Cisco 642-522 Practice Exam, The Best Cisco 642-522 New Questions Is Your Best Choice
Welcome to download the newest Pass4itsure 642-522 dumps:
QUESTION 97
Which of the following statements regarding SSH and the PIX Firewall are valid? (Choose three)
A. You must generate an RSA key-pair for the PIX Firewall before SSH clients can connect to the PIX Firewall console.
B. You can use either an SSH version 1 or 2 client because the two versions are essentially the same and are entirely compatible.
C. The PIX Firewall supports the SSH remote functionality as provided in SSH version.1.
D. You must upgrade you DES activation key to 3DES.
E. The PIX Firewall allows up to 5 SSH clients to simultaneously access its console.
F. The PIX Firewall does not support SSH remote functionality as provided in SSH version 1.
Correct Answer: ACE Section: (none) Explanation
Explanation/Reference:
Explanation: The PIX Firewall supports the SSH remote functionality, as provided in SSH version 1, which provides strong authentication and encryption capabilities. SSH, an application running on top of reliable transport layer such as TCP, supports logging onto another computer over a network, executing command remotely, and moving files from one host to another. Both ends of an SSH connection are authenticated, and passwords are protected by being encrypted. Since SSH uses RSA public key cryptography, an Internet encryption and authentication system, you must generate an RSA key pair for the PIX Firewall before clients can connect to the PIX Firewall console. The PIX Firewall allows up to five SSH clients to simultaneously access its console. Reference: SPFA Student Guide v3.2 – Cisco Secure PIX Advanced p.17-7
QUESTION 98
You want to configure a Certkiller user with the highest privilege level available on a new Cisco PIX firewall. What privilege level is the highest on this security appliance?