显示标签为“SCP”的博文。显示所有博文
显示标签为“SCP”的博文。显示所有博文

2014年1月14日星期二

SCP certification SC0-501 exam test software

ITCertKing SCP SC0-501 dumps are validated by many more candidates, which can guarantee a high success rate. After you use our dumps, you still fail the exam so that ITCertKing will give you FULL REFUND. Or you can choose to free update your exam dumps. With such protections, you don't need to worry.

IT exam become more important than ever in today's highly competitive world, these things mean a different future. SCP SC0-501 exam will be a milestone in your career, and may dig into new opportunities, but how do you pass SCP SC0-501 exam? Do not worry, help is at hand, with ITCertKing you no longer need to be afraid. ITCertKing SCP SC0-501 exam questions and answers is the pioneer in exam preparation.

Exam Code: SC0-501
Exam Name: SCP (Enterprise Security Implementation (ESI) )
One year free update, No help, Full refund!
Total Q&A: 50 Questions and Answers
Last Update: 2014-01-14

SCP SC0-501 certification can guarantee you have good job prospects, because SCP certification SC0-501 exam is a difficult test of IT knowledge, passing SCP certification SC0-501 exam proves that your IT expertise a strong and you can be qualified for a good job.

SCP SC0-501 is a certification exam to test IT expertise and skills. If you find a job in the IT industry, many human resource managers in the interview will reference what SCP related certification you have. If you have SCP SC0-501 certification, apparently, it can improve your competitiveness.

I believe that people want to have good prospects of career whatever industry they work in. Of course, there is no exception in the competitive IT industry. IT Professionals working in the IT area also want to have good opportunities for promotion of job and salary. A lot of IT professional know that SCP certification SC0-501 exam can help you meet these aspirations. ITCertKing is a website which help you successfully pass SCP SC0-501.

If you attend SCP certification SC0-501 exams, your choosing ITCertKing is to choose success! I wish you good luck.

SC0-501 Free Demo Download: http://www.itcertking.com/SC0-501_exam.html

NO.1 If you receive an X.509 digital certificate that has a unique identifier, but has no extensions, what
version is the certificate?
A.It is a Version 2 certificate
B.It is a Version 3 certificate
C.It is a Version 1 certificate
D.All X.509 digital certificates have unique identifiers
E.The unique identifier is determined by implementation, not version number
Answer: A

SCP answers real questions   SC0-501 answers real questions   SC0-501 exam dumps   SC0-501 test   SC0-501

NO.2 What type of information can be learned from a user
COOKIES/index.dat file?
A.Their MAC address
B.Their IP address
C.Their email address
D.The websites they have visited
E.The user logon name
Answer: DE

SCP   SC0-501 questions   SC0-501

NO.3 Which of the following numbers are Non-Prime Numbers?
A.23
B.2
C.24
D.39
E.17
Answer: CD

SCP test   SC0-501 exam simulations   SC0-501

NO.4 When an OCSP responder provides a digitally signed response for each of the certificates sent to it by
the relying party in the original request, its reply consists of the certificate identifier, one of three status
values and a validity interval. What are the three status values?
A.Okay, Not Okay, Revoked
B.This Update, Next Update, Future Update
C.Good, Revoked, Unknown
D.Issuer
Public Key, Hash of the Private Key, Unknown
E.Issuer
Private Key, Thumbprint of the Public Key, Unknown
Answer: C

SCP test questions   SC0-501   SC0-501 test answers   SC0-501

NO.5 In PGP, there are two conditions that can be present to provide for the validity of a certificate. What
are these two conditions?
A.The certificate has been digitally signed by your local trusted root Certificate Authority.
B.The certificate is digitally signed by at least one completely trusted key holder, who has a valid
certificate.
C.The certificate is digitally signed by at least two of the marginally trusted key holders, who have valid
certificates.
D.The certificate has been digitally signed by the sender
trusted root Certificate Authority.
E.The certificate is digitally signed by the sender, who is authenticated by your local Certificate Authority.
Answer: BC

SCP   SC0-501   SC0-501 certification

NO.6 When using the 3DES encryption ( C = E
?K1
[D
?K2
[E
?K1
[P]]] ) , what is the function of D?
A.D is the text before encryption
B.D is the first encryption key
C.D is the second encryption key
D.D is the decryption key
E.D is the text after encryption
Answer: D

SCP   SC0-501 exam   SC0-501 certification training   SC0-501

NO.7 Which of the following can be protected by a patent?
A.A new invention
B.A new product
C.A new process
D.A new name
E.An old product made in a new way
Answer: ABCE

SCP certification   SC0-501   SC0-501 practice test

NO.8 If you capture an 802.11 frame, and the ToDS bit is set to zero and the FromDS bit is set to zero, what
type of WLAN is this frame a part of?
A.Mesh
B.Broadcast
C.Infrastructure
D.Hierarchical
E.Ad Hoc
Answer: E

SCP exam dumps   SC0-501 exam   SC0-501   SC0-501   SC0-501 dumps

NO.9 There are many certificate templates built into Windows 2000 Certificate Servers. Which of the
following user templates are valid for client authentication?
A.Smart Card Logon
B.Domain Controller
C.Authenticated Session
D.IPSec (Offline Request)
E.Smart Card User
Answer: ACE

SCP   SC0-501 study guide   SC0-501   SC0-501   SC0-501

NO.10 When you install and use PGP on your local computer, where is the key pair stored, by default?
A.secret.ring
B.public.ring
C./usr/bin/pgp
D.pubring.pkr
E.secring.pkr
Answer: DE

SCP exam dumps   SC0-501   SC0-501   SC0-501   SC0-501 answers real questions

NO.11 If your goal is to make your CA issue certificates that have specific key usage, what can you use to
achieve this goal?
A.This can be done by using unique DNs for each key use that you want.
B.This can be done by using OIDs for each key use that you want.
C.This can be done by using unique CNs for each key use that you want.
D.This can only be done by selecting the key use options during the setup of the CA.
E.This can be done by installing the identifier file for each key use.
Answer: B

SCP test questions   SC0-501 pdf   SC0-501   SC0-501 test answers   SC0-501

NO.12 What are the two primary types of token system?
A.Time-based
B.Passive
C.Challenge/Response
D.Active
E.Seeded
Answer: AC

SCP   SC0-501   SC0-501

NO.13 If you are going to build a PKI you will need many different components. What is an industry standard
that you can build your PKI upon?
A.Contiguous distinguished name spaces
B.X.509v3 Certificates
C.A defined hierarchy of authorities
D.128-bit SHA1
E.128-bit MD5
Answer: B

SCP   SC0-501   SC0-501   SC0-501

NO.14 What transmission system uses short bursts combined together as a channel?
A.Frequency Hopping Spread Spectrum (FHSS)
B.Direct Sequence Spread Spectrum (DSSS)
C.Lamar Anthell Transmission (LAT)
D.Digital Band Hopping (DBH)
E.Digital Channel Hopping (DCH)
Answer: A

SCP certification   SC0-501 test answers   SC0-501

NO.15 What is the name of the option in Windows to hide, or append, a second file to a main file?
A.The Hidden Bit
B.Dynamic Link Libraries
C.NTFS Streams
D.File Associations
E.Hidden Server Management
Answer: C

SCP   SC0-501   SC0-501

NO.16 When Windows places a file on a FAT 16 partition, what does it look for, in HEX, to know that a file can
be placed in that cluster?
A.0000
B.FFFF
C.0001
D.000F
E.1111
Answer: A

SCP   SC0-501 test questions   SC0-501   SC0-501

NO.17 Which of the following are hash algorithms?
A.MD5
B.SHA
C.RSA
D.3DES
E.AES
Answer: AB

SCP test answers   SC0-501 exam simulations   SC0-501

NO.18 Which antenna type is best for extending the local range of an Access Point?
A.Yagi
B.Omni-directional
C.Di-polar
D.Parabolic
E.Mono-polar
Answer: B

SCP demo   SC0-501 test questions   SC0-501 questions   SC0-501   SC0-501

NO.19 Incidents are generally categorized as falling into attacks on the CIA triad. Which of the following three
attacks are the general categories?
A.Attacks against Integrity
B.Attacks against Confidentiality
C.Attacks against Availability
D.Attacks against Accuracy
E.Attacks against Collisions
Answer: ABC

SCP   SC0-501   SC0-501 demo

NO.20 Which of the following is not a category of Intellectual Property?
A.Patents
B.Trademarks
C.Copyrights
D.Manufacturing Standards
E.Trade Secrets
Answer: D

SCP demo   SC0-501   SC0-501 test answers   SC0-501

NO.21 When a biometric system performs a one-to-one mapping, what is the systems doing?
A.Identification
B.Authentication
C.Classification
D.Detection
E.Recognition
Answer: B

SCP test questions   SC0-501 braindump   SC0-501 practice test   SC0-501

NO.22 What transmission system uses multiple frequencies combined together as a band?
A.Digital Channel Hopping (DCH)
B.Lamar Anthell Transmission (LAT)
C.Frequency Hopping Spread Spectrum (FHSS)
D.Digital Band Hopping (DBH)
E.Direct Sequence Spread Spectrum (DSSS)
Answer: E

SCP test questions   SC0-501   SC0-501   SC0-501

NO.23 If a Certificate Authority is also designed to accept requests for certificates, then it can be termed as
what?
A.A Root CA
B.An Intermediate CA
C.A CA Hierarchy
D.A Registration Authority
E.A Repository
Answer: D

SCP test questions   SC0-501 practice test   SC0-501   SC0-501 exam

NO.24 Based on the provided image, what type of certification path will be used in this network?
A.Nested certification path
B.Hierarchical certification path
C.Functional certification path
D.Mesh certification path
E.Bridged certification path
Answer: D

SCP   SC0-501 exam prep   SC0-501 study guide   SC0-501 questions

NO.25 What is a unique benefit to using a File Viewer as one of your Forensics Tools?
A.You do not have to copy data files to your forensic machine for analysis
B.You do not have to worry about modifying the evidence in any manner
C.You are able to view the evidence files in HEX format
D.You do not need to have all the programs installed on your forensic machine to view evidence files
E.You are able to search for specific file types to which the O/S does not have application associations
Answer: D

SCP   SC0-501 exam prep   SC0-501 braindump   SC0-501

NO.26 If you wish to make your Windows user account use smart cards, where must you go to check this
option?
A.Active Directory Users and Computers
B.Computer Management, Local Users and Groups
C.Active Directory Sites and Services
D.Active Directory Security Services
E.On the Enterprise Certificate Server
Answer: A

SCP test   SC0-501 exam dumps   SC0-501 test questions

NO.27 You are in the process of designing your PKI. You are working on the individual systems and servers
that you will need. Which machine that you install is designed simply to enroll new users into the PKI?
A.Certification Authority
B.Archive Server
C.Security Server
D.Registration Authority
E.Certification Repository
Answer: D

SCP   SC0-501   SC0-501   SC0-501 dumps   SC0-501

NO.28 What format is used to list the information that is contained in the Issuer field of an X.509 digital
certificate?
A.FQDN
B.X.500 CN
C.CA Name
D.X.500 DN
E.Position of the CA in the CA hierarchy
Answer: D

SCP certification training   SC0-501   SC0-501   SC0-501 test

NO.29 What is the average size of a biometric template?
A.Between 10 and 100 KB
B.Between 100 and 500 KB
C.Less than 1 KB
D.Less than 3 bytes
E.Between 500 KB and 1 MB
Answer: C

SCP   SC0-501   SC0-501 test answers

NO.30 One of the many extensions in an X.509 digital certificate is called the SubjectKeyIdentifier. What is
this extension used for?
A.The extension is used to verify the SubjectPrivateKeyInfo
B.The extension is used to match the hashes of the SubjectKeyAlgorithm
C.The extension is used only when the certificate is used for code signing from a defined Subject
D.The extension is used when matching the hash value of the public key on the certificate
E.The extension is used only if the certificate is sent from a Root CA
Answer: D

SCP   SC0-501 pdf   SC0-501

ITCertKing offer the latest JN0-633 exam material and high-quality pdf questions & answers. Our 1Z0-033 VCE testing engine and C_TFIN52_64 study guide can help you pass the real exam. High-quality HP2-N44 dumps training materials can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.

Article Link: http://www.itcertking.com/SC0-501_exam.html

2013年11月19日星期二

SC0-451 exam study guide

With ITCertKing's help, you do not need to spend a lot of money to participate in related cram or spend a lot of time and effort to review the relevant knowledge, but can easily pass the exam. Simulation test software of SCP SC0-451 exam is developed by ITCertKing's research of previous real exams. ITCertKing's SCP SC0-451 exam practice questions have a lot of similarities with the real exam practice questions.

It's better to hand-lit own light than look up to someone else's glory. ITCertKing SCP SC0-451 exam training materials will be the first step of your achievements. With it, you will be pass the SCP SC0-451 exam certification which is considered difficult by a lot of people. With this certification, you can light up your heart light in your life. Start your new journey, and have a successful life.

Exam Code: SC0-451
Exam Name: SCP (Tactical Perimeter Defense)
One year free update, No help, Full refund!
Total Q&A: 180 Questions and Answers
Last Update: 2013-11-19

ITCertKing SCP SC0-451 exam information is proven. We can provide the questions based on extensive research and experience. ITCertKing has more than 10 years experience in IT certification SC0-451 exam training, including questions and answers. On the Internet, you can find a variety of training tools. ITCertKing SC0-451 exam questions and answers is the best training materials. We offer the most comprehensive verification questions and answers, you can also get a year of free updates.

ITCertKing is a website which always provide you the latest and most accurate information about SCP certification SC0-451 exam. In order to allow you to safely choose us, you can free download part of the exam practice questions and answers on ITCertKing website as a free try. ITCertKing can ensure you 100% pass SCP certification SC0-451 exam.

The exam materiala of the ITCertKing SCP SC0-451 is specifically designed for candicates. It is a professional exam materials that the IT elite team specially tailored for you. Passed the exam certification in the IT industry will be reflected in international value. There are many dumps and training materials providers that would guarantee you pass the SCP SC0-451 exam. ITCertKing speak with the facts, the moment when the miracle occurs can prove every word we said.

The ITCertKing Free SCP SC0-451 sample questions, allow you to enjoy the process of buying risk-free. This is a version of the exercises, so you can see the quality of the questions, and the value before you decide to buy. We are confident that ITCertKing the SCP SC0-451 sample enough you satisfied with the product. In order to ensure your rights and interests,ITCertKing commitment examination by refund. Our aim is not just to make you pass the exam, we also hope you can become a true IT Certified Professional. Help you get consistent with your level of technology and technical posts, and you can relaxed into the IT white-collar workers to get high salary.

ITCertKing's SCP SC0-451 exam training materials are bring the greatest success rate to all the candicates who want to pass the exam. SCP SC0-451 exam is a challenging Certification Exam. Besides the books, internet is considered to be a treasure house of knowledge. In ITCertKing you can find your treasure house of knowledge. This is a site of great help to you. You will encounter the complex questions in the exam, but ITCertKing can help you to pass the exam easily. ITCertKing's SCP SC0-451 exam training material includes all the knowledge that must be mastered for the purpose of passing the SCP SC0-451 exam.

SC0-451 Free Demo Download: http://www.itcertking.com/SC0-451_exam.html

NO.1 You have just installed a new Intrusion Detection System in your network. You are concerned that there
are functions this system will not be able to perform. What is a reason an IDS cannot manage hardware
failures?
A. The IDS can only manage RAID 5 failures.
B. The IDS cannot be programmed to receive SNMP alert messages.
C. The IDS cannot be programmed to receive SNMP trap messages.
D. The IDS cannot be programmed to respond to hardware failures.
E. The IDS can only inform you that an event happened.
Answer: E

SCP   SC0-451 practice test   SC0-451 original questions

NO.2 You are introducing a co-worker to the security systems in place in your organization. During the
discussion you begin talking about the network, and how it is implemented. You mention something in
RFC 791, and are asked what that is. What does RFC 791 specify the standards for?
A. IP
B. TCP
C. UDP
D. ICMP
E. Ethernet
Answer: A

SCP   SC0-451   SC0-451

NO.3 In the image, there are two nodes communicating directly, without an access point. In the packet on
the right side of the image, the Address 1 field is blank. If this packet is going to the other computer, what
is the value that must be filled in this blank address field?
<Missing>
A. 2345
B. 1234
C. ABCD
D. <null>
E. ABCD-1234
Answer: B

SCP original questions   SC0-451   SC0-451   SC0-451

NO.4 You have recently taken over the security of a mid-sized network. You are reviewing the current
configuration of the IPTables firewall, and notice the following rule:
ipchains -A input -p TCP -d 0.0.0.0/0 12345 -j DENY
What is the function of this rule?
A. This rule for the output chain states that all incoming packets from any host to port 12345 are to be
denied.
B. This rule for the input chain states that all incoming packets from any host to port 12345 are to be
denied.
C. This rule for the input chain states that any TCP traffic from any address destined for any IP address
and to port 12345 is to be denied.
D. This rule for the output chain states that any TCP traffic from any address destined for any IP address
and to port 12345 is to be denied.
E. This rule for the input chain states that all TCP packets inbound from any network destined to any
network is to be denied for ports 1, 2, 3, 4, and 5.
Answer: C

SCP   SC0-451   SC0-451   SC0-451 demo   SC0-451 certification training

NO.5 You are introducing a co-worker to the security systems in place in your organization. During the
discussion you begin talking about the network, and how it is implemented. You mention something in
RFC 791, and are asked what that is. What does RFC 791 specify the standards for?
A. IP
B. TCP
C. UDP
D. ICMP
E. Ethernet
Answer: A

SCP test questions   SC0-451 practice test   SC0-451 exam prep   SC0-451 certification   SC0-451 exam prep

NO.6 You are considering your options for a new firewall deployment. At which three layers of the OSI
model does a stateful packet filtering firewall operate?
A. Presentation
B. Data Link
C. Network
D. Application
E. Transport
Answer: BCE

SCP test answers   SC0-451   SC0-451 test questions   SC0-451

NO.7 You are configuring the rules on your firewall, and need to take into consideration that some clients in
the network are using automatic addressing. What is the IP address range reserved for internal use for
APIPA in Microsoft networks?
A. 169.254.0.0 /4
B. 169.254.0.0 /16
C. 169.254.0.0 /8
D. 169.254.0.0 /0
E. 168.255.0.0 /16
Answer: B

SCP   SC0-451 exam simulations   SC0-451 dumps   SC0-451 test questions

NO.8 The CEO of your company has just issued a statement that the network must be more secure right
away. You have discussed several options with the Chief Security Officer and the Chief Technology Officer.
The results of your discussion are to implement IPSec. What are the two prime functions of IPSec that
you can let the CEO know will be addressed with the implementation?
A. Ensure data corruptibility
B. Ensure data integrity
C. Ensure data availability
D. Ensure data security
E. Ensure data deliverability
Answer: BD

SCP   SC0-451   SC0-451 answers real questions   SC0-451

NO.9 As per the specifications of RFC 1191: Path MTU Discovery, MTUs have been defined so that
transmitted datagrams will not unnecessarily become fragmented when traveling across different types of
physical media. You are going to run several packet captures to be sure there are no out of spec packets
on your network.
According to these specifications what are the absolute minimum and maximum MTUs?
A. 1492 Bytes and 1500 Bytes respectively
B. 68 Bytes and 65535 Bytes respectively
C. 512 Bytes and 1500 Bytes respectively
D. 512 bits and 1500 bits respectively
E. 512 bits per second and 1500 bits per second respectively
Answer: B

SCP questions   SC0-451 exam simulations   SC0-451

NO.10 You have implemented an IPSec policy, using only AH. You are analyzing your network traffic in
Network Monitor, which of the following statements are true about your network traffic?
A. You will not be able to view the data in the packets, as it is encrypted.
B. You will not be able to identify the upper layer protocol.
C. You will be able to view the unencrypted data in the packets.
D. You will be able to identify the encryption algorithm in use.
E. You will not be able to view the packet header.
Answer: C

SCP answers real questions   SC0-451 answers real questions   SC0-451   SC0-451 test

NO.11 You are planning on implementing a token-based authentication system in your network. The network
currently is spread out over four floors of your building. There are plans to add three branch offices.
During your research you are analyzing the different types of systems. Which of the following are the two
common systems token-based authentication uses?
A. Challenge/Response
B. Random-code
C. Time-based
D. Challenge/Handshake
E. Password-Synch
Answer: AC

SCP exam dumps   SC0-451   SC0-451   SC0-451   SC0-451

NO.12 If you capture an 802.11 frame, and the ToDS bit is set to zero and the FromDS bit is set to zero, what
type of WLAN is this frame a part of?
A. Mesh
B. Broadcast
C. Infrastructure
D. Hierarchical
E. Ad Hoc
Answer: E

SCP test questions   SC0-451   SC0-451

NO.13 At a policy meeting you have been given the task of creating the firewall policy. What are the two basic
positions you can take when creating the policy?
A. To deny all traffic and permit only that which is required.
B. To permit only IP traffic and filter TCP traffic
C. To permit only TCP traffic and filter IP traffic
D. To permit all traffic and deny that which is required.
E. To include your internal IP address as blocked from incoming to prevent spoofing.
Answer: AD

SCP   SC0-451   SC0-451

NO.14 You have implemented an IPSec policy, using only AH. You are analyzing your network traffic in
Network Monitor, which of the following statements are true about your network traffic?
A. You will not be able to view the data in the packets, as it is encrypted.
B. You will not be able to identify the upper layer protocol.
C. You will be able to view the unencrypted data in the packets.
D. You will be able to identify the encryption algorithm in use.
E. You will not be able to view the packet header.
Answer: C

SCP certification training   SC0-451 exam   SC0-451   SC0-451 certification   SC0-451

NO.15 You are configuring your new IDS machine, where you have recently installed Snort. While you are
working with this machine, you wish to create some basic rules to test the ability to log traffic as you desire.
Which of the following Snort rules will log any tcp traffic from any host other than 172.16.40.50 using any
port, to any host in the 10.0.10.0/24 network using any port?
A. log udp ! 172.16.40.50/32 any -> 10.0.10.0/24 any
B. log tcp ! 172.16.40.50/32 any -> 10.0.10.0/24 any
C. log udp ! 172.16.40.50/32 any <> 10.0.10.0/24 any
D. log tcp ! 172.16.40.50/32 any <> 10.0.10.0/24 any
E. log tcp ! 172.16.40.50/32 any <- 10.0.10.0/24 any
Answer: B

SCP test   SC0-451   SC0-451 test   SC0-451

NO.16 For the new Snort rules you are building, it will be required to have Snort examine inside the content of
the packet. Which keyword is used to tell Snort to ignore a defined number of bytes before looking inside
the packet for a content match?
A. Depth
B. Offset
C. Nocase
D. Flow_Control
E. Classtype
Answer: B

SCP   SC0-451   SC0-451

NO.17 You have configured Snort to run on your SuSe Linux machine, and you are currently making the
configuration changes to your MySQL database. What is the result of running the following command at
the mysql prompt?
source /usr/share/doc/packages/snort/schemas/create_mysql;
A. This command tells MySQL to connect to the /usr directory when source files are required for Snort
rules.
B. This command tells MySQL that the source files for Snort are located in the /usr directory.
C. This command tells MySQL where to place the Snort capture files in the database.
D. This command tells MySQL to populate the database using the fields provided by Snort.
E. This command tells MySQL where to find the source data for connecting to Snort.
Answer: D

SCP exam prep   SC0-451 exam simulations   SC0-451   SC0-451   SC0-451 exam

NO.18 Your network traffic has increased substantially over the last year, and you are looking into your
caching options for frequently visited websites. What are the two types of caching that ISA Server 2006
supports?
A. Reverse caching
B. Forward caching
C. Inverse caching
D. Recursive caching
E. Real-time caching
Answer: AB

SCP dumps   SC0-451   SC0-451 answers real questions   SC0-451   SC0-451

NO.19 In order to perform promiscuous mode captures using the Wireshark capture tool on a Windows
Server 2003 machine, what must first be installed?
A. IPv4 stack
B. IPv6 stack
C. WinPcap
D. Nothing, it will capture by default
E. At least two network adapters
Answer: C

SCP pdf   SC0-451 exam prep   SC0-451   SC0-451   SC0-451   SC0-451

NO.20 The exhibit represents a simple routed network. Node 7 is a Windows 2000 Professional machine that
establishes a TCP communication with Node 10, a Windows 2003 Server. The routers are Cisco 2500
series running IOS 11.2.
While working at Node 10, you run a packet capture. Packets received by Node 10, and sent from Node 7
will reveal which of the following combination of source IP and source Physical addresses:
<Missing>
A. Source IP address 10.0.10.115, Source Physical address for Node 7
B. Source IP address 50.0.50.1, Source Physical address for Node 7
C. Source IP address for Router D's Int E0, Source Physical address for Node 7
D. Source IP address 10.0.10.115, Source Physical address Router D's Int E0
E. Source IP addresses for both Nodes 7 and Router D's Int E0, Source Physical address for both Nodes
7 and Router D's Int E0.
Answer: D

SCP dumps   SC0-451   SC0-451 exam   SC0-451 test questions

NO.21 As you increase the layers of security in your organization, you must watch the network behavior
closely. How can a firewall have a negative impact on the performance of your network?
A. It can authorize sensitive information from the wrong host
B. It can block needed traffic
C. It can decrypt secure communications that were supposed to get past the firewall encrypted
D. It can restrict bandwidth based on QoS
E. It can filter packets that contain virus signatures
Answer: B

SCP   SC0-451 questions   SC0-451   SC0-451 practice test

NO.22 You are configuring a Cisco Router, and are creating Access Control Lists as part of the security of the
network. When creating Wildcard Masks, which of the following rules apply?
A. If the wildcard mask bit is a 1, then do not check the corresponding bit of the IP address for a match.
B. If the wildcard mask bit is a 0, then do not check the corresponding bit of the IP address for a match.
C. If the wildcard mask bit is a 1, then do check the corresponding bit of the IP address for a match.
D. If the wildcard mask bit is a 0, then do check the corresponding bit of the IP address for a match.
E. To create a Wildcard Mask, always take the inverse of the Subnet Mask.
Answer: AD

SCP   SC0-451   SC0-451   SC0-451 test answers

NO.23 When performing wireless network traffic analysis, what is the type and subtype for an 802.11
authentication packet?
A. Type AA Subtype AAAA
B. Type 00 Subtype 1011
C. Type 0A Subtype 0A0A
D. Type 11 Subtype 0000
E. Type A0 Subtype A1A0
Answer: B

SCP   SC0-451   SC0-451   SC0-451 demo   SC0-451 demo

NO.24 There are several options available to you for your new wireless networking technologies, and you are
examining how different systems function. What transmission system uses short bursts combined
together as a channel?
A. Frequency Hopping Spread Spectrum (FHSS)
B. Direct Sequence Spread Spectrum (DSSS)
C. Lamar Anthell Transmission (LAT)
D. Digital Band Hopping (DBH)
E. Digital Channel Hopping (DCH)
Answer: A

SCP   SC0-451 answers real questions   SC0-451   SC0-451 exam prep

NO.25 You have been given the task of building the new wireless networks for your office, and you need to
verify that your equipment will not interfere with other wireless equipment frequencies. What wireless
standard allows for up to 11 Mbps transmission rates and operates in the 2.4GHz range?
A. 802.11b
B. 802.11e
C. 802.11a
D. 802.11i
E. 802.11g
Answer: A

SCP pdf   SC0-451 exam   SC0-451   SC0-451 test

NO.26 You are configuring a new IDS, running Snort, in your network. To better configure Snort, you are
studying the configuration file. Which four of the following are the primary parts of the Snort configuration
file?
A. Postprocessors
B. Variables
C. Preprocessors
D. Output Plug-ins
E. Rulesets
Answer: BCDE

SCP   SC0-451 questions   SC0-451   SC0-451

NO.27 During your review of the logs of your Cisco router, you see the following line. What is the meaning of
this line?
%SYS-5-CONFIG_I: Configured from console by vty1 (172.16.10.1)
A. A normal, but noteworthy event
B. An informative message
C. A warning condition has occurred
D. A debugging message
E. An error condition has occurred
Answer: A

SCP practice test   SC0-451 exam   SC0-451

NO.28 If you wish to create a new rule in ISA Server 2006 so that all file attachments with an .exe extension
that come through the firewall are dropped, what would you select in the Toolbox to create this rule?
A. Content Type
B. User Group
C. Destination Set
D. Protocol Set
E. Extension Type
Answer: A

SCP exam prep   SC0-451   SC0-451 answers real questions   SC0-451 pdf

NO.29 During a training presentation, that you are delivering, you are asked how wireless networks function,
compared to the OSI Model. What two layers of the OSI Model are addressed by the 802.11 standards?
A. Physical
B. Data Link
C. Network
D. Transport
E. Session
Answer: AB

SCP questions   SC0-451 answers real questions   SC0-451   SC0-451

NO.30 You are monitoring the network traffic on your Frame-Relay Internet connection. You notice a large
amount of unauthorized traffic on port 21. You examine the packets, and notice there are no files being
transferred. Traffic on what other port must be examined to view any file contents?
A. 20
B. 119
C. 23
D. 80
E. 2021
Answer: A

SCP pdf   SC0-451 original questions   SC0-451 braindump

ITCertKing offer the latest 000-585 exam material and high-quality 1z0-599 pdf questions & answers. Our 70-321 VCE testing engine and 200-101 study guide can help you pass the real exam. High-quality 70-342 dumps training materials can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.

Article Link: http://www.itcertking.com/SC0-451_exam.html

2013年10月24日星期四

SCP certification SC0-501 exam training materials

SCP SC0-501 is a certification exam to test IT expertise and skills. If you find a job in the IT industry, many human resource managers in the interview will reference what SCP related certification you have. If you have SCP SC0-501 certification, apparently, it can improve your competitiveness.

Everyone has their own dreams. What is your dream? Is it a promotion, a raise or so? My dream is to pass the SCP SC0-501 exam. I think with this certification, all the problems will not be a problem. However, to pass this certification is a bit difficult. But it does not matter, because I chose ITCertKing's SCP SC0-501 exam training materials. It can help me realize my dream. If you also have a IT dream, quickly put it into reality. Select ITCertKing's SCP SC0-501 exam training materials, and it is absolutely trustworthy.

SCP SC0-501 exam is a Technical Specialist exam. SCP SC0-501 exam can help and promote IT staff have a good career. With a good career, and of course you can create a steady stream of corporate and national interests, so as to promote the development of the national economy. If all of the IT staff can do like this the state will become stronger. ITCertKing SCP SC0-501 exam training materials can help IT personnel to achieve this purpose. We guarantee you 100% to pass the exam. Make the tough decision to choose our ITCertKing SCP SC0-501 exam training materials please.

Each IT person is working hard for promotion and salary increases. It is also a reflection of the pressure of modern society. We should use the strength to prove ourselves. Participate in the SCP SC0-501 exam please. In fact, this examination is not so difficult as what you are thinking. You only need to select the appropriate training materials. ITCertKing's SCP SC0-501 exam training materials is the best training materials. Select the materials is to choose what you want. In order to enhance your own, do it quickly.

Exam Code: SC0-501
Exam Name: SCP (Enterprise Security Implementation (ESI) )
One year free update, No help, Full refund!
Total Q&A: 50 Questions and Answers
Last Update: 2013-10-24

Now SCP SC0-501 is a hot certification exam in the IT industry, and a lot of IT professionals all want to get SCP SC0-501 certification. So SCP certification SC0-501 exam is also a very popular IT certification exam. SCP SC0-501 certificate is very helpful to your work in the IT industry, which can help promote your position and salary a lot and let your life have more security.

SC0-501 Free Demo Download: http://www.itcertking.com/SC0-501_exam.html

NO.1 Which of the following numbers are Non-Prime Numbers?
A.23
B.2
C.24
D.39
E.17
Answer: CD

SCP   SC0-501   SC0-501 practice test   SC0-501

NO.2 There are many certificate templates built into Windows 2000 Certificate Servers. Which of the
following user templates are valid for client authentication?
A.Smart Card Logon
B.Domain Controller
C.Authenticated Session
D.IPSec (Offline Request)
E.Smart Card User
Answer: ACE

SCP   SC0-501   SC0-501   SC0-501 pdf   SC0-501

NO.3 When a biometric system performs a one-to-one mapping, what is the systems doing?
A.Identification
B.Authentication
C.Classification
D.Detection
E.Recognition
Answer: B

SCP   SC0-501 braindump   SC0-501 pdf   SC0-501 demo   SC0-501

NO.4 When Windows places a file on a FAT 16 partition, what does it look for, in HEX, to know that a file can
be placed in that cluster?
A.0000
B.FFFF
C.0001
D.000F
E.1111
Answer: A

SCP exam prep   SC0-501   SC0-501 certification   SC0-501 certification   SC0-501

NO.5 What is a unique benefit to using a File Viewer as one of your Forensics Tools?
A.You do not have to copy data files to your forensic machine for analysis
B.You do not have to worry about modifying the evidence in any manner
C.You are able to view the evidence files in HEX format
D.You do not need to have all the programs installed on your forensic machine to view evidence files
E.You are able to search for specific file types to which the O/S does not have application associations
Answer: D

SCP questions   SC0-501 questions   SC0-501 braindump   SC0-501 pdf

NO.6 When using the 3DES encryption ( C = E
?K1
[D
?K2
[E
?K1
[P]]] ) , what is the function of D?
A.D is the text before encryption
B.D is the first encryption key
C.D is the second encryption key
D.D is the decryption key
E.D is the text after encryption
Answer: D

SCP   SC0-501   SC0-501   SC0-501   SC0-501

NO.7 What are the two primary types of token system?
A.Time-based
B.Passive
C.Challenge/Response
D.Active
E.Seeded
Answer: AC

SCP exam prep   SC0-501 dumps   SC0-501 dumps   SC0-501 exam   SC0-501

NO.8 In PGP, there are two conditions that can be present to provide for the validity of a certificate. What
are these two conditions?
A.The certificate has been digitally signed by your local trusted root Certificate Authority.
B.The certificate is digitally signed by at least one completely trusted key holder, who has a valid
certificate.
C.The certificate is digitally signed by at least two of the marginally trusted key holders, who have valid
certificates.
D.The certificate has been digitally signed by the sender
trusted root Certificate Authority.
E.The certificate is digitally signed by the sender, who is authenticated by your local Certificate Authority.
Answer: BC

SCP pdf   SC0-501 certification training   SC0-501   SC0-501 exam simulations

NO.9 Based on the provided image, what type of certification path will be used in this network?
A.Nested certification path
B.Hierarchical certification path
C.Functional certification path
D.Mesh certification path
E.Bridged certification path
Answer: D

SCP   SC0-501   SC0-501 exam   SC0-501 exam

NO.10 If your goal is to make your CA issue certificates that have specific key usage, what can you use to
achieve this goal?
A.This can be done by using unique DNs for each key use that you want.
B.This can be done by using OIDs for each key use that you want.
C.This can be done by using unique CNs for each key use that you want.
D.This can only be done by selecting the key use options during the setup of the CA.
E.This can be done by installing the identifier file for each key use.
Answer: B

SCP exam dumps   SC0-501 exam   SC0-501 practice test

NO.11 You are in the process of designing your PKI. You are working on the individual systems and servers
that you will need. Which machine that you install is designed simply to enroll new users into the PKI?
A.Certification Authority
B.Archive Server
C.Security Server
D.Registration Authority
E.Certification Repository
Answer: D

SCP   SC0-501   SC0-501   SC0-501

NO.12 What is the name of the option in Windows to hide, or append, a second file to a main file?
A.The Hidden Bit
B.Dynamic Link Libraries
C.NTFS Streams
D.File Associations
E.Hidden Server Management
Answer: C

SCP   SC0-501 certification   SC0-501   SC0-501 exam

NO.13 Incidents are generally categorized as falling into attacks on the CIA triad. Which of the following three
attacks are the general categories?
A.Attacks against Integrity
B.Attacks against Confidentiality
C.Attacks against Availability
D.Attacks against Accuracy
E.Attacks against Collisions
Answer: ABC

SCP braindump   SC0-501 test   SC0-501   SC0-501 pdf

NO.14 Which of the following are hash algorithms?
A.MD5
B.SHA
C.RSA
D.3DES
E.AES
Answer: AB

SCP   SC0-501 certification   SC0-501   SC0-501 exam simulations   SC0-501 test

NO.15 If you are going to build a PKI you will need many different components. What is an industry standard
that you can build your PKI upon?
A.Contiguous distinguished name spaces
B.X.509v3 Certificates
C.A defined hierarchy of authorities
D.128-bit SHA1
E.128-bit MD5
Answer: B

SCP   SC0-501 certification   SC0-501 practice test

NO.16 Which of the following can be protected by a patent?
A.A new invention
B.A new product
C.A new process
D.A new name
E.An old product made in a new way
Answer: ABCE

SCP test   SC0-501 pdf   SC0-501   SC0-501

NO.17 When an OCSP responder provides a digitally signed response for each of the certificates sent to it by
the relying party in the original request, its reply consists of the certificate identifier, one of three status
values and a validity interval. What are the three status values?
A.Okay, Not Okay, Revoked
B.This Update, Next Update, Future Update
C.Good, Revoked, Unknown
D.Issuer
Public Key, Hash of the Private Key, Unknown
E.Issuer
Private Key, Thumbprint of the Public Key, Unknown
Answer: C

SCP   SC0-501   SC0-501   SC0-501

NO.18 If you receive an X.509 digital certificate that has a unique identifier, but has no extensions, what
version is the certificate?
A.It is a Version 2 certificate
B.It is a Version 3 certificate
C.It is a Version 1 certificate
D.All X.509 digital certificates have unique identifiers
E.The unique identifier is determined by implementation, not version number
Answer: A

SCP certification   SC0-501 certification   SC0-501 certification   SC0-501 test answers   SC0-501 questions

NO.19 Which antenna type is best for extending the local range of an Access Point?
A.Yagi
B.Omni-directional
C.Di-polar
D.Parabolic
E.Mono-polar
Answer: B

SCP braindump   SC0-501 exam simulations   SC0-501 exam   SC0-501 original questions

NO.20 When you install and use PGP on your local computer, where is the key pair stored, by default?
A.secret.ring
B.public.ring
C./usr/bin/pgp
D.pubring.pkr
E.secring.pkr
Answer: DE

SCP   SC0-501   SC0-501 exam   SC0-501   SC0-501

NO.21 Which of the following is not a category of Intellectual Property?
A.Patents
B.Trademarks
C.Copyrights
D.Manufacturing Standards
E.Trade Secrets
Answer: D

SCP demo   SC0-501   SC0-501   SC0-501

NO.22 If a Certificate Authority is also designed to accept requests for certificates, then it can be termed as
what?
A.A Root CA
B.An Intermediate CA
C.A CA Hierarchy
D.A Registration Authority
E.A Repository
Answer: D

SCP test answers   SC0-501   SC0-501   SC0-501 study guide

NO.23 One of the many extensions in an X.509 digital certificate is called the SubjectKeyIdentifier. What is
this extension used for?
A.The extension is used to verify the SubjectPrivateKeyInfo
B.The extension is used to match the hashes of the SubjectKeyAlgorithm
C.The extension is used only when the certificate is used for code signing from a defined Subject
D.The extension is used when matching the hash value of the public key on the certificate
E.The extension is used only if the certificate is sent from a Root CA
Answer: D

SCP   SC0-501   SC0-501 exam dumps   SC0-501 test

NO.24 What type of information can be learned from a user
COOKIES/index.dat file?
A.Their MAC address
B.Their IP address
C.Their email address
D.The websites they have visited
E.The user logon name
Answer: DE

SCP   SC0-501 questions   SC0-501

NO.25 What format is used to list the information that is contained in the Issuer field of an X.509 digital
certificate?
A.FQDN
B.X.500 CN
C.CA Name
D.X.500 DN
E.Position of the CA in the CA hierarchy
Answer: D

SCP certification   SC0-501   SC0-501   SC0-501 test answers   SC0-501 braindump

NO.26 What is the average size of a biometric template?
A.Between 10 and 100 KB
B.Between 100 and 500 KB
C.Less than 1 KB
D.Less than 3 bytes
E.Between 500 KB and 1 MB
Answer: C

SCP   SC0-501 answers real questions   SC0-501   SC0-501 test answers

NO.27 If you wish to make your Windows user account use smart cards, where must you go to check this
option?
A.Active Directory Users and Computers
B.Computer Management, Local Users and Groups
C.Active Directory Sites and Services
D.Active Directory Security Services
E.On the Enterprise Certificate Server
Answer: A

SCP   SC0-501 pdf   SC0-501

NO.28 What transmission system uses multiple frequencies combined together as a band?
A.Digital Channel Hopping (DCH)
B.Lamar Anthell Transmission (LAT)
C.Frequency Hopping Spread Spectrum (FHSS)
D.Digital Band Hopping (DBH)
E.Direct Sequence Spread Spectrum (DSSS)
Answer: E

SCP   SC0-501   SC0-501 demo   SC0-501 test

NO.29 If you capture an 802.11 frame, and the ToDS bit is set to zero and the FromDS bit is set to zero, what
type of WLAN is this frame a part of?
A.Mesh
B.Broadcast
C.Infrastructure
D.Hierarchical
E.Ad Hoc
Answer: E

SCP exam simulations   SC0-501 dumps   SC0-501   SC0-501

NO.30 What transmission system uses short bursts combined together as a channel?
A.Frequency Hopping Spread Spectrum (FHSS)
B.Direct Sequence Spread Spectrum (DSSS)
C.Lamar Anthell Transmission (LAT)
D.Digital Band Hopping (DBH)
E.Digital Channel Hopping (DCH)
Answer: A

SCP study guide   SC0-501 questions   SC0-501 exam simulations   SC0-501   SC0-501 braindump

ITCertKing offer the latest E20-018 exam material and high-quality DC0-260 pdf questions & answers. Our VCPC510 VCE testing engine and NS0-145 study guide can help you pass the real exam. High-quality 000-N32 dumps training materials can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.

Article Link: http://www.itcertking.com/SC0-501_exam.html

2013年10月19日星期六

ITCertKing provides to SCP SC0-411 test materials

SCP certification SC0-411 exams has become more and more popular in the fiercely competitive IT industry. Although more and more people sign up to attend this examination of, the official did not reduce its difficulty and it is still difficult to pass the exam. After all, this is an authoritative test to inspect the computer professional knowledge and information technology ability. In order to pass the SCP certification SC0-411 exam, generally, many people need to spend a lot of time and effort to review.

ITCertKing provides a clear and superior solutions for each SCP SC0-411 exam candidates. We provide you with the SCP SC0-411 exam questions and answers. Our team of IT experts is the most experienced and qualified. Our test questions and the answer is almost like the real exam. This is really amazing. More importantly, the examination pass rate of ITCertKing is highest in the worldwide.

There are different ways to achieve the same purpose, and it's determined by what way you choose. A lot of people want to pass SCP certification SC0-411 exam to let their job and life improve, but people participated in the SCP certification SC0-411 exam all knew that SCP certification SC0-411 exam is not very simple. In order to pass SCP certification SC0-411 exam some people spend a lot of valuable time and effort to prepare, but did not succeed.

ITCertKing is a good website for SCP certification SC0-411 exams to provide short-term effective training. And ITCertKing can guarantee your SCP certification SC0-411 exam to be qualified. If you don't pass the exam, we will take a full refund to you. Before you choose to buy the ITCertKing products before, you can free download part of the exercises and answers about SCP certification SC0-411 exam as a try, then you will be more confident to choose ITCertKing's products to prepare your SCP certification SC0-411 exam.

Exam Code: SC0-411
Exam Name: SCP (Hardening the Infrastructure (HTI))
One year free update, No help, Full refund!
Total Q&A: 410 Questions and Answers
Last Update: 2013-10-18

I believe that a lot of people working in the IT industry hope to pass some IT certification exams to obtain the corresponding certifications. Some IT authentication certificates can help you promote to a higher job position in this fiercely competitive IT industry. Now the very popular SCP SC0-411 authentication certificate is one of them. Although passing the SCP certification SC0-411 exam is not so easy, there are still many ways to help you successfully pass the exam. While you can choose to spend a lot of time and energy to review the related IT knowledge, and also you can choose a effective training course. ITCertKing can provide the pertinent simulation test,which is very effective to help you pass the exam and can save your precious time and energy to achieve your dream. ITCertKing will be your best choice.

SC0-411 is an SCP certification exam, so SC0-411 is the first step to set foot on the road of SCP certification. SC0-411 certification exam become more and more fiery and more and more people participate in SC0-411 exam, but passing rate of SC0-411 certification exam is not very high.When you select SC0-411 exam, do you want to choose an exam training courses?

ITCertKing is a website that provide the counseling courses for IT professionals to participate in SCP certification SC0-411 exam and help them get the SCP SC0-411 certification. The courses of ITCertKing is developed by experienced experts' extensive experience and expertise and the quality is very good and have a very fast update rate. Besides, exercises we provide are very close to the real exam questions, almost the same. When you select ITCertKing, you are sure to 100% pass your first time to participate in the difficult and critical SCP certification SC0-411 exam.

SC0-411 Free Demo Download: http://www.itcertking.com/SC0-411_exam.html

NO.1 In the last few days, users have reported to you that they have each received two
emails from an unknown source with file attachments. Fortunately the users have
listened to your training and no one has run the attached program. You study the
attachment on an isolated computer and find that it is a program that is designed to
execute a payload when the system clock registers 10:10 PM on February 29. Which
of the following best identifies the type of program is the attachment?
A. Mail Bomb
B. Logic Bomb
C. Polymorphic Virus
D. Stealth Virus
E. Polymorphic Trojan
Answer: B

SCP   SC0-411 exam   SC0-411 exam prep   SC0-411   SC0-411

NO.2 If you wish to change the permissions of a parent directory in your Linux system,
and want the permissions to be changed on the files and subdirectories in the parent
directory to be the same, what switch must you use?
A. -G
B. -R
C. -P
D. -S
E. -F
Answer: B

SCP   SC0-411 original questions   SC0-411 test questions   SC0-411 exam dumps

NO.3 When a new user account is created in Linux, what values are assigned?
A. Shell_GID
B. SetGID
C. SetUID
D. UID
E. GID
Answer: DE

SCP   SC0-411 exam prep   SC0-411   SC0-411 exam prep   SC0-411

NO.4 You are configuring the IP addressing for your network. One of the subnets has
been defined with addresses already. You run ifconfig on a host and determine that
it has an address of 172.18.32.54 with a mask of 255.255.254.0. What is the network
ID to which this host belongs?
A. 172.18.0.0
B. 0.0.32.0
C. 172.0.0.0
D. 172.18.32.32
E. 172.18.32.0
Answer: E

SCP pdf   SC0-411 test   SC0-411   SC0-411

NO.5 In order to properly manage the network traffic in your organization, you need a
complete understanding of protocols and networking models. In regards to the
7-layer OSI model, what is the function of the Transport Layer?
A. The Transport layer allows two applications on different computers to establish, use,
and end a session. This layer establishes dialog control between the two computers in a
session, regulating which side transmits, plus when and how long it transmits.
B. The Transport layer manages logical addresses. It also determines the route from the
source to the destination computer and manages traffic problems, such as routing, and
controlling the congestion of data packets.
C. The Transport layer packages raw bits from the Physical (Layer 1) layer into frames
(structured packets for data). Physical addressing (as opposed to network or logical
addressing) defines how devices are addressed at the data link layer. This layer is
responsible for transferring frames from one computer to another, without errors. After
sending a frame, it waits for an acknowledgment from the receiving computer.
D. The Transport layer transmits bits from one computer to another and regulates the
transmission of a stream of bits over a physical medium. For example, this layer defines
how the cable is attached to the network adapter and what transmission technique is used
to send data over the cable.
E. The Transport layer handles error recognition and recovery. It also repackages long
messages, when necessary, into small packets for transmission and, at the receiving end,
rebuilds packets into the original message. The corresponding Transport layer at the
receiving end also sends receipt acknowledgments.
Answer: E

SCP test answers   SC0-411   SC0-411   SC0-411   SC0-411 pdf

NO.6 In order to add to your layered defense, you wish to implement some security
configurations on your router. If you wish to have the router work on blocking TCP
SYN attacks, what do you add to the end of an ACL statement?
A. The IP addresses for allowed networks
B. The port range of allowed applications
C. The word Established
D. The word Log
E. The string: no service udp-small-servers
Answer: C

SCP exam dumps   SC0-411 certification   SC0-411 practice test   SC0-411 braindump

NO.7 You work for a mid sized ISP on the West Coast of the United Kingdom. Recently
you have noticed that there are an increasing number of attacks on the Internet
routers used in the company. The routers are physically secured well, so you can be
somewhat confident the attacks are all remote. Which of the following are legitimate
threats the routers are facing, under this situation?
A. Damaged Cables
B. False Data Injection
C. Social Engineering
D. Unauthorized Remote Access
E. Denial of Service
Answer: BDE

SCP   SC0-411   SC0-411 original questions   SC0-411 test   SC0-411 dumps   SC0-411 braindump

NO.8 You are creating the contingency plan, and are trying to take into consideration as
many of the disasters as you can think of. Which of the following are examples of
technological disasters?
A. Hurricane
B. Terrorism
C. Tornado
D. Virus
E. Trojan Horse
Answer: BDE

SCP   SC0-411   SC0-411   SC0-411 test

NO.9 You are creating the contingency plan for the network in hospital where you just
started working. The network has about 300 PCs, about 50 Servers, and is
interconnected into some of the critical patient systems for monitoring purposes.
What is the appropriate level of backup power for this type of network?
A. Building Generator
B. Personal UPS
C. Alternative Fuel-Cell Technology
D. Server Rack UPS
E. Electrical Company
Answer: A

SCP   SC0-411   SC0-411   SC0-411 test

NO.10 Which of the following is implemented in an IPv6 environment, which helps to
increase security?
A. EFS
B. IPsec
C. Caching
D. S/MIME
E. Destination and Source Address Encryption
Answer: B

SCP   SC0-411   SC0-411 practice test   SC0-411

NO.11 In order to perform promiscuous mode captures using the Ethereal capture tool on
a Windows 2000 machine, what must first be installed?
A. IPv4 stack
B. IPv6 stack
C. WinPcap
D. Nothing, it will capture by default
E. At least two network adapters
Answer: C

SCP   SC0-411   SC0-411 study guide   SC0-411 certification training   SC0-411 practice test

NO.12 When you took over the security responsibilities at your office, you noticed there
were no warning banners on any of the equipment. You have decided to create a
warning login banner on your Cisco router. Which of the following shows the
correct syntax for the banner creation?
A. banner login C Restricted access. Only authorized users allowed to access this device.
B. login banner C Restricted access. Only authorized users allowed to access this device.
C. banner login Restricted access. Only authorized users allowed to access this device.
D. login banner Restricted access. Only authorized users allowed to access this device.
E. banner logging C Restricted access. Only authorized users allowed to access this
device. C
Answer: A

SCP demo   SC0-411   SC0-411

NO.13 You are configuring a wildcard mask for the subnet 10.12.24.0 / 255.255.248.0.
Which of the following is the wildcard mask to use for this subnet?
A. 0.255.255.255
B. 10.12.24.255
C. 0.0.248.0
D. 255.255.248.0
E. 0.0.7.255
Answer: E

SCP answers real questions   SC0-411 test questions   SC0-411   SC0-411 study guide   SC0-411 exam prep

NO.14 In Windows 2000, there are four methods of implementing IPSec. They are:
1. Require Security
2 - Request Security
3 - Respond Only
4 - No IPSec Policy
Your network hosts many servers, and different security policies are in place in
different locations in the network. The Clients and Servers in your network are
configured as follows:
-You have servers numbered 1-9, which have a policy stating they require no
network traffic security.
-You have servers numbered 10-19, which have a policy stating they are not
required to be secure, but will encrypt network traffic if the client is able to receive
it.
-You have servers numbered 20-29, which have a policy stating they are required to
be secure and all network traffic they deliver must be secured.
-You have clients numbered 60-79 that are required to access secure servers 20-29.
-You have clients numbered 80-99 that are not required to access secure servers
20-29, but are required to access servers 1-9 and 10-19.
Based on the Client and Server configuration provided above, which of the
following computers will implement IPSec method 2?
A. Computers numbered 1-9
B. Computers numbered 10-19
C. Computers numbered 20-29
D. Computers numbered 60-79
E. Computers numbered 80-99
Answer: B

SCP certification   SC0-411   SC0-411   SC0-411 certification

NO.15 The exhibit shows a router with three interfaces E0, E1 and S0. Interfaces E0 and
E1 are connected to internal networks 192.168.10.0 and 192.168.20.0 respectively
and interface S0 is connected to the Internet.
The objective is to allow two hosts, 192.168.20.16 and 192.168.10.7 access to the
Internet while all other hosts are to be denied Internet access. All hosts on network
192.168.10.0 and 192.168.20.0 must be allowed to access resources on both internal
networks. From the following, select all the access list statements that are required
to make this possible.
A. access-list 53 permit 192.168.20.16 0.0.0.0
B. access-list 80 permit 192.168.20.16 0.0.0.0
C. access-list 53 deny 0.0.0.0 255.255.255.255
D. access-list 80 permit 192.168.10.7 0.0.0.0
E. int S0, ip access-group 53 out
F. int S0, ip access-group 80 out
Answer: BDF

SCP   SC0-411   SC0-411 practice test   SC0-411

NO.16 You are reviewing the Xinetd configuration file for the ftp service. If the following
line found in this file, what is the line's function?
redirect = 192.168.10.1 3456
A. That only 192.168.10.1 can make ftp requests
B. That only hosts in the 192.168.10.0/24 network can make ftp requests
C. That only 3456 connections are allowed to the ftp service on 192.168.10.1
D. That the overall Xinetd configuration has redirect lines in it
E. That the ftp service is redirected to IP 192.168.10.1 on port 3456
Answer: E

SCP exam simulations   SC0-411   SC0-411   SC0-411   SC0-411 exam dumps

NO.17 In a TCP Header, what is the function of the first sixteen bits?
A. To define the type
B. To define the IP Version
C. To define the destination port number
D. To define the upper layer protocol
E. To define the source port number
Answer: E

SCP certification   SC0-411 exam   SC0-411 certification

NO.18 One way to find out more about a company's infrastructure layout is to send email
to a non-existent user of the target organization. When this email bounces back as
undeliverable, you can read the message source. Which of the following pieces of
information can be derived from the returned message source?
A. Target company's email server's hostname.
B. Target company's email server's public IP address.
C. Target company's internal IP addressing scheme.
D. Target company's email server's application name and version, if provided.
E. Target company's employees' email addresses.
Answer: ABD

SCP certification   SC0-411   SC0-411   SC0-411

NO.19 If you are looking for plain-text ASCII characters in the payload of a packet you
capture using Network Monitor, which Pane will provide you this information?
A. Summary Pane
B. Packet Pane
C. Collection Pane
D. Hex Pane
E. Detail Pane
Answer: D

SCP   SC0-411   SC0-411 exam prep   SC0-411   SC0-411 pdf

NO.20 As you become more involved in the security and networking of your organization,
you wish to learn the exact details of the protocols in use. It is suggested to you, by a
friend, that you check the RFC for each protocol. What is an RFC?
A. An RFC is a program that has a searchable index to troubleshoot network problems.
B. An RFC is a document that discusses issues surrounding the Internet, networking
technologies, and/or networking protocols.
C. An RFC is a hidden resource, which can be called up via the Windows Help file to
identify details about networking protocols.
D. An RFC is a single document that details all the communications protocols and
technologies used on the Internet.
E. An RFC is a single document that details all the communications protocols and
technologies used on an Intranet.
Answer: B

SCP questions   SC0-411 braindump   SC0-411 exam simulations

NO.21 You are configuring the Access Lists for your new Cisco Router. The following are
the commands that are entered into the router for the list configuration.
Router(config)#access-list 145 deny tcp any 10.10.0.0 0.0.255.255 eq 80
Router(config)#access-list 145 deny tcp any 10.10.0.0 0.0.255.255 eq 119
Router(config)#access-list 145 permit ip any any
Router(config)#interface Serial 0
Router(config-if)#ip access-group 145 in
Router(config-if)#interface Ethernet 0
Router(config-if)# ip access-group 145 in
Router(config-if)#interface Ethernet 1
Router(config-if)# ip access-group 145 in
Router(config-if)#interface Ethernet 2
Router(config-if)# ip access-group 145 in
Based on this configuration, and using the exhibit, select the answers that identify
what the list will accomplish.
A. Permit network 10.10.10.0 to access NNTP on the Internet
B. Permit network 10.10.10.0 to access NNTP on network 10.10.11.0
C. Permit network 10.10.10.0 to access NNTP on network 10.10.12.0
D. Deny network 10.10.10.0 to access Internet WWW sites
E. Permit network 10.10.10.0 to access Internet WWW sites
Answer: AE

SCP test   SC0-411   SC0-411

NO.22 Which of the following fields are found in a user account's line in the /etc/passwd
file?
A. The User Identifier assigned to the user account
B. The home directory used by the user account
C. The number of days since the user account password was changed
D. The full name for the user account
E. The number of days until the user account's password must change
Answer: ABD

SCP   SC0-411 exam simulations   SC0-411 braindump   SC0-411 original questions

NO.23 In your network, you manage a mixed environment of Windows, Linux, and UNIX
computers. The clients run Windows 2000 Professional and Windows NT 4.0
Workstation, while the Servers are UNIX and Linux based with custom
applications. During routine administration you successfully ping several nodes in
the network. During this you are running a packet capture for further analysis.
When examining one of the frames you notice that the Ethernet address for the
source is 1ED0.097E.E5E9 and that for the destination is 1ED0.096F.5B13. From
this information you gather that:
A. They are in different networks
B. The destination address is in the 1ED0 subnet
C. The network cards are by the same manufacturer
D. The destination address is in the 1ED0.09AA subnet
E. The source and destination share the same MAC subnet
Answer: C

SCP   SC0-411   SC0-411   SC0-411

NO.24 You have recently hired an assistant to help you with managing the security of your
network. You are currently running an all Windows environment, and are
describing NTFS permission issues. You are using some demonstration files to help
with your discussion. You have two NTFS partitions, C:\ and D:\ There is a test file,
C:\DIR1\test.txt that is currently set so that only Administrators have Full Control.
If you move this file to the C:\DIR2 folder, what will the permissions be for this file?
A. The file will have the same permissions as D:\DIR2
B. The file permissions will remain the same
C. The file permissions will be lost
D. The file permissions will convert to Everyone - Full Control
E. The permissions will be set to whatever the CREATOR OWNER permissions are for
the D:\ partition
Answer: B

SCP test questions   SC0-411   SC0-411   SC0-411   SC0-411

NO.25 What is the function of the HFNetChk tool from Microsoft?
A. To check for the current Hotfixes that are available from Microsoft
B. It is an upgrade to the Windows Update tool for checking on all updates
C. It is the tool that must be run prior to installing IIS 5.0
D. It is the tool that checks the network configuration of all web servers
E. To record what Hotfixes and service packs are running on the Windows machine
Answer: E

SCP test   SC0-411 braindump   SC0-411 certification   SC0-411   SC0-411

NO.26 If an attacker uses a program that sends thousands of email messages to every user
of the network, some of them with over 50MB attachments. What are the possible
consequences to the email server in the network?
A. Server hard disk can fill to capacity
B. Client hard disks can fill to capacity
C. Server can completely crash
D. Network bandwidth can be used up
E. Clients cannot receive new email messages
Answer: AC

SCP   SC0-411   SC0-411

NO.27 You are configuring the dial up options in your Windows 2000 network. While you
do so, you are studying the configuration options available to you. You notice the
term RADIUS used often during your research. What does RADIUS provide?
A. RADIUS is used to define the implementation method of Kerberos in a network.
B. RADIUS is used to define the implementation method of PKI in a network.
C. RADIUS is used to define the implementation method of Biometrics in a network.
D. RADIUS is a standard that provides authorization, authentication, identification, and
accounting services.
E. RADIUS is a standard that defines the methods used to secure the connections
between a dialup client and a dialup server.
Answer: D

SCP demo   SC0-411 answers real questions   SC0-411   SC0-411   SC0-411   SC0-411 demo

NO.28 You have recently installed an Apache Web server on a Red Hat Linux machine.
When you return from lunch, you find that a colleague has made a few
configuration changes. One thing you notice is a .htpasswd file. What is the function
of this file?
A. It is a copy of the /etc/passwd file for Web access
B. It is a copy of the etc/shadow file for Web access
C. It is a listing of all anonymous users to the Web server
D. It is a listing of http users and passwords for authentication
E. It is a database file that can be pulled remotely via a web interface to identify currently
logged in users.
Answer: D

SCP   SC0-411   SC0-411

NO.29 You wish to add a new group to your Linux system. The group is called
SCNP_Admins, and is to be given a Group Identifier of 1024. What is the correct
command to add this new group?
A. addgroup SCNP_Admins -id 1024
B. groupadd -g 1024 SCNP_Admins
C. addgroup SCNP_Admins id/1024
D. groupadd id/1024 g/SCNP_Admins
E. groupadd g/1024 SCNP_Admins
Answer: B

SCP dumps   SC0-411   SC0-411   SC0-411   SC0-411

NO.30 You are in the process of securing several new machines on your Windows 2000
network. To help with the process Microsoft has defined a set of Security Templates
to use in various situations. Which of the following best describes the Basic Security
Template?
A. This template is provided as a way to reverse the implementation of different
Windows 2000 security settings, except for user rights.
B. This template is provided so that Local Users have ideal security settings, while Power
Users have settings that are compatible with NT 4 Users.
C. This template is provided to implement suggested security settings for all security
areas, except for the following: files, folders, and Registry keys.
D. This template is provided to create the maximum level of security for network traffic
between Windows 2000 clients.
E. This template is provided to allow for an administrator to run legacy applications on a
DC.
Answer: A

SCP   SC0-411   SC0-411   SC0-411 pdf   SC0-411   SC0-411

ITCertKing offer the latest 000-318 exam material and high-quality C_TSCM62_65 pdf questions & answers. Our CAT-221 VCE testing engine and LOT-958 study guide can help you pass the real exam. High-quality C-TFIN52-64 dumps training materials can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.

Article Link: http://www.itcertking.com/SC0-411_exam.html

2013年9月30日星期一

SCP certification SC0-411 best exam questions and answers

The SC0-411 examination certification, as other world-renowned certification, will get international recognition and acceptance. People around the world prefer SC0-411 exam certification to make their careers more strengthened and successful. In ITCertKing, you can choose the products which are suitable for your learning ability to learn.

ITCertKing senior experts have developed exercises and answers about SCP certification SC0-411 exam with their knowledge and experience, which have 95% similarity with the real exam. I believe that you will be very confident of our products. If you choose to use ITCertKing's products, ITCertKing can help you 100% pass your first time to attend SCP certification SC0-411 exam. If you fail the exam, we will give a full refund to you.

ITCertKing's products are developed by a lot of experienced IT specialists using their wealth of knowledge and experience to do research for IT certification exams. So if you participate in SCP certification SC0-411 exam, please choose our ITCertKing's products, ITCertKing can not only provide you a wide coverage and good quality exam information to guarantee you to let you be ready to face this very professional exam but also help you pass SCP certification SC0-411 exam to get the certification.

In order to prevent your life from regret and remorse, you should seize every opportunity which can change lives passibly. Did you do it? ITCertKing's SCP SC0-411 exam training materials can help you to achieve your success. We can help you pass the SCP SC0-411 exam smoothly. In order not to let success pass you by, do it quickly.

ITCertKing's SCP SC0-411 exam training materials' simulation is particularly high. You can encounter the same questions in the real real exam. This only shows that the ability of our IT elite team is really high. Now many ambitious IT staff to make their own configuration files compatible with the market demand, to realize their ideals through these hot IT exam certification. Achieved excellent results in the SCP SC0-411 exam. With the SCP SC0-411 exam training of ITCertKing, the door of the dream will open for you.

Exam Code: SC0-411
Exam Name: SCP (Hardening the Infrastructure (HTI))
One year free update, No help, Full refund!
Total Q&A: 410 Questions and Answers
Last Update: 2013-09-30

SC0-411 Free Demo Download: http://www.itcertking.com/SC0-411_exam.html

NO.1 In Windows 2000, there are four methods of implementing IPSec. They are:
1. Require Security
2 - Request Security
3 - Respond Only
4 - No IPSec Policy
Your network hosts many servers, and different security policies are in place in
different locations in the network. The Clients and Servers in your network are
configured as follows:
-You have servers numbered 1-9, which have a policy stating they require no
network traffic security.
-You have servers numbered 10-19, which have a policy stating they are not
required to be secure, but will encrypt network traffic if the client is able to receive
it.
-You have servers numbered 20-29, which have a policy stating they are required to
be secure and all network traffic they deliver must be secured.
-You have clients numbered 60-79 that are required to access secure servers 20-29.
-You have clients numbered 80-99 that are not required to access secure servers
20-29, but are required to access servers 1-9 and 10-19.
Based on the Client and Server configuration provided above, which of the
following computers will implement IPSec method 2?
A. Computers numbered 1-9
B. Computers numbered 10-19
C. Computers numbered 20-29
D. Computers numbered 60-79
E. Computers numbered 80-99
Answer: B

SCP   SC0-411 braindump   SC0-411

NO.2 Which of the following is implemented in an IPv6 environment, which helps to
increase security?
A. EFS
B. IPsec
C. Caching
D. S/MIME
E. Destination and Source Address Encryption
Answer: B

SCP certification training   SC0-411 certification training   SC0-411   SC0-411

NO.3 You work for a mid sized ISP on the West Coast of the United Kingdom. Recently
you have noticed that there are an increasing number of attacks on the Internet
routers used in the company. The routers are physically secured well, so you can be
somewhat confident the attacks are all remote. Which of the following are legitimate
threats the routers are facing, under this situation?
A. Damaged Cables
B. False Data Injection
C. Social Engineering
D. Unauthorized Remote Access
E. Denial of Service
Answer: BDE

SCP questions   SC0-411   SC0-411 test questions   SC0-411 test questions

NO.4 You have recently installed an Apache Web server on a Red Hat Linux machine.
When you return from lunch, you find that a colleague has made a few
configuration changes. One thing you notice is a .htpasswd file. What is the function
of this file?
A. It is a copy of the /etc/passwd file for Web access
B. It is a copy of the etc/shadow file for Web access
C. It is a listing of all anonymous users to the Web server
D. It is a listing of http users and passwords for authentication
E. It is a database file that can be pulled remotely via a web interface to identify currently
logged in users.
Answer: D

SCP braindump   SC0-411 exam prep   SC0-411   SC0-411

NO.5 Which of the following fields are found in a user account's line in the /etc/passwd
file?
A. The User Identifier assigned to the user account
B. The home directory used by the user account
C. The number of days since the user account password was changed
D. The full name for the user account
E. The number of days until the user account's password must change
Answer: ABD

SCP   SC0-411   SC0-411 exam simulations   SC0-411 answers real questions

NO.6 If an attacker uses a program that sends thousands of email messages to every user
of the network, some of them with over 50MB attachments. What are the possible
consequences to the email server in the network?
A. Server hard disk can fill to capacity
B. Client hard disks can fill to capacity
C. Server can completely crash
D. Network bandwidth can be used up
E. Clients cannot receive new email messages
Answer: AC

SCP   SC0-411 exam dumps   SC0-411 braindump   SC0-411

NO.7 When a new user account is created in Linux, what values are assigned?
A. Shell_GID
B. SetGID
C. SetUID
D. UID
E. GID
Answer: DE

SCP answers real questions   SC0-411 exam dumps   SC0-411   SC0-411 questions   SC0-411

NO.8 When you took over the security responsibilities at your office, you noticed there
were no warning banners on any of the equipment. You have decided to create a
warning login banner on your Cisco router. Which of the following shows the
correct syntax for the banner creation?
A. banner login C Restricted access. Only authorized users allowed to access this device.
B. login banner C Restricted access. Only authorized users allowed to access this device.
C. banner login Restricted access. Only authorized users allowed to access this device.
D. login banner Restricted access. Only authorized users allowed to access this device.
E. banner logging C Restricted access. Only authorized users allowed to access this
device. C
Answer: A

SCP   SC0-411 questions   SC0-411   SC0-411 certification training

NO.9 In your network, you manage a mixed environment of Windows, Linux, and UNIX
computers. The clients run Windows 2000 Professional and Windows NT 4.0
Workstation, while the Servers are UNIX and Linux based with custom
applications. During routine administration you successfully ping several nodes in
the network. During this you are running a packet capture for further analysis.
When examining one of the frames you notice that the Ethernet address for the
source is 1ED0.097E.E5E9 and that for the destination is 1ED0.096F.5B13. From
this information you gather that:
A. They are in different networks
B. The destination address is in the 1ED0 subnet
C. The network cards are by the same manufacturer
D. The destination address is in the 1ED0.09AA subnet
E. The source and destination share the same MAC subnet
Answer: C

SCP answers real questions   SC0-411   SC0-411   SC0-411 braindump   SC0-411

NO.10 In order to perform promiscuous mode captures using the Ethereal capture tool on
a Windows 2000 machine, what must first be installed?
A. IPv4 stack
B. IPv6 stack
C. WinPcap
D. Nothing, it will capture by default
E. At least two network adapters
Answer: C

SCP   SC0-411 exam   SC0-411

NO.11 You are creating the contingency plan for the network in hospital where you just
started working. The network has about 300 PCs, about 50 Servers, and is
interconnected into some of the critical patient systems for monitoring purposes.
What is the appropriate level of backup power for this type of network?
A. Building Generator
B. Personal UPS
C. Alternative Fuel-Cell Technology
D. Server Rack UPS
E. Electrical Company
Answer: A

SCP test   SC0-411   SC0-411   SC0-411 original questions   SC0-411

NO.12 What is the function of the HFNetChk tool from Microsoft?
A. To check for the current Hotfixes that are available from Microsoft
B. It is an upgrade to the Windows Update tool for checking on all updates
C. It is the tool that must be run prior to installing IIS 5.0
D. It is the tool that checks the network configuration of all web servers
E. To record what Hotfixes and service packs are running on the Windows machine
Answer: E

SCP certification training   SC0-411   SC0-411 practice test

NO.13 You are reviewing the Xinetd configuration file for the ftp service. If the following
line found in this file, what is the line's function?
redirect = 192.168.10.1 3456
A. That only 192.168.10.1 can make ftp requests
B. That only hosts in the 192.168.10.0/24 network can make ftp requests
C. That only 3456 connections are allowed to the ftp service on 192.168.10.1
D. That the overall Xinetd configuration has redirect lines in it
E. That the ftp service is redirected to IP 192.168.10.1 on port 3456
Answer: E

SCP exam prep   SC0-411   SC0-411   SC0-411 demo   SC0-411 exam

NO.14 If you wish to change the permissions of a parent directory in your Linux system,
and want the permissions to be changed on the files and subdirectories in the parent
directory to be the same, what switch must you use?
A. -G
B. -R
C. -P
D. -S
E. -F
Answer: B

SCP   SC0-411   SC0-411 test answers   SC0-411 test questions   SC0-411 test answers

NO.15 As you become more involved in the security and networking of your organization,
you wish to learn the exact details of the protocols in use. It is suggested to you, by a
friend, that you check the RFC for each protocol. What is an RFC?
A. An RFC is a program that has a searchable index to troubleshoot network problems.
B. An RFC is a document that discusses issues surrounding the Internet, networking
technologies, and/or networking protocols.
C. An RFC is a hidden resource, which can be called up via the Windows Help file to
identify details about networking protocols.
D. An RFC is a single document that details all the communications protocols and
technologies used on the Internet.
E. An RFC is a single document that details all the communications protocols and
technologies used on an Intranet.
Answer: B

SCP answers real questions   SC0-411 original questions   SC0-411 study guide

NO.16 In a TCP Header, what is the function of the first sixteen bits?
A. To define the type
B. To define the IP Version
C. To define the destination port number
D. To define the upper layer protocol
E. To define the source port number
Answer: E

SCP braindump   SC0-411 demo   SC0-411   SC0-411 braindump   SC0-411

NO.17 You wish to add a new group to your Linux system. The group is called
SCNP_Admins, and is to be given a Group Identifier of 1024. What is the correct
command to add this new group?
A. addgroup SCNP_Admins -id 1024
B. groupadd -g 1024 SCNP_Admins
C. addgroup SCNP_Admins id/1024
D. groupadd id/1024 g/SCNP_Admins
E. groupadd g/1024 SCNP_Admins
Answer: B

SCP test questions   SC0-411 questions   SC0-411 answers real questions

NO.18 One way to find out more about a company's infrastructure layout is to send email
to a non-existent user of the target organization. When this email bounces back as
undeliverable, you can read the message source. Which of the following pieces of
information can be derived from the returned message source?
A. Target company's email server's hostname.
B. Target company's email server's public IP address.
C. Target company's internal IP addressing scheme.
D. Target company's email server's application name and version, if provided.
E. Target company's employees' email addresses.
Answer: ABD

SCP certification training   SC0-411   SC0-411   SC0-411 questions   SC0-411

NO.19 You have recently hired an assistant to help you with managing the security of your
network. You are currently running an all Windows environment, and are
describing NTFS permission issues. You are using some demonstration files to help
with your discussion. You have two NTFS partitions, C:\ and D:\ There is a test file,
C:\DIR1\test.txt that is currently set so that only Administrators have Full Control.
If you move this file to the C:\DIR2 folder, what will the permissions be for this file?
A. The file will have the same permissions as D:\DIR2
B. The file permissions will remain the same
C. The file permissions will be lost
D. The file permissions will convert to Everyone - Full Control
E. The permissions will be set to whatever the CREATOR OWNER permissions are for
the D:\ partition
Answer: B

SCP   SC0-411   SC0-411 test questions   SC0-411

NO.20 You are configuring the IP addressing for your network. One of the subnets has
been defined with addresses already. You run ifconfig on a host and determine that
it has an address of 172.18.32.54 with a mask of 255.255.254.0. What is the network
ID to which this host belongs?
A. 172.18.0.0
B. 0.0.32.0
C. 172.0.0.0
D. 172.18.32.32
E. 172.18.32.0
Answer: E

SCP study guide   SC0-411   SC0-411   SC0-411   SC0-411 exam prep   SC0-411 exam simulations

NO.21 In order to add to your layered defense, you wish to implement some security
configurations on your router. If you wish to have the router work on blocking TCP
SYN attacks, what do you add to the end of an ACL statement?
A. The IP addresses for allowed networks
B. The port range of allowed applications
C. The word Established
D. The word Log
E. The string: no service udp-small-servers
Answer: C

SCP   SC0-411 test   SC0-411 answers real questions   SC0-411 demo

NO.22 You are configuring a wildcard mask for the subnet 10.12.24.0 / 255.255.248.0.
Which of the following is the wildcard mask to use for this subnet?
A. 0.255.255.255
B. 10.12.24.255
C. 0.0.248.0
D. 255.255.248.0
E. 0.0.7.255
Answer: E

SCP dumps   SC0-411   SC0-411   SC0-411   SC0-411 original questions   SC0-411

NO.23 If you are looking for plain-text ASCII characters in the payload of a packet you
capture using Network Monitor, which Pane will provide you this information?
A. Summary Pane
B. Packet Pane
C. Collection Pane
D. Hex Pane
E. Detail Pane
Answer: D

SCP   SC0-411   SC0-411   SC0-411 test

NO.24 In order to properly manage the network traffic in your organization, you need a
complete understanding of protocols and networking models. In regards to the
7-layer OSI model, what is the function of the Transport Layer?
A. The Transport layer allows two applications on different computers to establish, use,
and end a session. This layer establishes dialog control between the two computers in a
session, regulating which side transmits, plus when and how long it transmits.
B. The Transport layer manages logical addresses. It also determines the route from the
source to the destination computer and manages traffic problems, such as routing, and
controlling the congestion of data packets.
C. The Transport layer packages raw bits from the Physical (Layer 1) layer into frames
(structured packets for data). Physical addressing (as opposed to network or logical
addressing) defines how devices are addressed at the data link layer. This layer is
responsible for transferring frames from one computer to another, without errors. After
sending a frame, it waits for an acknowledgment from the receiving computer.
D. The Transport layer transmits bits from one computer to another and regulates the
transmission of a stream of bits over a physical medium. For example, this layer defines
how the cable is attached to the network adapter and what transmission technique is used
to send data over the cable.
E. The Transport layer handles error recognition and recovery. It also repackages long
messages, when necessary, into small packets for transmission and, at the receiving end,
rebuilds packets into the original message. The corresponding Transport layer at the
receiving end also sends receipt acknowledgments.
Answer: E

SCP   SC0-411 demo   SC0-411

NO.25 You are in the process of securing several new machines on your Windows 2000
network. To help with the process Microsoft has defined a set of Security Templates
to use in various situations. Which of the following best describes the Basic Security
Template?
A. This template is provided as a way to reverse the implementation of different
Windows 2000 security settings, except for user rights.
B. This template is provided so that Local Users have ideal security settings, while Power
Users have settings that are compatible with NT 4 Users.
C. This template is provided to implement suggested security settings for all security
areas, except for the following: files, folders, and Registry keys.
D. This template is provided to create the maximum level of security for network traffic
between Windows 2000 clients.
E. This template is provided to allow for an administrator to run legacy applications on a
DC.
Answer: A

SCP   SC0-411   SC0-411 demo   SC0-411   SC0-411 original questions

NO.26 You are configuring the dial up options in your Windows 2000 network. While you
do so, you are studying the configuration options available to you. You notice the
term RADIUS used often during your research. What does RADIUS provide?
A. RADIUS is used to define the implementation method of Kerberos in a network.
B. RADIUS is used to define the implementation method of PKI in a network.
C. RADIUS is used to define the implementation method of Biometrics in a network.
D. RADIUS is a standard that provides authorization, authentication, identification, and
accounting services.
E. RADIUS is a standard that defines the methods used to secure the connections
between a dialup client and a dialup server.
Answer: D

SCP   SC0-411 pdf   SC0-411

NO.27 You are creating the contingency plan, and are trying to take into consideration as
many of the disasters as you can think of. Which of the following are examples of
technological disasters?
A. Hurricane
B. Terrorism
C. Tornado
D. Virus
E. Trojan Horse
Answer: BDE

SCP   SC0-411 test questions   SC0-411 practice test   SC0-411   SC0-411 exam simulations   SC0-411

NO.28 The exhibit shows a router with three interfaces E0, E1 and S0. Interfaces E0 and
E1 are connected to internal networks 192.168.10.0 and 192.168.20.0 respectively
and interface S0 is connected to the Internet.
The objective is to allow two hosts, 192.168.20.16 and 192.168.10.7 access to the
Internet while all other hosts are to be denied Internet access. All hosts on network
192.168.10.0 and 192.168.20.0 must be allowed to access resources on both internal
networks. From the following, select all the access list statements that are required
to make this possible.
A. access-list 53 permit 192.168.20.16 0.0.0.0
B. access-list 80 permit 192.168.20.16 0.0.0.0
C. access-list 53 deny 0.0.0.0 255.255.255.255
D. access-list 80 permit 192.168.10.7 0.0.0.0
E. int S0, ip access-group 53 out
F. int S0, ip access-group 80 out
Answer: BDF

SCP   SC0-411   SC0-411 exam simulations   SC0-411 certification   SC0-411   SC0-411

NO.29 In the last few days, users have reported to you that they have each received two
emails from an unknown source with file attachments. Fortunately the users have
listened to your training and no one has run the attached program. You study the
attachment on an isolated computer and find that it is a program that is designed to
execute a payload when the system clock registers 10:10 PM on February 29. Which
of the following best identifies the type of program is the attachment?
A. Mail Bomb
B. Logic Bomb
C. Polymorphic Virus
D. Stealth Virus
E. Polymorphic Trojan
Answer: B

SCP braindump   SC0-411   SC0-411   SC0-411

NO.30 You are configuring the Access Lists for your new Cisco Router. The following are
the commands that are entered into the router for the list configuration.
Router(config)#access-list 145 deny tcp any 10.10.0.0 0.0.255.255 eq 80
Router(config)#access-list 145 deny tcp any 10.10.0.0 0.0.255.255 eq 119
Router(config)#access-list 145 permit ip any any
Router(config)#interface Serial 0
Router(config-if)#ip access-group 145 in
Router(config-if)#interface Ethernet 0
Router(config-if)# ip access-group 145 in
Router(config-if)#interface Ethernet 1
Router(config-if)# ip access-group 145 in
Router(config-if)#interface Ethernet 2
Router(config-if)# ip access-group 145 in
Based on this configuration, and using the exhibit, select the answers that identify
what the list will accomplish.
A. Permit network 10.10.10.0 to access NNTP on the Internet
B. Permit network 10.10.10.0 to access NNTP on network 10.10.11.0
C. Permit network 10.10.10.0 to access NNTP on network 10.10.12.0
D. Deny network 10.10.10.0 to access Internet WWW sites
E. Permit network 10.10.10.0 to access Internet WWW sites
Answer: AE

SCP   SC0-411 certification   SC0-411 dumps   SC0-411 original questions   SC0-411 certification

ITCertKing offer the latest 3103 exam material and high-quality 200-120 pdf questions & answers. Our HP2-N35 VCE testing engine and HP2-Z24 study guide can help you pass the real exam. High-quality MB5-700 dumps training materials can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.

Article Link: http://www.itcertking.com/SC0-411_exam.html