Sunday, August 20, 2017

JN0-680 JNCIP-DC Exam Objectives

This list provides a general view of the skill set required to successfully complete the specified certification exam. Topics listed are subject to change.

Data Center Deployment or Management
Describe Zero Touch Provisioning concepts
DHCP
Monitoring
Analytics
Describe ISSU/NSSU concepts
Requirements
Monitoring
Order of operations

Multichassis LAG
Describe MC-LAG concepts
Positioning scenarios
ICCP
Demonstrate knowledge of configuring, monitoring, or troubleshooting MC-LAG
Troubleshooting tools

Mixed Virtual Chassis
Describe mixed Virtual Chassis concepts
Mixed VC PFE scaling
Mixed VC cabling
Provisioning a mixed VC
Mastership election
Demonstrate knowledge of configuring, monitoring, or troubleshooting mixed Virtual Chassis technologies
Troubleshooting tools
Processes or components

Virtual Chassis Fabric
Describe VCF concepts
Mastership election
Physical layout
VCF control plane
Mixed VCF
VCF forwarding plane
Demonstrate knowledge of configuring, monitoring, or troubleshooting VCFs
VCF management
VCF provisioning options
VCF management

IP Fabric
Describe IP Fabric concepts
3-stage Clos architecture
IP Fabric routing
IP Fabric scaling
IP Fabric best practices
Demonstrate knowledge of configuring, monitoring, or troubleshooting IP Fabrics

VXLAN
Describe VXLAN concepts
L2VPN control planes
Multicast control plane
Data plane
Demonstrate knowledge of configuring, monitoring, or troubleshooting VXLAN

EVPN VXLAN Signaling
Describe EVPN concepts
Route types
MP-BGP
MAC Learning
Demonstrate knowledge of configuring, monitoring, or troubleshooting EVPNs

Data Center Interconnect
Describe DCI concepts
Interconnect network types
Intraconnect networks
Stitching
EVPN-signaled VXLAN for DCI
Demonstrate knowledge of configuring, monitoring, or troubleshooting DCI
QUESTION 1
You are deploying 50 QFX5100 switches in your data center. You are asked to explain the benefits of using ZTP during your deployment of these devices.
What is a benefit of this deployment?

A. You must use DHCP options to provide Junos installation packages to all devices.
B. You must use DHCP options to provide the transfer mode used for pulling files from a storage server.
C. You can use DHCP options to push the configuration files to all devices.
D. You can use DHCP options to indicate which Junos version the switches should be running.

Answer: B


QUESTION 2
What is the endpoint of a VXLAN tunnel?

A. DLCI
B. VTEP
C. LSR
D. VCF

Answer: B

QUESTION 3
Your server administrator asks you to preserve the inner VLAN tags of the frames coming from a Layer 2 VXLAN Gateway of the EVPN-enabled segment.
Which two parameters must you add to the configuration to allow the VLAN tag to be passed? (Choose two.)

A. layer2-protocol-tunneling
B. decapsulate-accept-inner-vlan
C. dotlq-tunneling
D. encapsulate-inner-vlan

Answer: B,D

Thursday, August 17, 2017

C2150-212 IBM Security AppScan SAST Source V9.0.1 Analysis Fundamentals

Test information:
Number of questions: 53
Time allowed in minutes: 90
Required passing score: 62%
Languages: English, French, Latin American Spanish, Portuguese (Brazil)

Related certifications:
IBM Certified Associate Analyst - Security AppScan SAST Source V9.0.1

The test consists of eight sections containing a total of approximately 60 multiple-choice questions. The percentages after each section title reflect the approximate distribution of the total question set across the sections.

Section 1 - Key Concepts of AppScan SAST V9.0.1 (8%)
Describe static analysis.
Compare dynamic vs static testing.
Describe basic requirements to run a scan.

Section 2 - AppScan SAST V9.0.1 Components (10%)
Describe the AppScan server.
Describe AppScan clients.
Describe the AppScan Enterprise server.

Section 3 - Views and Perspectives (15%)
Describe main perspectives (tabs).
Describe views of configuration perspective.
Describe views of analysis perspective.
Describe views of triage perspective.

Section 4 - Scanning Methodology and Vulnerability Analysis (12%)
Describe data flow, sources, and sink.
Describe how method signatures in code are tagged/marked up.
Describe the phases of a code scan.
Describe supported technologies.
Describe the limitations of SAST.

Section 5 - Basics of Application Security (12%)
Describe the need for static code analysis.
Describe common vulnerability types.
Describe basic concept of input validation.

Section 6 - Scan Configuration and Application Preferences (15%)
Describe application onboarding.
Describe the application and project properties.
Describe different scan configuration templates.
Describe source file exclusions.

Section 7 - Triage Results / Issue Management and Reporting (20%)
Identify key or necessary triage tasks for SAST.
Demonstrate understanding of resolving false positives.
Demonstrate understanding of issue classification.
Identify the different types of Findings Reports.
Describe saving results.

Section 8 - Basic Troubleshooting (8%)
Describe errors during compilation and how they effect code coverage.
Describe the purpose of the errors console.
Describe the project validate feature.

Job Role Description / Target Audience
This entry level certification is intended for Associate Analysts who know the fundamental concepts of and work with IBM Security AppScan SAST V9.0.1 through hands-on experience. (This certification is also for entry level application developers, application architects and security architects.)

These Associate Analysts can describe the fundamental concepts and product components, understand basic application security, scanning methodology, vulnerability analysis, triaging results and issue management. They can also configure an application and run a standard code scan, recognize causes for common false positive and false negative results, and can basic troubleshoot.

These Associate Analysts are able to complete tasks with little to no assistance from documentation, peers or support.

To attain the IBM Certified Associate Analyst - Security AppScan SAST Source V9.0.1, candidates must pass 1 test. To gain additional knowledge and skills, and prepare for this test based on the job role and test objectives, take the link to the test below, and refer to the Test Preparation tab.

Recommended Prerequisite Skills

Basic knowledge of:
application architectures
application development
general programming concepts
vulnerability remediation

Requirements
This certification requires 1 test(s).

Test(s) required:
Click on the link(s) below to see test details, test objectives, suggested training and sample tests.

Test C2150-212 - IBM Security AppScan SAST Source V9.0.1 Analysis Fundamentals

This test:
contains questions requiring single and multiple answers. For multiple-answer questions, you need to choose all required options to get the answer correct. You will be advised how many options make up the correct answer.  is designed to provide diagnostic feedback on the Examination Score Report, correlating back to the test objectives, informing the test taker how he or she did on each section of the test. As a result, to maintain the integrity of each test, questions and answers are not distributed.