Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CCIE Security

Domain 1Objective 3

1.3 Security Features on Cisco IOS/IOS XE CCIE-SECURITY Practice Questions (Page 9)

Part of the 1.0 Perimeter Security and Intrusion Prevention domain, which accounts for 20% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–1 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)

42questions here
9free pages
11concepts
20%of the exam

Questions 41–42

  1. 41application · medium

    A network engineer is configuring NAT on a Cisco router to allow internal users to access the internet. The inside network uses private IP addresses, and the router has one public IP address. The requirement is that all internal users share the single public IP. What configuration is needed?

    Select an answer first
  2. 42application · medium

    An administrator is integrating NAT with a zone-based firewall on a router. The inside zone uses private IPs, and the outside zone is the internet. The firewall policy allows HTTP from inside to outside. What must be ensured for NAT to work correctly with the firewall?

    Select an answer first
Finished these 2 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.