New 600-199 exam questions from PassLeader 600-199 dumps! Welcome to download the newest PassLeader 600-199 VCE and PDF dumps: http://www.passleader.com/600-199.html (60 Q&As)
P.S. Free 600-199 dumps are available on Google Drive shared by PassLeader: https://drive.google.com/open?id=0B-ob6L_QjGLpR0ozaTdjbGpid28
QUESTION 21
What is the maximum size of an IP datagram?
A. There is no maximum size
B. It is limited only by the memory on host computers at either end of the connection and the intermediate routers
C. 1024 bytes
D. 65535 bytes
E. 32768 bytes
Answer: D
QUESTION 22
The IHL is a 4-bit field containing what measurement?
A. the number of 32-bit words in the IP header
B. the size of the IP header, in bytes
C. the size of the entire IP datagram, in bytes
D. the number of bytes in the IP header
E. the number of 32-bit words in the entire IP datagram
Answer: A
QUESTION 23
What is the purpose of the TCP SYN flag?
A. to sequence each byte of data in a TCP connection
B. to synchronize the initial sequence number contained in the Sequence Number header field with the other end of the connection
C. to acknowledge outstanding data relative to the byte count contained in the Sequence Number header field
D. to sequence each byte of data in a TCP connection relative to the byte count contained in the Sequence Number header field
Answer: B
QUESTION 24
Refer to the exhibit. What does the tcpdump command do?
A. Capture all packets sourced from TCP port 1514, resolve DNS names, print all TCP packets with the SYN flag not equaling 0, and print the Ethernet header and all version information.
B. Capture all packets sourced from TCP port 1514, resolve DNS names, print all TCP packets except those containing the SYN flag, and print the Ethernet header and all version information.
C. Capture up to 1514 bytes, do not resolve DNS names, print all TCP packets except for those containing the SYN flag, and print the Ethernet header and be very verbose.
D. Capture up to 1514 bytes, do not resolve DNS names, print only TCP packets containing the SYN flag, and print the Ethernet header and be very verbose.
Answer: D
QUESTION 25
What is the most effective way to save the data on a system for later forensic use?
A. Use a hard duplicator with write-block capabilities.
B. Copy the files to another disk.
C. Copy the disk file by file.
D. Shut down the system.
Answer: A
New 600-199 exam questions from PassLeader 600-199 dumps! Welcome to download the newest PassLeader 600-199 VCE and PDF dumps: http://www.passleader.com/600-199.html (60 Q&As)
P.S. Free 600-199 dumps are available on Google Drive shared by PassLeader: https://drive.google.com/open?id=0B-ob6L_QjGLpR0ozaTdjbGpid28