ExamGecko
Home Home / Cisco / 300-710

Cisco 300-710 Practice Test - Questions Answers, Page 13

Question list
Search
Search

List of questions

Search

Related questions











An engineer is monitoring network traffic from their sales and product development departments, which are on two separate networks What must be configured in order to maintain data privacy for both departments?

A.

Use a dedicated IPS inline set for each department to maintain traffic separation

A.

Use a dedicated IPS inline set for each department to maintain traffic separation

Answers
B.

Use 802 1Q mime set Trunk interfaces with VLANs to maintain logical traffic separation

B.

Use 802 1Q mime set Trunk interfaces with VLANs to maintain logical traffic separation

Answers
C.

Use passive IDS ports for both departments

C.

Use passive IDS ports for both departments

Answers
D.

Use one pair of inline set in TAP mode for both departments

D.

Use one pair of inline set in TAP mode for both departments

Answers
Suggested answer: B

Which license type is required on Cisco ISE to integrate with Cisco FMC pxGrid?

A.

mobility

A.

mobility

Answers
B.

plus

B.

plus

Answers
C.

base

C.

base

Answers
D.

apex

D.

apex

Answers
Suggested answer: B

With Cisco FTD software, which interface mode must be configured to passively receive traffic that passes through the appliance?

A.

ERSPAN

A.

ERSPAN

Answers
B.

IPS-only

B.

IPS-only

Answers
C.

firewall

C.

firewall

Answers
D.

tap

D.

tap

Answers
Suggested answer: A

An organization is setting up two new Cisco FTD devices to replace their current firewalls and cannot have any network downtime During the setup process, the synchronization between the two devices is failing What action is needed to resolve this issue?

A.

Confirm that both devices have the same port-channel numbering

A.

Confirm that both devices have the same port-channel numbering

Answers
B.

Confirm that both devices are running the same software version

B.

Confirm that both devices are running the same software version

Answers
C.

Confirm that both devices are configured with the same types of interfaces

C.

Confirm that both devices are configured with the same types of interfaces

Answers
D.

Confirm that both devices have the same flash memory sizes

D.

Confirm that both devices have the same flash memory sizes

Answers
Suggested answer: B

A network engineer wants to add a third-party threat feed into the Cisco FMC for enhanced threat detection Which action should be taken to accomplish this goal?

A.

Enable Threat Intelligence Director using STIX and TAXII

A.

Enable Threat Intelligence Director using STIX and TAXII

Answers
B.

Enable Rapid Threat Containment using REST APIs

B.

Enable Rapid Threat Containment using REST APIs

Answers
C.

Enable Threat Intelligence Director using REST APIs

C.

Enable Threat Intelligence Director using REST APIs

Answers
D.

Enable Rapid Threat Containment using STIX and TAXII

D.

Enable Rapid Threat Containment using STIX and TAXII

Answers
Suggested answer: A

A Cisco FTD device is running in transparent firewall mode with a VTEP bridge group member ingress interface What must be considered by an engineer tasked with specifying a destination MAC address for a packet trace?

A.

The destination MAC address is optional if a VLAN ID value is entered

A.

The destination MAC address is optional if a VLAN ID value is entered

Answers
B.

Only the UDP packet type is supported

B.

Only the UDP packet type is supported

Answers
C.

The output format option for the packet logs unavailable

C.

The output format option for the packet logs unavailable

Answers
D.

The VLAN ID and destination MAC address are optional

D.

The VLAN ID and destination MAC address are optional

Answers
Suggested answer: A

An organization has a compliancy requirement to protect servers from clients, however, the clients and servers all reside on the same Layer 3 network Without readdressing IP subnets for clients or servers, how is segmentation achieved?

A.

Deploy a firewall in transparent mode between the clients and servers.

A.

Deploy a firewall in transparent mode between the clients and servers.

Answers
B.

Change the IP addresses of the clients, while remaining on the same subnet.

B.

Change the IP addresses of the clients, while remaining on the same subnet.

Answers
C.

Deploy a firewall in routed mode between the clients and servers

C.

Deploy a firewall in routed mode between the clients and servers

Answers
D.

Change the IP addresses of the servers, while remaining on the same subnet

D.

Change the IP addresses of the servers, while remaining on the same subnet

Answers
Suggested answer: A

A network administrator notices that SI events are not being updated The Cisco FTD device is unable to load all of the SI event entries and traffic is not being blocked as expected. What must be done to correct this issue?

A.

Restart the affected devices in order to reset the configurations

A.

Restart the affected devices in order to reset the configurations

Answers
B.

Manually update the SI event entries to that the appropriate traffic is blocked

B.

Manually update the SI event entries to that the appropriate traffic is blocked

Answers
C.

Replace the affected devices with devices that provide more memory

C.

Replace the affected devices with devices that provide more memory

Answers
D.

Redeploy configurations to affected devices so that additional memory is allocated to the SI module

D.

Redeploy configurations to affected devices so that additional memory is allocated to the SI module

Answers
Suggested answer: D

A hospital network needs to upgrade their Cisco FMC managed devices and needs to ensure that a disaster recovery process is in place. What must be done in order to minimize downtime on the network?

A.

Configure a second circuit to an ISP for added redundancy

A.

Configure a second circuit to an ISP for added redundancy

Answers
B.

Keep a copy of the current configuration to use as backup

B.

Keep a copy of the current configuration to use as backup

Answers
C.

Configure the Cisco FMCs for failover

C.

Configure the Cisco FMCs for failover

Answers
D.

Configure the Cisco FMC managed devices for clustering.

D.

Configure the Cisco FMC managed devices for clustering.

Answers
Suggested answer: B

In a multi-tennent deployment where multiple domains are in use. which update should be applied outside of the Global Domain?

A.

minor upgrade

A.

minor upgrade

Answers
B.

local import of intrusion rules

B.

local import of intrusion rules

Answers
C.

Cisco Geolocation Database

C.

Cisco Geolocation Database

Answers
D.

local import of major upgrade

D.

local import of major upgrade

Answers
Suggested answer: B
Total 326 questions
Go to page: of 33