. Main mode is the method used for the IKE phase two security association negotiations.</p>
<p>E. Quick mode is the method used for the IKE phase one security association negotiations.</p>
<p>F. To establish IKE SA, main mode utilizes six packets while aggressive mode utilizes only three packets. Answer: ABF</p>
<p>7. Which three MPLS statements are true? (Choose three.)</p>
<p>A. Cisco Express Forwarding (CEF) must be enabled as a prerequisite to running MPLS on a Cisco router.<br />
B. Frame­mode MPLS inserts a 32­bit label between the Layer 3 and Layer 4 headers.</p>
<p>C. MPLS is designed for use with frame­based Layer 2 encapsulation protocols such as Frame Relay, but</p>
<p>is not supported by ATM because of ATM fixed­length cells.</p>
<p>D. OSPF, EIGRP, IS­IS, RIP, and BGP can be used in the control plane. E. The control plane is responsible for forwarding packets.<br />
F. The two major components of MPLS include the control plane and the data plane. Answer: ADF</p>
<p>8. Refer to the exhibit.</p>
<p>What are the two options that are used to provide High Availability IPsec? (Choose two.)</p>
<p>A. RRI</p>
<p>B. IPsec Backup Peerings</p>
<p>C. Dynamic Crypto Map</p>
<p>D. HSRP</p>
<p>E. IPsec Stateful Switchover (SSO) F. Dual Router Mode (DRM) IPsec Answer: AD</p>
<p>9. Refer to the exhibit. What type of security solution will be provided for the inside network?</p>
<p>A. The TCP connection that matches the defined ACL will be reset by the router if the connection does not</p>
<p>complete the three­way handshake within the defined time period.</p>
<p>B. The router will reply to the TCP connection requests. If the three­way handshake completes successfully, the router will establish a TCP connection between itself and the server.<br />
C. The TCP traffic that matches the ACL will be allowed to pass through the router and create a TCP</p>
<p>connection with the server.</p>
<p>D. The router will intercept the traceroute messages. It will validate the connection requests before forwarding the packets to the inside network.<br />
Answer: B</p>
<p>10. Refer to the exhibit.</p>
<p>Which statement about the authentication process is true?</p>
<p>A. The LIST1 list will disable authentication on the console port.</p>
<p>B. Because no method list is specified, the LIST1 list will not authenticate anyone on the console port.</p>
<p>C. All login requests will be authenticated using the group tacacs+ method. D. All login requests will be authenticated using the local database method.<br />
E. The default login authentication will automatically be applied to all login connections.</p>
<p>Answer: A</p>
<p>11. Which three statements about the Cisco Easy VPN feature are true? (Choose three.)</p>
<p>A. If the VPN server is configured for Xauth, the VPN client waits for a username / password challenge.</p>
<p>B. The Cisco Easy VPN feature only supports transform sets that provide authentication and encryption.</p>
<p>C. The VPN client initiates aggressive mode (AM) if a pre­shared key is used for authentication during the</p>
<p>IKE phase 1 process.</p>
<p>D. The VPN client verifies a server username/password challenge by using a AAA authentication server that supports TACACS+ or RADIUS.<br />
E. The VPN server can only be enabled on Cisco PIX Firewalls and Cisco VPN 3000 series</p>
<p>concentrators.</p>
<p>F. When connecting with a VPN client, the VPN server must be configured for ISAKMP group 1, 2 or 5. Answer: ABC</p>
<p>12. What are three features of the Cisco IOS Firewall feature set? (Choose three.) A. network­based application recognition (NBAR)</p>
<p>B. authentication proxy</p>
<p>C. stateful packet filtering</p>
<p>D. AAA services E. proxy server F. IPS<br />
Answer: BCF</p>
<p>13. Refer to the exhibit.</p>
<p>What does the &#8220;26&#8243; in the first two hop outputs indicate?</p>
<p>A. the outer label used to determine the next hop</p>
<p>B. the IPv4 label for the destination network</p>
<p>C. the IPv4 label for the forwarding router D. the IPv4 label for the destination router Answer: B</p>
<p>14. Which two statements about the Cisco AutoSecure feature are true? (Choose two.)</p>
<p>A. All passwords entered during the AutoSecure configuration must be a minimum of 8 characters in length.<br />
B. Cisco123 would be a valid password for both the enable password and the enable secret commands.</p>
<p>C. The auto secure command can be used to secure the router login as well as the NTP and SSH</p>
<p>protocols.</p>
<p>D. For an interactive full session of AutoSecure, the auto secure login command should be used.</p>
<p>E. If the SSH server was configured, the 1024 bit RSA keys are generated after the auto secure command</p>
<p>is enabled.</p>
<p>Answer: CE</p>
<p>15. Refer to the exhibit. Which statement is true about the configuration of split tunnels using SDM?</p>
<p>A. Any protected subnets that are entered represent subnets at the end user&#8217;s site that will be accessed</p>
<p>without going through the encrypted tunnel.</p>
<p>B. Any protected subnets that are entered represent subnets at the end user&#8217;s site that will be accessed through the encrypted tunnel.<br />
C. Any protected subnets that are entered represent subnets at the VPN server site that will be accessed</p>
<p>without going through the encrypted tunnel.</p>
<p>D. Any protected subnets that are entered represent subnets at the VPN server site that will be accessed</p>
<p>through the encrypted tunnel. Answer: D</p>
<p>16. Refer to the exhibit. Which statement is true about the partial MPLS configuration that is shown?</p>
<p>A. The route­target both 100:2 command sets import and export route­targets for vrf2.</p>
<p>B. The route­target both 100:2 command changes a VPNv4 route to a IPv4 route.</p>
<p>C. The route­target import 100:1 command sets import route­targets routes specified by the route map.</p>
<p>D. The route­target import 100:1 command sets import route­targets for vrf2 that override the other route­target configuration.<br />
Answer: A</p>
<p>17. Which two mechanisms can be used to detect IPsec GRE tunnel failures? (Choose two).</p>
<p>A. Dead Peer Detection (DPD) B. CDP<br />
C. isakmp keepalives</p>
<p>D. GRE keepalive mechanism</p>
<p>E. The hello mechanism of the routing protocol across the IPsec tunnel</p>
<p>Answer: AE</p>
<p>18. Which two statements are true about broadband cable (HFC) systems? (Choose two.)</p>
<p>A. Cable modems only operate at Layer 1 of the OSI model.</p>
<p>B. Cable modems operate at Layers 1 and 2 of the OSI model.</p>
<p>C. Cable modems operate at Layers 1, 2, and 3 of the OSI model.</p>
<p>D. A function of the cable modem termination system (CMTS) is to convert the modulated signal from the</p>
<p>cable modem into a digital signal.</p>
<p>E. A function of the cable modem termination system is to convert the digital data stream from the end user host into a modulated RF signal for transmission onto the cable system.<br />
Answer: BD</p>
<p>19. What are three configurable parameters when editing signatures in Security Device Manager (SDM)?</p>
<p>(Choose three.) A. AlarmSeverity<br />
B. AlarmKeepalive</p>
<p>C. AlarmTraits D. EventMedia E. EventAlarm F. EventAction Answer: ACF</p>
<p>20. Which two statements about common network attacks are true? (Choose two.)</p>
<p>A. Access attacks can consist of password attacks, trust exploitation, port redirection, and man­in­the­middle attacks.<br />
B. Access attacks can consist of password attacks, ping sweeps, port scans, and man­in­the­middle attacks.<br />
C. Access attacks can consist of packet sniffers, ping sweeps, port scans, and man­in­the­middle attacks.</p>
<p>D. Reconnaissance attacks can consist of password attacks, trust exploitation, port redirection and</p>
<p>Internet information queries.</p>
<p>E. Reconnaissance attacks can consist of packet sniffers, port scans, ping sweeps, and Internet information queries.<br />
F. Reconnaissance attacks can consist of ping sweeps, port scans, man­in­middle attacks and Internet</p>
<p>information queries. Answer: AE</p>
<p>21. Refer to the exhibit.</p>
<p>Which three statements describe the steps that are required to configure an IPsec site­to­site VPN using a</p>
<p>GRE tunnel? (Choose three.)</p>
<p>A. The command access­list 110 permit gre must be configured to specify which traffic will be encrypted.</p>
<p>B. The command access­list 110 permit ip must be configured to specify which hosts can use the tunnel.</p>
<p>C. The tunnel destination 172.17.63.18 command must be configured on the Tunnel0 interface.</p>
<p>D. The tunnel mode gre command must be configured on the Tunnel0 interface.</p>
<p>E. The tunnel source Ethernet1 command must be configured on the Tunnel0 interface.</p>
<p>F. The tunnel source Tunnel0 command must be configured on the Tunnel0 interface. Answer: ACE</p>
<p>22. Which form of DSL technology is typically used as a replacement for T1 lines?</p>
<p>A. VDSL B. HDSL C. ADSL D. SDSL<br />
E. G.SHDSL</p>
<p>F. IDSL Answer: B</p>
<p>23. Which three statements are true when configuring Cisco IOS Firewall features using the SDM?</p>
<p>(Choose three.)</p>
<p>A. A custom application security policy can be configured in the Advanced Firewall Security Configuration dialog box.<br />
B. An optional DMZ interface can be specified in the Advanced Firewall Interface Configuration dialog</p>
<p>box.</p>
<p>C. Custom application policies for e­mail, instant messaging, HTTP, and peer­to­peer services can be created using the Intermediate Firewall wizard.<br />
D. Only the outside (untrusted) interface is specified in the Basic Firewall Interface Configuration dialog</p>
<p>box.</p>
<p>E. The outside interface that SDM can be launched from is configured in the Configuring Firewall for</p>
<p>Remote Access dialog box.</p>
<p>F. The SDM provides a basic, intermediate, and advanced firewall wizard. Answer: ABE</p>
<p>24. Refer to the exhibit. On the basis of the partial configuration, which two statements are true? (Choose two.)</p>
<p>A. A CBAC inspection rule is configured on router RTA.</p>
<p>B. A named ACL called SDM_LOW is configured on router RTA.</p>
<p>C. A QoS policy has been applied on interfaces Serial 0/0 and FastEthernet 0/1.</p>
<p>D. Interface Fa0/0 should be the inside interface and interface Fa0/1 should be the outside interface.</p>
<p>E. On interface Fa0/0, the ip inspect statement should be incoming.</p>
<p>F. The interface commands ip inspect SDM_LOW in allow CBAC to monitor multiple protocols.</p>
<p>Answer: AF</p>
<p>25. Which three statements about frame­mode MPLS are true? (Choose three.)</p>
<p>A. MPLS has three distinct components consisting of the data plane, the forwarding plane, and the control plane.<br />
B. The control plane is a simple label­based forwarding engine that is independent of the type of routing</p>
<p>protocol or label exchange protocol.</p>
<p>C. The CEF FIB table contains information about outgoing interfaces and their corresponding Layer 2</p>
<p>header.</p>
<p>D. The MPLS data plane takes care of forwarding based on either destination addresses or labels.</p>
<p>E. To exchange labels, the control plane requires protocols such as Tag Distribution Protocol (TDP) or</p>
<p>MPLS Label Distribution Protocol (LDP).</p>
<p>F. Whenever a router receives a packet that should be CEF­switched, but the destination is not in the FIB, the packet is dropped.<br />
Answer: DEF</p>
<p>26. What are the four fields in an MPLS label? (Choose four.) A. version<br />
B. experimental</p>
<p>C. label</p>
<p>D. protocol</p>
<p>E. TTL</p>
<p>F. bottom­of­stack indicator</p>
<p>Answer: BCEF</p>
<p>27. Which statement is true when ICMP echo and echo­reply are disabled on edge devices?</p>
<p>A. Pings are allowed only to specific devices. B. CDP information is not exchanged.</p>
<p>C. Port scans can no longer be run.</p>
<p>D. Some network diagnostic data is lost.</p>
<p>E. Wireless devices need to be physically connected to the edge device.</p>
<p>F. OSPF routing needs the command ip ospf network non­broadcast enabled. Answer: D</p>
<p>28. Which statement is true about a worm attack?</p>
<p>A. Human interaction is required to facilitate the spread.</p>
<p>B. The worm executes arbitrary code and installs copies of itself in the memory of the infected computer.</p>
<p>C. Extremely large volumes of requests are sent over a network or over the Internet.</p>
<p>D. Data or commands are injected into an existing stream of data. That stream is passed between a client and server application.<br />
Answer: B</p>
<p>29. Refer to the exhibit. Which order correctly identifies the steps to provision a cable modem to connect</p>
<p>to a headend as defined by the DOCSIS standard?</p>
<p>A. A, D, C, G, E, F, B</p>
<p>B. A, D, E, G, C, F, B C. C, D, F, G, E, A, B D. C, D, F, G, A, E, B E. F, D, C, G, A, E, B F. F, D, C, G, E, A, B Answer: E</p>
<p>30. Refer to the exhibit.</p>
<p>On the basis of the information that is provided, which two statements are true? (Choose two.)</p>
<p>A. An IPS policy can be edited by choosing the Edit button.</p>
<p>B. Right­clicking on an interface will display a shortcut menu with options to edit an action or to set severity levels.<br />
C. The Edit IPS window is currently in Global Settings view.</p>
<p>D. The Edit IPS window is currently in IPS Policies view. E. The Edit IPS window is currently in Signatures view.<br />
F. To enable an IPS policy on an interface, click on the interface and deselect Disable. Answer: AD</p>
<p>KillTest.com was founded in 2006. The safer,easier way to help you pass any IT<br />
Certification exams . We provide high quality IT Certification exams practice questions and answers(Q&#038;A). Especially   Adob e,   Apple,   Cit rix,   Compt ia,   EM C,<br />
 HP,     Hu aW ei,   LPI,   No rtel,   Oracle ,   SUN,   Vmw are  and so on. And help you pass any IT Certification exams at the first try.<br />
You can reach us at any of the email addresses listed below. English Customer:	Chinese Customer: Sales	: sales@Killtest.com	sales@Killtest.net<br />
Support: support@Killtest.com	support@Killtest.com</p>
<p class="details">&#8220;ISCW &#8211; Implementing Secure Converged Wide Area Networks&#8221;, also known as <a href="http://www.certbible.org">642-825</a> exam, is a Cisco certification.<br />
<em>Preparing for the <a href="http://www.ciscoexams.org/ccnp-iscw-official-exam-certification-guide/">642-825 exam</a>? Searching  642-825 Test Questions, 642-825 Practice Exam, <a href="http://www.ciscoexams.org/ccnp-iscw-official-exam-certification-guide/">642-825 Dumps</a>?</em></p>
<p class="details">With the complete collection of questions and answers, Pass4sure has assembled to take you through 172 Q&amp;As to your 642-825 Exam preparation. In the <strong><a href="http://www.pass4sure.com/static_affiliate.php?userid=100042&amp;type=0">642-825</a></strong> exam resources, you will cover every field and category in CCNP helping to ready you for your successful Cisco Certification.</p>
<div class="details">Questions and Answers : <span class="sfont">172 Q&amp;As</span><br />
Updated: April 5th , 2008<br />
Market Price: <span class="sfont">$99.99</span><br />
Member Price: <span style="color: #008000;">$79.99</span></div>
<div class="details"><span style="color: #008000;"></p>
<p>Free download?<a href="http://www.pass4sure.com/s.php?userid=100042&#038;dest=http://www.pass4sure.com/642-825.html&#038;type=1">pass4sure ccnp  642-825  Exam v2.95</a><br />
Free download?<a href="http://www.examguard.net/testking/cisco">testking ccnp  642-825  Exam v2.95</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ciscoexams.org/pass4sure-cisco-ccnp-iscw-642-825-exam-v295/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>
