Cisco 300-206 Implementing Cisco Edge Network Security Solutions Online Training
Cisco 300-206 Online Training
The questions for 300-206 were last updated at Oct 23,2025.
- Exam Code: 300-206
- Exam Name: Implementing Cisco Edge Network Security Solutions
- Certification Provider: Cisco
- Latest update: Oct 23,2025
Which three commands can be used to harden a switch? (Choose three.)
- A . switch(config-if)# spanning-tree bpdufilter enable
- B . switch(config)# ip dhcp snooping
- C . switch(config)# errdisable recovery interval 900
- D . switch(config-if)# spanning-tree guard root
- E . switch(config-if)# spanning-tree bpduguard disable
- F . switch(config-if)# no cdp enable
What are three features of the Cisco ASA 1000V? (Choose three.)
- A . cloning the Cisco ASA 1000V
- B . dynamic routing
- C . the Cisco VNMC policy agent
- D . IPv6
- E . active/standby failover
- F . QoS
If the Cisco ASA 1000V has too few licenses, what is its behavior?
- A . It drops all traffic.
- B . It drops all outside-to-inside packets.
- C . It drops all inside-to-outside packets.
- D . It passes the first outside-to-inside packet and drops all remaining packets.
A network administrator is creating an ASA-CX administrative user account with the following parameters: -The user will be responsible for configuring security policies on networkdevices. -The user needs read-write access to policies. -The account has no more rights than necessary for the job.
What role will the administrator assign to the user?
- A . Administrator
- B . Security administrator
- C . System administrator
- D . Root Administrator
- E . Exec administrator
Which two web browsers are supported for the Cisco ISE GUI? (Choose two.)
- A . HTTPS-enabled Mozilla Firefox version 3.x
- B . Netscape Navigator version 9
- C . Microsoft Internet Explorer version 8 in Internet Explorer 8-only mode
- D . Microsoft Internet Explorer version 8 in all Internet Explorer modes
- E . Google Chrome (all versions)
With Cisco ASA active/standby failover, by default, how many monitored interface failures will cause failover to occur?
- A . 1
- B . 2
- C . 3
- D . 4
- E . 5
Which statement about SNMP support on the Cisco ASA appliance is true?
- A . The Cisco ASA appliance supports only SNMPv1 or SNMPv2c.
- B . The Cisco ASA appliance supports read-only and read-write access.
- C . The Cisco ASA appliance supports three built-in SNMPv3 groups in Cisco ASDM: Authentication and Encryption, Authentication Only, and No Authentication, No Encryption.
- D . The Cisco ASA appliance can send SNMP traps to the network management station only using SNMPv2.
Which statement about Cisco ASA multicast routing support is true?
- A . The Cisco ASA appliance supports PIM dense mode, sparse mode, and BIDIR-PIM.
- B . The Cisco ASA appliance supports only stub multicast routing by forwarding IGMP messages from multicastreceivers to the upstream multicast router.
- C . The Cisco ASA appliance supports DVMRP and PIM.
- D . The Cisco ASA appliance supports either stub multicast routing or PIM, but both cannot be enabled at thesame time.
- E . The Cisco ASA appliance supports only IGMP v1.
How many interfaces can a Cisco ASA bridge group support and how many bridge groups can a Cisco ASA appliance support?
- A . up to 2 interfaces per bridge group and up to 4 bridge groups per Cisco ASA appliance
- B . up to 2 interfaces per bridge group and up to 8 bridge groups per Cisco ASA appliance
- C . up to 4 interfaces per bridge group and up to 4 bridge groups per Cisco ASA appliance
- D . up to 4 interfaces per bridge group and up to 8 bridge groups per Cisco ASA appliance
- E . up to 8 interfaces per bridge group and up to 4 bridge groups per Cisco ASA appliance
- F . up to 8 interfaces per bridge group and up to 8 bridge groups per Cisco ASA appliance
Which addresses are considered "ambiguous addresses" and are put on the greylist by the Cisco ASA botnet traffic filter feature?
- A . addresses that are unknown
- B . addresses that are on the greylist identified by the dynamic database
- C . addresses that are blacklisted by the dynamic database but also are identified by the static whitelist
- D . addresses that are associated with multiple domain names, but not all of these domain names are on the blacklist