Cisco 500-258 - Cisco ASA Express Security Exam
Page: 2 / 11
Total 55 questions
Question #6 (Topic: )
When deploying clientless SSL VPN advanced application access, the administrator needs
to collect information about the end-user system. Which three input parameters of an end-
user system are important for the administrator to identify? (Choose three.)
to collect information about the end-user system. Which three input parameters of an end-
user system are important for the administrator to identify? (Choose three.)
A. types of applications and application protocols that are supported
B. types of encryption that are supported on the end-user system
C. the local privilege level of the remote user
D. types of wireless security that are applied to the end-user tunnel interface
E. types of operating systems that are supported on the end-user system
F. type of antivirus software that is supported on the end-user system
Answer: A,C,E
Question #7 (Topic: )
Which option describes what client-based access control enables?
A. access to specific applications or general types of applications
B. access based on the user, regardless of their device or IP address
C. access to otherwise high-reputation web sites while preventing advertisements or other material on the site hosted from external low-reputation sites
D. access based on the HTTP user agent being used to initiate a traffic flow
Answer: D
Question #8 (Topic: )
When establishing a Cisco AnyConnect SSL VPN tunnel, a system administrator wants to
restrict remote home office users to either print to their local printer or send the remaining
traffic down the Cisco AnyConnect SSL VPN tunnel (with restricted Internet access).
Choose both a tunnel policy option and an ACL type to accomplish this design goal.
(Choose two.)
restrict remote home office users to either print to their local printer or send the remaining
traffic down the Cisco AnyConnect SSL VPN tunnel (with restricted Internet access).
Choose both a tunnel policy option and an ACL type to accomplish this design goal.
(Choose two.)
A. tunnel all networks
B. tunnel network list below
C. exclude network list from the tunnel
D. standard ACL
E. web ACL
F. extended ACL
Answer: C,D
Question #9 (Topic: )
[Cisco-500-258-6.0/Cisco-500-258-5_2.png]
Answer: [Cisco-500-258-6.0/Cisco-500-258-5_3.png]
Question #10 (Topic: )
[Cisco-500-258-6.0/Cisco-500-258-6_2.png]
Answer: [Cisco-500-258-6.0/Cisco-500-258-6_3.png]