Online Access Free 300-206 Exam Questions

Exam Code:300-206
Exam Name:Implementing Cisco Edge Network Security Solutions
Certification Provider:Cisco
Free Question Number:175
Posted:Sep 12, 2025
Rating
100%

Question 1

You must configure a Cisco ASA 5500 Series as an NTP client by using authentication. Drag and drop the configuration steps from the left into the correct order on the right.

Question 2

You need to increase the level of security for the management traffic accessing a Cisco router. You plan to enable HTTPS. Which action do you take on the router?

Question 3

Which ASA high availability mode ensures that both ASAs are simultaneously processing live network traffic?

Question 4

Which two tasks are optional when you configure a Botnet Traffic Filter on a Cisco firewall? (Choose two.)

Question 5

You are the network security engineer for the Secure-X network. The company has recently detected Increase of traffic to malware Infected destinations. The Chief Security Officer deduced that some PCs in the internal networks are infected with malware and communicate with malware infected destinations.
The CSO has tasked you with enable Botnet traffic filter on the Cisco ASA to detect and deny further connection attempts from infected PCs to malware destinations. You are also required to test your configurations by initiating connections through the Cisco ASA and then display and observe the Real-Time Log Viewer in ASDM.
To successfully complete this activity, you must perform the following tasks:
* Download the dynamic database and enable use of it.
* Enable the ASA to download of the dynamic database
* Enable the ASA to download of the dynamic database.
* Enable DNS snooping for existing DNS inspection service policy rules..
* Enable Botnet Traffic Filter classification on the outside interface for All Traffic.
* Configure the Botnet Traffic Filter to drop blacklisted traffic on the outside interface. Use the default Threat Level settings NOTE: The database files are stored in running memory; they are not stored in flash memory.
NOTE: DNS is enabled on the inside interface and set to the HQ-SRV (10.10.3.20).
NOTE: Not all ASDM screens are active for this exercise.
* Verify that the ASA indeed drops traffic to blacklisted destinations by doing the following:
* From the Employee PC, navigate to http://www.google.com to make sure that access to the Internet is working.
* From the Employee PC, navigate to http://bot-sparta.no-ip.org. This destination is classified as malware destination by the Cisco SIO database.
* From the Employee PC, navigate to http://superzarabotok-gid.ru/. This destination is classified as malware destination by the Cisco SIO database.
* From Admin PC, launch ASDM to display and observe the Real-Time Log Viewer.
You have completed this exercise when you have configured and successfully tested Botnet traffic filter on the Cisco ASA.


Add Comments

Your email address will not be published. Required fields are marked *

insert code
Type the characters from the picture.