試験番号: SC0-502
試験名: Security Certified Program (SCP)
CramBibleが提供する練習問題は、他社と比べクオリティーの高い実践練習問題をお客様に提供することにより、お客様が一度目の試験でパスすることを保障いたします。当社の製品をお使い頂きベンダーIT認定試験に備えることで、一度目の受験で合格することを保証いたします。もし、一度目でパスしなかった場合、当社製品のご購入金を全額返済いたします
CramBibleの品質はどのようなものでしょうか?
当社は高い品質のベンダー認定試験対策の問題集を提供いたします。
当社が提供する問題集は、この分野に対する当社の専門家によって作り上げられたクオリティーの高い実践練習問題です。当社の目標は実際の認定試験に出題される問題を少なくとも100%をカバーし、100%の正確性を保つことです。よって、お客様が完全に当社が提供する内容を習得することによって100%近くの成績でパスすることができます。
当社のテストエンジンをお使いになった上で、もし一度目で認定試験パスしなかった場合、ご購入頂いた金額を返済いたします。
他のベンダーと比べてどうどこが優れているのですか ?
多くのベンダー認定試験対応サイトが存在する中、当社の製品は他社と比べ常に最新のテストを提供しています。他社は当社と比べて値段が安価かも知れませんが、他社はどれくらいのテスト問題が実際の認定試験に出題されるか約束できません。
当社は、ほぼ全ての問題を実際の認定試験に出題されることを約束いたします。お客様は当社の提供する問題集とその答えを暗記することによって、一度目の受験で高得点でパスすることができます。 例を挙げると、他社はCCNAのテスト問題で1000問以上の問題を提供しますが、当社は200問のみに止めています。他社はもうすでに古くなり実際の認定試験に使われなくなった問題を提供します。こういった多くの無駄な問題集を購読して認定試験に備えることで、お客様の貴重な時間を浪費することになります。「時は金なり」と言います。当社はお客様の貴重な時間を節約することにより、お客様には大きなメリットをもたらすことができると信じています。
あなたの職業ライフとCisco認定の道で認定 SC0-502「専門家の解説したSC0-502 Q & As」認定試験は核心とされています。本当のSC0-502答案をまだ捜しますか。CramBibleはあなたの絶好の選択です。CramBibleのSC0-502テストエンジンを使用なら、SC0-502のブレインダンプのサイト内容を期待あなたにとっては、問題と答案だけでなく、合格と精確の説明も手に入ります。そのため、あなたは試験情報をしっかりと把握できます。SC0-502練習資料を使用して、初めてのチャレンジでSC0-502を通過できるとCramBibleが保証します。
SC0-502 試験:
1) 基本的に6つのステップでは、証明書、つまり、あなたの道を得るために従ってくださいです:
2) どの証明書が正しい場合は - 認証の概要を取得するためには決定
3) ゲインハンズフリー製品 - プロフィールの要件の特定の認証のための経験に
4) 展開訓練は、トレーニング教材を使用してくださいとあなたの経験。ある優秀なPDF形式の資料は3cb.comから入手、そのスタッフの専門家によって準備される.
5) 知っているか試験に期待する - レビュー良い学習ガイド.
6) あなたに必要な試験を取る - のいずれかプロメトリックまたはピアソンVUEテストセンターで登録できます.
7) 無料アップデート90日.
どうしてCramBibleは品質を保っているのですか?
当社の専門家は全員MCSE、MCDBA、CCIEなどといった各ベンダー認定資格を保持しています。当社専門家は各ベンダー試験の問題を細かく分析して当社のテストエンジンを作ることによって、正確性の向上に努めています。
また、当社は常に製品の改善に見直しを図り、お客様からのご意見を積極的に取り入れています。
ダウンロード方法を教えてください?
以下の手順でダウンロードください:
a) 画面右上のユーザーセンターのタブをクリック
b) ログイン画面にてユーザー名とパスワードを入力する
c) ログイン後、「ユーザーセンター」のリンクをクリック
d) 画面にてオーダー番号と製品名を確認できます
e) ダウンロードボタンをクリックする
どのような製品を扱っていますか?
この製品は各ベンダー筆記試験に備えているお客様に最適です。 Q&AはRARフォーマットによって提供されます。 PCにダウンロードしたのち、ダウンロードしたPCにてご使用できます.
WinRARのツール
パスワード紛失?
一度クリックして続行、私たちはあなたの電子メールメッセージをパスワードを含む送信されます.
まとめ売り価格?
通常、今迄同じユーザーIDで約3~12つのテストをお買い上げになった場合。同シリーズまたは他のテストをご購入頂いくお客様にはまとめ売り価格を提供いたします。
なお、一回3つ以上テストを同時にご購入頂いた場合でもまとめ価格を提供いたしますので、具体的な割引情報はでご連絡くださいsales@3cb.com。
もしベンダー認定試験にパスしなかった場合、購入金額はきちんと返済されますか?
当社はお客様との約束を守り、全額返済いたします。
当社は品質向上のため、お客様がパスしなかった場合、お客様のテスト結果をPDFにてお送りください。これは、お客様がパスしなかった原因を理解するために役立ちます。
. 詳細はここをクリックしてください。
パスワード紛失?
一度クリックして続行、私たちはあなたの電子メールメッセージをパスワードを含む送信されます
web@3cb.com
Sales@3cb.com
1. "検索" & ショッピングカートに追加します
"検索"機能、または直接通じ、"製品のリストを"あなたは、ボタンをクリックし、"今すぐ"購入に必要な情報を見つけるために閲覧ショッピングカートに追加します。
2. 新規登録
ウェブサイトのページの左上隅に"新規登録"をクリックして、このウェブサイトの正式メンバーになる. (登録ユーザーは、直接"ログイン"をクリックし、[Webサイトを読み込むことができます。)
3. お支払方法
サンプルをダウンロードでのお支払いは、安全で活発と簡単です。サンプルをダウンロードは、ビザ、マスターカード、アメリカンエキスプレスなど、選択肢の数を介してクレジットカードまたはデビットカードの支払いを受け入れるの安全な方法を提供する。 2CheckOut、ペイパル、ウェスタンユニオンでも利用できる
4. ダウンロード
あなたが購入した製品をダウンロードすることができます"ダウンロード"ボタンのダウンロードページに自動的に支払いの完了をクリックします.
This webdemo is just a demo data, only for reference and learning, there is no other purposes.
QUESTION NO : 1 Now that you have CramBible somewhat under control, you are
getting ready to go home for the night. You have made good progress on the
network recently, and things seem to be going smoothly. On your way out, you stop
by the CEO's office and say good night. You are told that you will be meeting in the
morning, so try to get in a few minutes early. The next morning, you get to the office
20 minutes earlier than normal, and the CEO stops by your office, "Thanks for
coming in a bit early. No problem really, I just wanted to discuss with you a current
need we have with the network." "OK, go right ahead." You know the network
pretty well by now, and are ready for whatever is thrown your way. "We are hiring
5 new salespeople, and they will all be working from home or on the road. I want to
be sure that the network stays safe, and that they can get access no matter where
they are." "Not a problem," you reply. "I'll get the plan for this done right away."
"Thanks a lot, if you have any QUESTIONs for me, just let me know." You are
relieved that there was not a major problem and do some background work for
integrating the new remote users. After talking with the CEO more, you find out
that the users will be working from there home nearly all the time, with very little
access from on the road locations. The remote users are all using Windows 2000
Professional, and will be part of the domain. The CEO has purchased all the remote
users brand new Compaq laptops, just like the one used in the CEO's office, and
which the CEO takes home each night; complete with DVD\CD-burner
drives,built-in WNICs, 17"LCD widescreen displays, oversized hard drives, a gig of
memory, and fast processing. 'I wish I was on the road to get one of those,' you think.
You start planning and decide that you will implement a new VPN Server next to
the Web and FTP Server. You are going to assign the remote users IP Addresses:
10.10.60.100~10.10.60.105, and will configure the systems to run Windows 2000
Professional. Based on this information, and your knowledge of the CramBible
network up to this point, choose the best solution for the secure remote user needs:}
A. You begin with configuring the VPN server, which is running Windows 2000 Server.
You create five new accounts on that system, granting each of them the Allow Virtual
Private Connections right in Active Directory Users and Computers. You then configure
the range of IP Addresses to provide to the clients as: 10.10.60.100 through 10.10.60.105.
Next, you configure five IPSec Tunnel endpoints on the server, each to use L2TP as the
protocol. Then, you configure the clients. On each system, you configure a shortcut on
the desktop to use to connect to the VPN. The shortcut is configured to create an L2TP
IPSec tunnel to the VPN server. The connection itself is configured to exchange keys
with the user's ISP to create a tunnel between the user's ISP endpoint and the CramBible
VPN Server.
B. To start the project, you first work on the laptops you have been given. On each
laptop, you configure the system to make a single Internet connection to the user's ISP.
Next, you configure a shortcut on the desktop for the VPN connection. You design the
connection to use L2TP, with port filtering on outbound UDP 500 and UDP 1701. When
a user double-clicks the desktop icon you have it configured to make an automatic tunnel
to the VPN server. On the VPN server, you configure the system to use L2TP with port
filtering on inbound UDP 500 and UDP 1701. You create a static pool of assigned IP
Address reservations for the five remote clients. You configure automatic redirection on
the VPN server in the routing and remote access MMC, so once the client has connected
to the VPN server, he or she will automatically be redirected to the inside network, with
all resources available in his or her Network Neighborhood.
C. You configure the VPN clients first, by installing the VPN High Encryption Service
Pack. With this installed, you configure the clients to use RSA, with 1024-bit keys. You
configure a shortcut on the desktop that automatically uses the private\public key pair to
communicate with the VPN Server, regardless of where the user is locally connected.
On the VPN Server, you also install the VPN High Encryption Service Pack, and
configure 1024-bit RSA encryption. You create five new user accounts, and grant them
all remote access rights, using Active Directory Sites and Services. You configure the
VPN service to send the server's public key to the remote users upon the request to
configure the tunnel. Once the request is made, the VPN server will build the tunnel,
from the server side, to the client.
D. You decide to start the configuration on the VPN clients. You create a shortcut on the
desktop to connect to the VPN Server. Your design is such that the user will simply
double-click the shortcut and the client will make the VPN connection to the server,
using PPTP. You do not configure any filters on the VPN client systems. On the VPN
Server, you first configure routing and remote access for the new accounts and allow
them to have Dial-In access. You then configure a static IP Address pool for the five
remote users. Next, you configure the remote access policy to grant remote access, and
you implement the following PPTP filtering: Inbound Protocol 47 (GRE) allowed
Inbound TCP source port 0, destination port 1723 allowed Inbound TCP source port
520, destination port 520 allowed Outbound Protocol 47 (GRE) allowed Outbound
TCP source port 1723, destination port 0 allowed Outbound TCP source port 520,
destination port 520 allowed
E. You choose to configure the VPN server first, by installing the VPN High Encryption
Service Pack and the HISECVPN.INF built-in security template through the Security
Configuration and Analysis Snap-In. Once the Service pack and template are installed,
you configure five user accounts and a static pool of IP Addresses for each account. You
then configure the PPTP service on the VPN server, without using inbound or outbound
filters - due to the protection of the Service Pack. You grant each user the right to dial
into the server remotely, and move on to the laptops. On each laptop, you install the VPN
High Encryption Service Pack, to bring the security level of the laptops up to the same
level as the VPN server. You then configure a shortcut on each desktop that controls the
direct transport VPN connection from the client to the server.
Answer: D
QUESTION NO : 2 For three years you have worked with CramBible doing
occasional network and security consulting. CramBible is a small business that
provides real estate listings and data to realtors in several of the surrounding states.
The company is open for business Monday through Friday from 9 am to 6 pm,
closed all evenings and weekends. Your work there has largely consisted of advice
and planning, and you have been frequently disappointed by the lack of execution
and follow through from the full time staff. On Tuesday, you received a call from
CramBible 's HR director, "Hello, I'd like to inform you that Red (the full time
senior network administrator) is no longer with us, and we would like to know if
you are interested in working with us full time." You currently have no other main
clients, so you reply, "Sure, when do you need me to get going?" "Today," comes
the fast and direct response. Too fast, you think. "What is the urgency, why can't
this wait until tomorrow?" "Red was let go, and he was not happy about it. We are
worried that he might have done something to our network on the way out." "OK,
let me get some things ready, and I'll be over there shortly." You knew this would
be messy when you came in, but you did have some advantage in that you already
knew the network. You had recommended many changes in the past, none of which
would be implemented by Red. While pulling together your laptop and other tools,
you grab your notes which have an overview of the network: CramBible network
notes: Single Internet access point, T1, connected to CramBible Cisco router.
Router has E1 to a private web and ftp server and E0 to the LAN switch. LAN
switch has four servers, four printers, and 100 client machines. All the machines are
running Windows 2000. Currently, they are having their primary web site and
email hosted by an ISP in Illinois. When you get to CramBible , the HR Director
and the CEO, both of whom you already know, greet you. The CEO informs you
that Red was let go due to difficult personality conflicts, among other reasons, and
the termination was not cordial. You are to sign the proper employment papers, and
get right on the job. You are given the rest of the day to get setup and running, but
the company is quite concerned about the security of their network. Rightly so, you
think, 'If these guys had implemented even half of my recommendations this would
sure be easier.' You get your equipment setup in your new oversized office space,
and get started. For the time you are working here, your IP Address is 10.10.50.23
with a mask of \16. One of your first tasks is to examine the router's configuration.
You console into the router, issue a show running-config command, and get the
following output: MegaOne#show running-config Building configuration... Current
configuration: ! version 12.1 service udp-small-servers service tcp-small-servers !
hostname MegaOne ! enable secret 5 $1$7BSK3$H394yewhJ45JAFEWU73747.
enable password clever ! no ip name-server no ip domain-lookup ip routing !
interface Ethernet0 no shutdown ip address 2.3.57.50 255.255.255.0 no ip
directed-broadcast ! interface Ethernet1 no shutdown ip 10.10.40.101 255.255.0.0 no
ip directed-broadcast ! interface Serial0 no shutdown ip 1.20.30.23 255.255.255.0 no
ip directed-broadcast clockrate 1024000 bandwidth 1024 encapsulation hdlc ! ip
route 0.0.0.0 0.0.0.0 1.20.30.45 ! line console 0 exec-timeout 0 0 transport input all
line vty 0 4 password remote login ! end After analysis of the network, you
recommend that the router have a new configuration. Your goal is to make the
router become part of your layered defense, and to be a system configured to help
secure the network. You talk to the CEO to get an idea of what the goals of the
router should be in the new configuration.All your conversations are to go through
the CEO;this is whom you also are to report to.
"OK, I suggest that the employees be strictly restricted to only the services that they
must access on the Internet." You begin. "I can understand that, but we have
always had an open policy. I like the employees to feel comfortable, and not feel like
we are watching over them all the time. Please leave the connection open so they can
get to whatever they need to get to. We can always reevaluate this in an ongoing
basis." "OK, if you insist, but for the record I am opposed to that policy." "Noted,"
responds the CEO, somewhat bluntly. "All right, let's see, the private web and ftp
server have to be accessed by the Internet, restricted to the accounts on the server.
We will continue to use the Illinois ISP to host our main web site and to host our
email. What else, is there anything else that needs to be accessed from the
Internet?" "No, I think that's it. We have a pretty simple network, we do everything
in house." "All right, we need to get a plan in place as well right away for a security
policy. Can we set something up for tomorrow?" you ask. "Let me see, I'll get back
to you later." With that the CEO leaves and you get to work. Based on the
information you have from CramBible;knowing that router must be an integral
part of the security of the organization, select the best solution to the organization's
router problem:}
A. You backup the current router config to a temp location on your laptop. Friday night,
you come in to build the new router configuration. Using your knowledge of the network,
and your conversation with the CEO, you build and implement the following router
configuration: MegaOne#configure terminal MegaOne(config)#no cdp run
MegaOne(config)#no ip source-route MegaOne(config)#no ip finger
MegaOne(config)#access-list 175 permit tcp any 2.3.57.60 0.0.0.0 eq 80
MegaOne(config)#access-list 175 permit tcp any 2.3.57.60 0.0.0.0 eq 20
MegaOne(config)#access-list 175 permit tcp any 2.3.57.60 0.0.0.0 eq 21
MegaOne(config)#access-list 175 permit tcp any 10.10.0.0 0.0.255.255 established
MegaOne(config)#access-list 175 deny ip 0.0.0.0 255.255.255.255 any
MegaOne(config)#access-list 175 deny ip 10.0.0.0 0.255.255.255 any
MegaOne(config)#access-list 175 deny ip 127.0.0.0 0.255.255.255 any
MegaOne(config)#access-list 175 deny ip 172.16.0.0 0.0.255.255 any
MegaOne(config)#access-list 175 deny ip 192.168.0.0 0.0.255.255 any
MegaOne(config)#access-list 175 permit ip any 10.10.0.0 0.0.255.255
MegaOne(config)#access-list 175 permit udp any 10.10.0.0 0.0.255.255
MegaOne(config)#access-list 175 permit icmp any 10.10.0.0 0.0.255.255
MegaOne(config)#interface serial 0 MegaOne(config-if)#ip access-group 175 in
MegaOne(config-if)#no ip directed broadcast MegaOne(config-if)#no ip unreachables
MegaOne(config-if)#Z MegaOne#
B. You backup the current router config to a temp location on your laptop. Sunday night,
you come in to build the new router configuration. Using your knowledge of the network,
and your conversation with the CEO, you build and implement the following router
configuration: MegaOne#configure terminal MegaOne(config)#access-list 175 permit tcp
any 2.3.57.60 0.0.0.0 eq 80 MegaOne(config)#access-list 175 permit tcp any 2.3.57.60
0.0.0.0 eq 20 MegaOne(config)#access-list 175 permit tcp any 2.3.57.60 0.0.0.0 eq 21
MegaOne(config)#access-list 175 permit tcp any 10.10.0.0 0.0.255.255 established
MegaOne(config)#access-list 175 permit ip any 10.10.0.0 0.0.255.255
MegaOne(config)#access-list 175 permit udp any 10.10.0.0 0.0.255.255
MegaOne(config)#access-list 175 permit icmp any 10.10.0.0 0.0.255.255
MegaOne(config)#interface Ethernet 0 MegaOne(config-if)#ip access-group 175 in
次のステップへ、関連する証明書パスで何か知っている。
他の有望な認定は、認定を進め、強化する