920-449 Exam

nncse contivity security

  • Exam Number/Code : 920-449
  • Exam Name : nncse contivity security
  • Questions and Answers : 52 Q&As
  • Update Time: 2011-10-24
  • Testing Engine (SoftWare Version): $ 50.00
  • PDF (Printable Version) Price: $15.00
  •  

Note: After purchase, we will send questions within 24 hours.

Free 920-449 Demo Download

Examsoon offers free demo for NCSE 920-449 exam (nncse contivity security). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. We are the only one site can offer demo for almost all products.

Download 920-449 PDF Demo

Download 920-449 ExamTesting Engine

 

Exam 920-449 Preparation from Examsoon include:

After you purchase our product, we will offer free update in time for 90 days.
100% Pass Guaranteed at First Attempt Or Free Update
Immediate Download After Purchase
Comprehensive questions with complete details
Questions accompanied by exhibits
Verified Answers Researched by Industry Experts
Drag and Drop questions as experienced in the Examsoon
Questions updated on regular basis
our product is in multiple-choice questions (MCQs)


Passing the Nortel 920-449 Exam:Passing the 920-449 exam has never been faster or easier, now with the questions and answers, without the messy 920-449 exam that are frequently incorrect. Examsoon Unlimited Access Exams are not only the cheaper way to pass without resorting to 920-449 tests, but at only $ 50.00 you get access to the exam from every certification vendor.


Our 920-449 practice exams and study questions are composed by current and active Information Technology experts, who use their experience in preparing you for your future in IT.


Nortel 920-449 Search Help Feel free to use search terms below while searching the Net for 920-449 exam:

920-449 brain dump simulations
920-449 Test question
920-449 braindump work
920-449 master exams
920-449 braindump model
920-449 latest test


Commitment to Your Success:

At Examsoon we are committed to you ongoing success. Our exams are constantly being updated and compared to industry standards.


You are not about to purchase a disposable product. 920-449 exam updates are supplied free of charge. Regardless of how soon you decide to take the 920-449 examination certification, you will be able to walk into the testing room as confident as the Certification Administrator.


Skip all the worthless 920-449 tutorials and download 920-449 exam materials with questions and answers and a price too unbelievable to pass up. Act now and download it today!

http://www.Examsoon.com The safer.easier way to get NCSE Certification.
 
 
Exam : Nortel 920-449
Title : NNCSE Contivity Security


1. A Contivity has two private interfaces (LAN and DMZ) and one public interfaces (INT). Workstation1 with an IP address of 10.10.10.1/24 is in the network that is directly attached to the private interface LAN. Workstation2 with an IP address of 20.20.20.1/24 is in the network that is directly attached to private interface DMZ. The requirement is to block only traffic from workstation1 to workstation2 using interface filters to be applied to the private interface DMZ. Select the most appropriate filter action, direction, and address for the access control filter.
A. Filter action = Deny ; Direction = Inbound ; Address = 20.20.20.1
B. Filter action = Deny ; Direction = Inbound ; Address = 10.10.10.1
C. Filter action = Deny ; Direction = Outbound ; Address = 10.10.10.1
D. Filter action = Deny ; Direction = Outbound ; Address = 20.20.20.1
Answer: C

2. Contivity Stateful Firewall has been enabled on a customer's Contivity system. The customer wants to extend user authentication on traffic between branch office connections in their VPN environment and a technician has set up Firewall User Authentication (FWUA). How will this affect system users?
A. Users will now have transparent access to the Contivity Stateful Firewall.
B. Users will be automatically authenticated for internal authorization services such as LDAP.
C. Users will be automatically authenticated for external authorization services such as RADIUS.
D. Users will be required to log into the Contivity Stateful Firewall before they are granted network access.
Answer: D

3. A technician is setting up a rule base for a Contivity Stateful Firewall configuration. The technician plans to enable a Lockdown rule. What will be the impact of this rule?
A. non-tunneled traffic will be blocked
B. access to the firewall will be blocked
C. outgoing traffic through the firewall will be blocked
D. incoming traffic through the firewall will be blocked
Answer: B

4. A Contivity configuration has two private interfaces (LAN 0 and LAN 1) and one public interface (LAN 3) with Application servers residing on LAN 0. An administrator needs to create a default rule in order to allow users from LAN 1 and tunneled users from LAN 3 to access the application servers in LAN 0. What would be the most secure interface classification for the source interface?
A. Any
B. Trusted
C. Tunnel: Any
D. LAN 1 and LAN 3
Answer: B

5. A company has a main office and three branch offices. Each branch office has a branch office tunnel (BOT) connection to the main office. The following conditions exist: - Contivity firewall is disabled but each BOT has a default setting of ermit all?tunnel filter configured under the group profile. - Contivity firewall is disabled but each BOT has a default setting of ?ermit all?tunnel filter configured under the group profile. - The company has their own internal/private DNS server which resides in the main office. - Contivity from each branch offices is acting as DNS proxy. - Workstations from the branch offices are pointing to their local Contivity as the default gateway and DNS server. All workstations from the branch offices can reach all devices in the main office via IP address but cannot reach them through DNS names. What is the most likely cause of the problem?
A. The access control of ermit all?given to the BOT group is enough to allow DNS to pass through the tunnel so the DNS server could be The access control of ?ermit all?given to the BOT group is enough to allow DNS to pass through the tunnel so the DNS server could be down.
B. DNS server is up but main office's Contivity has DNS setting unchecked under the allow management traffic for remote servers portion of the permit all rule.
C. DNS server is up but branch offices' Contivity has DNS setting unchecked under the allow management traffic for remote servers portion of the permit all rule.
D. Main office's Contivity has DNS setting checked under the allow management traffic for remote servers portion of the permit all rule but DNS server could be down.
Answer: C