Cisco 300-710 Practice Test - Questions Answers, Page 14
List of questions
Related questions
IT management is asking the network engineer to provide high-level summary statistics of the Cisco FTD appliance in the network. The business is approaching a peak season so the need to maintain business uptime is high. Which report type should be used to gather this information?
Malware Report
Standard Report
SNMP Report
Risk Report
What is a feature of Cisco AMP private cloud?
It supports anonymized retrieval of threat intelligence
It supports security intelligence filtering.
It disables direct connections to the public cloud.
It performs dynamic analysis
A mid-sized company is experiencing higher network bandwidth utilization due to a recent acquisition The network operations team is asked to scale up their one Cisco FTD appliance deployment to higher capacities due to the increased network bandwidth. Which design option should be used to accomplish this goal?
Deploy multiple Cisco FTD appliances in firewall clustering mode to increase performance.
Deploy multiple Cisco FTD appliances using VPN load-balancing to scale performance.
Deploy multiple Cisco FTD HA pairs to increase performance
Deploy multiple Cisco FTD HA pairs in clustering mode to increase performance
An organization has seen a lot of traffic congestion on their links going out to the internet There is a Cisco Firepower device that processes all of the traffic going to the internet prior to leaving the enterprise. How is the congestion alleviated so that legitimate business traffic reaches the destination?
Create a flexconfig policy to use WCCP for application aware bandwidth limiting
Create a VPN policy so that direct tunnels are established to the business applications
Create a NAT policy so that the Cisco Firepower device does not have to translate as many addresses
Create a QoS policy rate-limiting high bandwidth applications
An engineer is troubleshooting a device that cannot connect to a web server. The connection is initiated from the Cisco FTD inside interface and attempting to reach 10.0.1.100 over the nonstandard port of 9443 The host the engineer is attempting the connection from is at the IP address of 10.20.10.20. In order to determine what is happening to the packets on the network, the engineer decides to use the FTD packet capture tool Which capture configuration should be used to gather the information needed to troubleshoot this issue?
With a recent summer time change, system logs are showing activity that occurred to be an hour behind real time Which action should be taken to resolve this issue?
Manually adjust the time to the correct hour on all managed devices
Configure the system clock settings to use NTP with Daylight Savings checked
Manually adjust the time to the correct hour on the Cisco FMC.
Configure the system clock settings to use NTP
What is a characteristic of bridge groups on a Cisco FTD?
In routed firewall mode, routing between bridge groups must pass through a routed interface.
In routed firewall mode, routing between bridge groups is supported.
In transparent firewall mode, routing between bridge groups is supported
Routing between bridge groups is achieved only with a router-on-a-stick configuration on a connected router
An engineer is attempting to create a new dashboard within the Cisco FMC to have a single view with widgets from many of the other dashboards. The goal is to have a mixture of threat and security related widgets along with Cisco
Firepower device health information. Which two widgets must be configured to provide this information? (Choose two).
Intrusion Events
Correlation Information
Appliance Status
Current Sessions
Network Compliance
An engineer has been tasked with using Cisco FMC to determine if files being sent through the network are malware. Which two configuration tasks must be performed to achieve this file lookup?
(Choose two).
The Cisco FMC needs to include a SSL decryption policy.
The Cisco FMC needs to connect to the Cisco AMP for Endpoints service.
The Cisco FMC needs to connect to the Cisco ThreatGrid service directly for sandboxing.
The Cisco FMC needs to connect with the FireAMP Cloud.
The Cisco FMC needs to include a file inspection policy for malware lookup.
An engineer configures an access control rule that deploys file policy configurations to security zones or tunnel zones, and it causes the device to restart. What is the reason for the restart?
Source or destination security zones in the access control rule matches the security zones that are associated with interfaces on the target devices.
The source tunnel zone in the rule does not match a tunnel zone that is assigned to a tunnel rule in the destination policy.
Source or destination security zones in the source tunnel zone do not match the security zones that are associated with interfaces on the target devices.
The source tunnel zone in the rule does not match a tunnel zone that is assigned to a tunnel rule in the source policy.
Question