August 20, 2013

Implementing Advanced Cisco Unified Wireless Security (IAUWS): 642-736 Exam
642-736 Questions & Answers
Exam Code: 642-736
Exam Name: Implementing Advanced Cisco Unified Wireless Security (IAUWS)
Q & A: 100 Q&As

Part: A
1: What is the purpose of looking for anomalous behavior on a WLAN infrastructure?
A.identifying new attack tools
B.auditing employee’s bandwidth usage
C.identifying attacks using signature matching
D.improving performance by load balancing
Correct Answers: A

2: When deploying guest WLAN access using the anchor controller, which is used to transport the
guest data traffic between the foreign and anchor controllers?
A.UDP port 16666
B.UDP port 16667
C.IP protocol 97
D.UDP port 161
E.UDP port 162
Correct Answers: C

3: When is local EAP authentication on the controller used? authenticate the APs that act as 802.1X supplicants a backup in case the APs cannot reach the controllers a backup in case the RADIUS servers are not reachable
D.when deploying guest access using the anchor controller
Correct Answers: C

5: When adding a new Local Net User on the controller, what happens if the Guest User check box
is selected?
A.Web authentication will be enabled on the guest account.
B.The amount of time the guest user has access to the local network will be limited. C.The controller will authenticate the guest account using the Cisco NAC Guest Server.
D.The guest user traffic will be associated to the guest VLAN.
E.802.1x authentication will be disabled on the guest account.
Correct Answers: B

6: For wireless NAC OOB implementation, the Cisco WLC is added on the Cisco NAC Appliance
Manager as what kind of device?
A.RADIUS client
B.RADIUS server
C.SNMP trap receiver
D.OOB management device
E.OOB virtual gateway
Correct Answers: D

7: Which function does a rogue detector access point perform?
B.switch port tracing
C.rogue AP containment
D.identifying a rogue AP on the wired network
Correct Answers: D

8: If DHCP services are implemented on the anchor controller, what is locally populated in the
primary DHCP server field?
A.DHCP relay IP address router IP address
C.firewall DMZ interface IP address IP address of the controller
Correct Answers: D

9: When using Cisco Secure Services Client to configure a wireless LAN connection that uses
EAP-FAST, which three options are available as the inner authentication method? (Choose three.)
F.pre-shared key
Correct Answers: A C D

10: As of controller release v5.2, which two statements about wired guest access support are true?
(Choose two.)
A.It is not supported on the Cisco 2100 Series Controllers.
B.No more than three wired guest access LANs can be configured on a controller.
C.Layer 3 web authentication and passthrough are not supported. D.Wired guest access cannot be configured in a dual-controller configuration that uses an anchor
controller and a foreign controller.
E.The wired guest access ports must be in the same Layer 2 network as the foreign controller.
Correct Answers: A E

