Free 400-007 Exam Braindumps (page: 26)

Page 25 of 74

Which effect of using ingress filtering to prevent spoofed addresses on a network design is true?

  1. It filters RFC 1918 IP addresses.
  2. It protects the network infrastructure against spoofed DDoS attacks.
  3. It reduces the effectiveness of DDoS attacks when associated with DSCP remarking to Scavenger.
  4. It classifies bogon traffic and remarks it with DSCP bulk.

Answer(s): B

Explanation:

Ingress filtering is a security measure that can be used to prevent spoofed addresses on a network design. Spoofed addresses are IP addresses that are not actually assigned to a device on the network. Attackers can use spoofed addresses to launch DDoS attacks, which are attacks that flood a network with traffic. Ingress filtering can help to prevent these attacks by filtering out packets that have spoofed source addresses.

The other options are not as accurate. RFC 1918 IP addresses are private IP addresses that are not routable on the public internet. These addresses are not typically used in DDoS attacks, so filtering them out would not have a significant impact on the effectiveness of DDoS attacks. DSCP remarking is a technique that can be used to change the DSCP (Differentiated Services Code Point) value of a packet. DSCP is a field in the IP header that is used to classify traffic. Scavenger is a type of DSCP value that is used to mark traffic that is not important. Classifying bogon traffic and remarking it with DSCP bulk would not have a significant impact on the effectiveness of DDoS attacks.



Which two technologies enable multilayer segmentation? (Choose two.)

  1. firewalls
  2. data plane markings
  3. filter lists
  4. segment routing
  5. policy-based routing

Answer(s): A,B

Explanation:

FWs for sure and data plane markings such as SGT tags (Trustsec) are used for segmentation



IPFIX data collection via standalone IPFIX probes is an alternative to flow collection from routers and switches. Which use case is suitable for using IPFIX probes?

  1. security
  2. observation of critical links
  3. capacity planning
  4. performance monitoring

Answer(s): A

Explanation:

IPFIX probes are devices that can be used to collect IPFIX data from routers and switches. This data can then be used for a variety of purposes, including security, observation of critical links, capacity planning, and performance monitoring.

However, IPFIX probes are particularly well-suited for security use cases. This is because they can be used to collect data from a wide range of devices, including devices that do not support NetFlow. This data can then be used to identify and investigate security incidents.

The other options are also suitable for using IPFIX probes, but they are not as well-suited as security use cases. For example, observation of critical links can be used to identify and troubleshoot performance issues on critical links. Capacity planning can be used to forecast future network traffic and to plan for capacity upgrades. Performance monitoring can be used to identify and troubleshoot performance issues on the network.



DRAG DROP (Drag and Drop is not supported)
Drag and drop the design use cases from the left onto the correct uRPF techniques used to prevent spoofing attacks. Not all options are used.

  1. See Explanation section for answer.

Answer(s): A

Explanation:






Post your Comments and Discuss Cisco® 400-007 exam with other Community members:

400-007 Discussions & Posts