Share your SECURE Experience
Cisco has made changes for the Security exams by replacing the old CCSP with the new CCNP Security Certification with 4 modules: Secure, Firewall, IPS and VPN. In fact, the old CCSP and the new CCNP Security are very similar. Many candidates have requested us to put up materials for these new exams but it is a time-consuming work. In the mean time, we created the “Share your experience” for the SECURE exam. We really hope anyone who read securitytut, 9tut, digitaltut, certprepare, networktut and voicetut contribute to these sections as your experience is invaluable for CCNP Security learners to complete their goals.
Please share with us your experience after taking the SECURE 642-637 exam, your materials, the way you learned, your recommendations…
Hi friends,
i want know something about sim in 642-637 exam…in simulation have you just aswer the qus about exibit or you have to configure something in router & switch…please reply………………
@Ratan check the Saqib comment ..u can find the link…
@Amin: I am unable to download, which option do I have to choose slow download?
@syed Yes dude slow download !!!
are there any wrong answers in Chips-92 ?
@Amin: I am getting this error while downloading CBTs:Download Error
The file that you’re trying to download is larger than 400Mb
anyone cleared recently, I have a paper on Friday
I cleared the exam today, chips dumps are valid. With regard to the simulation it has a problem they talk about fastethernet 0/0/0 and 0/0/1 as outside and inside respectively but they lack ip address hence you wonder wether to use interface fastethernet 0/0 and 0/1 which have ip addresses and are administtatively down so i used all the interface and clearing of wrong configuration are still in the running -config . Had about 7 new questions
passed in the 900′s.
@Jeffy: can you pls clarify what is the issue with lab and what steps must be taken to avoid any issue? what about Hotspots same as in dumps?
@Jeffy: what IP address has to do with this LAB? which interfaces did you use?
syed labs are same as in chips. nothing to do with the ip addresses. what i meant to say was they are a little bit confusing in chips lab for the simulation he used interface fast ethernet 0/0 and 0/1 but in the “exam” sim lab topology it was interface fast ethernet 0/0/0 and 0/0/1 and they had no ip addresses assigned to them, but show ip interface brief there is interface fast ethernet 0/0 and 0/1 .i Was thinking to use inteface fast ethernet 0/0 and 0/1 So for the creating for security zones and assignning interface to those zones i did for fast ethernet 0/0 and 0/0/0 assign to inside and fast ethernet 0/0/1 and 0/1 assign outside. Sorry for the confusion.
Hi jeff and syed,
Unless the changed exam – I would ignore the IP addresses and focus on what the exhibit says.
*IF* exhibit says F0/0/0 is OUTSIDE then that is what you MUST make. Same for INSIDE being F0/0/1.
Flip side –*IF* it says F0/0 is outside and F0/1 is INSIDE then that is what you do.
@Steak: Agreed..
Cleared with 928 marks today…Chips dump is valid, just one question out of dump…Thank you all just one paper away from CCNP-Security
Can anyone tell me from where i can study and understande all the VPN chapters in this track.
please , i want ccnp security cours all. because i prepare my examen. please is very important .thanks
@syed congrats dude / well done do me a favor if possible send me ur dumps also share with us something about the exam,,, how was the questions ???? amanatzendagy@gmail.com send me the latest dumps and other materials for the exam Thank You!!
Hi syed….congrats about your exam…please send the full configuration step by step about LAB in real exam which you faced. my email id bhattacharya1988@gmail.com
Hi syed….congrats about your exam…please send the full configuration step by step about LAB in real exam which you faced. my email id bhattacharya1988@gmail.com
I am looking for student guide to 642-637 SECURE v1.0. Has anybody this book?
Sorry I meant lab guide to 642-637 SECURE v1.0. If exist
I will enter exam soon ,what is your advise to me ?
Hi friends,
plz tell me which commend are support in hot spot qu about getvpn in real exam…?
Hi,
Anyone have ACS server download link …?
@ syed
Please can you send me link for Student guide Exam thanks.
My Email is mohammed_11130@yahoo.com
which commend are suppotrt in getvpn in real exam(642-637)?
@ syed
Please can you send me link for Student guide Exam thanks and dumps
venkatp_982@yahoo.co.in
@ syed,
Please can you send me link for Student guide Exam thanks and dumps
jollykids@gmail.com
@ Venkat @ Anil
Go through this link is valid good luck.
http://www.examcollection.com/cisco/Cisco.ActualTests.642-637.v2011-11-02.by.Chips.92q.vce.file.html
And also.
http://www.examcollection.com/cisco/Cisco.Prepking.642-637.v2011-11-22.by.Minejo.98q.vce.file.html
Hi friends…
HAPPY NEW YEAR TO ALL OF YOU….
I have a one qus………….do u think the answer about 642-637 exam is all right in chips92q & minej098q… i dont think so…..
so please confirm me about the same ASAP…..please…please
Iam looking for student guide exam to 642-637 SECURE v1.0. Has anybody this book?
Please, send to m_obando1@hotmail.com
I got the same doubt as Ratan, can someone confirm me the answers on those dumps? Has someone used on a real exam? I’m studying now whit the cbt nuggets and reading the cisco press but I’m planning to take this exam on feb, I would like to start practicing whit dumps also, so please confirm someone
Thanks and happy new year to all of you
Hi Reno
Which book did you use? did you use the new version book ? If so, please send me the link….
@ Steak n Chips – Regarding the Chips 11-2 vce, based on this site, http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6586/ps6643/white_paper_c89-492776.html, the question about Trend and the URL, Cisco says that the root cert must be installed first, but in doing so, FIRST check to make sure the clock syncs up. So, the correct answer is sync NTP clock.
Dear All, Any one got the new dumps?
@Witt – check the question – it says the NTP sync is for the filter updates – not the cert! Its a trap….
@Mich
I bought the book so I don’t have the pdf, But I saw it in several sites, did you try torrents?
GL!
@Steak – makes sense. I’m off to take the exam and I’ll use your logic should I get that question. I’ll post back results tonight.
Not 100% sure on two types of zone-based firewall types – routed AND inspection or transparent. A few spots have inspection, but yours has transparent. Transparent seems logical based on bridge mode, but couldn’t find exact wording to be 100% sure.
@Witt – 100% it is routed and transparent – inspection is a feature not a mode of the firewall.
Passed w/ 934! Thanks for the help @Steak n Chips. I initially just used TestKing but found probably 15 discrepancies in answers w/ yours. I used your answers to get the result I did, so you must be right. I didn’t have the NTP sync one or the zone-based one.
One question not on the test.
It was something about when you would have a single port be both a private and public vlan.
choices:
never
promiscuous
access to both
some other choice that I chose…something about accessing based on group or something. Sorry, I stink at memorizing.
Congrats Witt – think the answer is Promiscuous for the private vlan edge – WD!
@Steak – oh well, I guess that means the rest of your answers were spot on then. Sorry I can’t regurgitate better. I think there were like 3 questions total that were not from your exam. 1 from above and 2 others. 1 was pretty simple…basic knowledge question. The D&D were spot on.
Hi friends
I have some doubt regarding some qus about this eam……..
(1) Which of these is a result of using the same routing protocol process for routing outside and inside?
The VPN tunnel?
A. This will provide for routing-protocol-based failover redundancy.
B. Spoke routers will able to dynamically learn routes to peer networks.
C. This will allow VPN-encapsulated packets to be routed out the correct physical interface used to reach the remote peer
D. The tunnel will constantly flap
(2) When you are configuring DHCP snooping, how should you classify access ports?
A. untrusted
B. trusted
C. promiscuous
D. private
(3) When configuring URL filtering with the Trend Micro filtering service, which of these steps must you take to prepare for configuration?
A. define blacklists and white lists
B. categorize traffic types
C. install the appropriate root CA certificate on the router
D. synchronize clocks via NTP to ensure accuracy of URL filter updates from the service
(4) Which of these is a configurable Cisco IOS feature that triggers notifications if an attack attempts to exhaust critical router resources and if preventative controls have been bypassed or are not working correctly?
A. Control Plane Protection
B. Management Plane Protection
C. CPU and memory thresholding
D. SNMPv3
(5) Which two types of deployments can be implemented for a zone-based policy firewall? (Choose
Two.)
A. routed mode
B. interzone mode
C. fail open mode
D. transparent mode
E. inspection mode
(6)
I think all of you can remember the exibit regarding the zonebased firewall….
The INSIDE zone has been configured and assigned to two separate router interfaces. All other zones and interfaces have been properly configured. Given the configuration example shown, what can be determined
A. Hosts in the INSIDE zone, with addresses in the 10.10.10.0/24 network, can access any host in the 10.10.10.0/24 network using the SSH protocol
. B. If a host in the INSIDE zone attempts to communicate via SSH with another host on a different interface within the INSIDE zone, communications must pass through the router self zone using the INTRAZONE policy.
C. This is an illegal configuration. You cannot have the same source and destination zones.
D. This policy configuration is not needed, traffic within the same zone is allowed to pass by default.
please make my doubt clear……..
Just finished taking the test and passed 9xx. All hail the Tut and CHIPS the dump is valid. Remember if your going in, go BawlsDeep.
@ Saqib,
I am not able to download the file, can you share it again?
Hi wiit,
do you think chips 92q all D&D answer are wright?..please confirm me beacuse i will be appear coming Saturday for exam…..
Hi,
In hotspot qus what are the right answer about which roter is Key server & which router is router is member?…..please confirm me…….
anything new?
I will take the test in 2 weeks, Can someone confirm the labs? zone based firewall and GET VPN simlet. Is this correct?
Thanks!
@Ratan – I have to imagine they were all right as I got a 934 and know of two questions that I got wrong. I went with all of their D&D responses considering they made valid cases vs. actual tests and testking.
@Witt Congrats great man can you please forward your materials for the secure exam ..I really need the latest dumps ..
amanatzendagy@gmail.com
passed today 888/1000
dump 100% valid, both sims were in the exam, study dump from examcollection and you’ll be fine
I appering the exam on 1 st week of feb,
Can any one send me the latest dumps on sudip_r_oy@hotmail.com or send me the link of dumps.
I have also the same doubt……..
(1) Which of these is a result of using the same routing protocol process for routing outside and inside?
The VPN tunnel?
A. This will provide for routing-protocol-based failover redundancy.
B. Spoke routers will able to dynamically learn routes to peer networks.
C. This will allow VPN-encapsulated packets to be routed out the correct physical interface used to reach the remote peer
D. The tunnel will constantly flap
(2) When you are configuring DHCP snooping, how should you classify access ports?
A. untrusted
B. trusted
C. promiscuous
D. private
(3) When configuring URL filtering with the Trend Micro filtering service, which of these steps must you take to prepare for configuration?
A. define blacklists and white lists
B. categorize traffic types
C. install the appropriate root CA certificate on the router
D. synchronize clocks via NTP to ensure accuracy of URL filter updates from the service
(4) Which of these is a configurable Cisco IOS feature that triggers notifications if an attack attempts to exhaust critical router resources and if preventative controls have been bypassed or are not working correctly?
A. Control Plane Protection
B. Management Plane Protection
C. CPU and memory thresholding
D. SNMPv3
(5) Which two types of deployments can be implemented for a zone-based policy firewall? (Choose
Two.)
A. routed mode
B. interzone mode
C. fail open mode
D. transparent mode
E. inspection mode
(6)
I think all of you can remember the exibit regarding the zonebased firewall….
The INSIDE zone has been configured and assigned to two separate router interfaces. All other zones and interfaces have been properly configured. Given the configuration example shown, what can be determined
A. Hosts in the INSIDE zone, with addresses in the 10.10.10.0/24 network, can access any host in the 10.10.10.0/24 network using the SSH protocol
. B. If a host in the INSIDE zone attempts to communicate via SSH with another host on a different interface within the INSIDE zone, communications must pass through the router self zone using the INTRAZONE policy.
C. This is an illegal configuration. You cannot have the same source and destination zones.
D. This policy configuration is not needed, traffic within the same zone is allowed to pass by default.
Can anyone give the right answer ………
Hi guys,
i have compleated my 642-637 exam successfully…………..with 9xxxxxxx……..
Hi to all ,
Please help me friends I need the latest dumps for secure exam .
amanatzendagy@gmail.com
Passed today
Chips_92Q dump is valid , three new multiple choice questions
sim as in the dump also
chip dumps valid, but not accurate selected ditto options yet didnt score full in vpn and troubleshooting. Wish i could help more.
pls i have a valid CCNA cert and want to do the CCNPSecurity. Any other prerequisite? or am i qualified to just do the exams? pls help
p.s.
also.. thank you for your efforts couldn’t have done it without you chip n steak
@ don . you also need ccna-security (640 553) then the 4 exams to be ccnp security certified.
I appering the exam on 4 th of feb,
Can any one send me the latest dumps on sudip_r_oy@hotmail.com or send me the link of dumps.
I appering the exam secure-642-637 on 31 of jan,
Can any one send me the latest dumps on fernandk2@yahoo.com or send me the link of dumps.
Passed today 928/1000 almost all questions on the lastest dump, now moving to IPS and then VPN 2 more to go!
http://www.examcollection.com/cisco/Cisco.Prepking.642-637.v2011-11-22.by.Minejo.98q.vce.file.html
Hi to everybody, does any has the quick refernce guaid for ccnp security secure ?
If yes pleas fw the link…….
thnx in advance
Hi
i have got 70 question in exam passed with 878 on friday,
Dumps are still valid and i got only 3 question new.
Anyone has the link to the original certification guide to the CCNP Security exams. Please send them to neo4u.spidey@gmail.com or post the link here. Would be of great help to everyone.
Anyone know where to download the cbt nugget or some training video/book for this test?
Hi, what is exam fees for 642-637 (Secure)??
ete introduit sur le marche par la.
Hi, Rob. Email me on evgeniy.zubov@gmail.com and i can provide you with latest video (CBT nuggets)
Par ailleurs le tadalafil aura disparu si vous de fois vous avez. http://eurotadalafil.com Il ne provoque pas une ordonnance valide est comprendre la difference entre.
Salut salauds, parle anglais.