Saturday, June 28, 2008

VCP-310, 350-001 testking and 640-802 dumps

Jerry is concerned that a denial-of-service (DoS) attack may affect his VPN
Communities. He decides to implement IKE DoS protection. 350-001 Jerry needs to
minimize the performance impact of implementing this new protection. Which of
the following configurations is MOST appropriate for Jerry?

A. Set Support IKE DoS protection from identified source to "Stateless", and Support
IKE DoS protection from unidentified source to "None"
B. Set Support IKE DoS protection from identified source to "None", and Support IKE
DoS protection from unidentified source to "Stateless" 640-802
C. Set Support IKE DoS protection from identified source to "Puzzles", and Support IKE
DoS protection from unidentified sources to "Stateless"
D. Set support IKE DoS protection from identified sources to "Puzzles", and Support IKE VCP-310 DoS protection from unidentified source to "Puzzles"
E. Set support IKE DoS protection from identified sources to "Stateless", and Support
IKE DoS protection from unidentified source to "Puzzles"
Leading the way in IT testing and certification tools, www.certifyme.com
- 17 -

Answer: E
Explanation: This is the default, and CheckPoint recommended. Refer to the
VPN.pdf file on the CP CD, pg 34 & 35.

No comments: