QUESTION 61
Which Cisco AnyConnect module allows troubleshooting for core AnyConnect problems?
A. telemetry
B. web security
C. VPN
D. NAM
E. DART
F. posture
G. CSSC
Answer: E
QUESTION 62
Which Cisco AnyConnect module provides wireless connectivity?
A. telemetry
B. web security
C. VPN
D. NAM
E. DART
F. posture
G. CSSC
Answer: D
QUESTION 63
Cisco Client Management Frame Protection is running on a mobility group with two controllers.
Which two MFP requirements protect the network? (Choose two.)
A. forces clients to authenticate, using a secure EAP method only
B. implements the validation of wireless management frames
C. requires Cisco Compatible Extensions v5
D. requires the use of a nonbroadcast SSID
E. requires Cisco Compatible Extensions v4
Answer: BC
QUESTION 64
Which open standard defines the combination of Extensible Authentication Protocol with Advanced Encryption Standard for providing strong wireless LAN client security?
A. IEEE 802.1X
B. IEEE 802.11i
C. WEP
D. WPA
E. WPA2
Answer: B
QUESTION 65
When a wireless client is authenticated in a controller-based wireless network, which three pieces of source identification information can be used by the controller for an Access-Request message that is sent to an external RADIUS server? (Choose three.)
A. wireless client IP address
B. controller IP address
C. AP IP address
D. wireless client MAC address
E. controller MAC address
F. AP MAC address
Answer: BEF
QUESTION 66
Which official port should be used when configuring external RADIUS authentication on a Cisco WLC version 7.0?
A. 49
B. 1645
C. 1646
D. 1812
E. 1813
Answer: D
QUESTION 67
How many RADIUS servers can be configured globally and per WLAN on a Cisco WLC version 7.0?
A. 7 global; additional 1 per WLAN
B. 7 global; additional 3 per WLAN
C. 17 global; additional 1 per WLAN
D. 17 global; additional 3 per WLAN
E. 7 global; reuse of up to 1 maximum per WLAN
F. 17 global; reuse of up to 1 maximum per WLAN
G. 17 global; reuse of up to 3 maximum per WLAN
Answer: G
QUESTION 68
Which statement about the impact of configuring a single SSID to support TKIP and AES encryption simultaneously is true?
A. The overhead associated with supporting both encryption methods significantly degrades client
throughput.
B. Some wireless client drivers might not handle complex SSID settings and may be unable to associate
to the WLAN.
C. This configuration is unsupported and the Cisco Wireless Control System generates alarms continuously
until the configuration is corrected.
D. This configuration is common for migrating from WPA to WPA2. No problem is associated with using
this configuration.
Answer: B
QUESTION 69
When the pre-shared key authentication method is used for WPA or WPA2, for which two functions is the pre-shared key used? (Choose two.)
A. to act as the Group Transient Key during the bidirectional handshake
B. to act as the Pairwise Master Key during the bidirectional handshake
C. to derive the nonce at each side of the exchange
D. to derive the Pairwise Transient Key
Answer: BD
QUESTION 70
When using the CLI command eping, configured for auto-anchor mobility wireless guest access, which type of packet is tested?
A. data packets
B. mobility unencrypted packets
C. mobility encrypted packets
D. SNMP control packets
E. NTP control packets
Answer: A
If you want to pass Cisco 640-722 successfully, donot missing to read latest lead2pass Cisco 640-722 practice exams.
If you can master all lead2pass questions you will able to pass 100% guaranteed.