
642-531
D. 100 interface/directions maximum per devices
E. 10 interface (both directions) across all devices
Answer: A
Page 383 Cisco Press CCSP CSIDS 2nd edition under IP Blocking: Network Topology
A single sensor can only perform IP Blocking on a maximum of 10 interfaces across one or more managed
devices
Cisco Courseware 15-3
QUESTION 120
Which of the following can a blocking Sensor utilize to manage a PIX Firewall for shunning? (Choose all
that apply.)
A. RDEP
B. Telnet
C. SSLand
D. SSH
E. serial console
Answer: B, D
Page 15-7 CSIDS Courseware under Blocking Device Requirements
The blocking device must have one of the following configured:
1) Telnet enabled - Telnet access should be allowed from the sensor
2) Secure shell (SSH) enabled- SSH access should be allowedfrom the sensor
QUESTION 121
Which Sensor process is responsible for initialing shuns on a blocking device?
A. exec
B. NAC
C. blockd
D. shunStart
E. ACL Daemon
Answer: B
Explanation:
Network Access Controller (NAC) is used to initiate Sensor shunning on network devices.
Reference: page 120 of Ciscopress CCSP self study: CSIDS 2nd edition.
Cisco Courseware 6-4
QUESTION 122
When designing IP blocking, why should you consider entry points?
A. They provide different avenues for the attacker to attack your networks.
B. They prevent all denial of service attacks.
Comentários a estes Manuais