Your ScreenOS device does not have a static IP address. You want to be able to access it using its FQDN. How would you implement this task?
A. Configure a domain in DNS.
B. Configure syslog.
C. Configure SNMP.
D. Configure DDNS.
You have just installed a new ScreenOS device in your network and you want only a select range of IP addresses to have administrative access to the device. Which choice will allow you to accomplish this?
A. Configure a manager IP.
B. Configure the management interface.
C. Configure a management IP on the trust interface.
D. Configure new system administrators.
You must translate a range of public IP addresses to a range of internal IP addresses. Which two mechanisms would you use to accomplish your objective? (Choose two.)
A. MIP using masks
B. VIP using masks
C. policy-based NAT-dst
D. policy-based NAT-src
Which two statements are true about NAT? (Choose two.)
A. Managed IP is one-to-one address mapping for bidirectional access.
B. Mapped IP is one-to-one address mapping for bidirectional access.
C. Dynamic IP is the public address that can be used for external access to your Web server.
D. Dynamic IP is the public address that internal users can use to access the Internet.
Which NAT has bidirectional translation by default?
A. NAT-src
B. NAT-dst
C. VIP
D. MIP
You manage a ScreenOS device. A user complains that the FTP download speed is slow. You suspect a cable or an interface might be the problem. Which command provides interface error information?
A. show counter flow interface
B. get counter flow interface
C. show counter statistics interface
D. get counter statistics interface
A routing table contains an IBGP route, a RIP route, an OSPF external Type 2 route, and an EBGP route for 192.168.0.0/16. When the router receives traffic destined for, which route will the router use by default?
A. the EBGP route
B. the IBGP route
C. the OSPF route
D. the RIP route
What are two advantages for using the count parameter on a security policy? (Choose two.)
A. to see any NAT traffic drops for that policy
B. to see how many times users log in to the ScreenOS device
C. to count the total number of bytes of traffic for that policy
D. to see if the policy is temporarily not being used
An SSG5 has a default configuration loaded on it. Which two statements are correct? (Choose two.)
A. Intrazone blocking is enabled for the trust zone.
B. Intrazone blocking is disabled for the trust zone.
C. Intrazone blocking is enabled for the untrust zone.
D. Intrazone blocking is disabled for the untrust zone.
Which three types of status can a member of an NSRP cluster have? (Choose three.)
A. initial
B. inactive
C. down
D. inoperable
E. primary backup