
CiscoCertified Network Professional Security
Domain 2Objective 7
2.7 Configure Secure Network Management of Perimeter Security and Infrastructure Devices Such as SNMPv3, NetConf, RestConf, APIs, Secure Syslog, and NTP with Authentication 350-701 Practice Questions (Page 2)
Part of the Network Security domain, which accounts for 25% of the 350-701 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 1–2 from this objective — we provide 20 practice questions to prepare you well beyond it. (estimate)
20questions here
4free pages
5concepts
25%of the exam
Questions 6–10
- 6
A network engineer is configuring SNMPv3 on a Cisco ASA firewall. The security policy requires that SNMP polling data be encrypted in transit and that the manager authenticate using a username and password, not just a community string. The engineer has already created a view and a group. Which additional configuration is required to meet the policy?
Select an answer first - 7
Which NTP feature is used to prevent an attacker from sending forged time updates to a network device?
Select an answer first - 8
A network administrator is configuring a Cisco IOS-XE device to be managed via NETCONF. The administrator wants to ensure that the NETCONF session is secure. Which transport protocol should be used for NETCONF?
Select an answer first - 9
Which protocol should be used to send syslog messages securely to a central log collector, ensuring confidentiality and integrity?
Select an answer first - 10
Which SNMPv3 security level provides authentication of the message but does NOT encrypt the payload?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-701” is a trademark of its owner, used for identification only.