Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Professional Cybersecurity (CBRCOR)

Domain 2Objective 9

2.9 Utilize Network Controls for Network Hardening 350-201 Practice Questions (Page 8)

Part of the Techniques domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 1–1 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)

43questions here
9free pages
10concepts
30%of the exam

Questions 36–40

  1. 36application · medium

    A network administrator is configuring an ACL on a router to restrict access to a management server (192.168.1.10) from the IT department subnet (192.168.10.0/24). The ACL should also allow the monitoring system (192.168.20.5) to reach the management server. All other traffic to the management server should be denied. Which ACL configuration is correct?

    Select an answer first
  2. 37foundation · easy

    What is the primary purpose of Control Plane Policing (CoPP)?

    Select an answer first
  3. 38foundation · easy

    Which switch port security feature is specifically designed to prevent MAC flooding attacks?

    Select an answer first
  4. 39application · medium

    A network administrator is hardening a newly deployed switch. The switch currently has Telnet enabled, HTTP server enabled, and SNMPv2c with a community string 'public'. The administrator wants to secure management access and ensure data in transit is encrypted. Which set of actions should be taken?

    Select an answer first
  5. 40expert · hard

    A network administrator is configuring ACLs on a router to enforce security policies. The router has three interfaces: Gi0/0 (inside), Gi0/1 (outside), and Gi0/2 (DMZ). The administrator wants to allow HTTP/HTTPS traffic from the inside network to the DMZ web server, and allow SSH from the inside network to the DMZ server for management. The administrator also wants to allow return traffic from the DMZ to the inside network. Which ACL configuration is correct?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.