Cisco 300-710 Practice Test - Questions Answers, Page 19
List of questions
Related questions
The administrator notices that there is malware present with an .exe extension and needs to verify if any of the systems on the network are running the executable file. What must be configured within Cisco AMP for Endpoints to show this data?
prevalence
threat root cause
vulnerable software
file analysis
An organization must be able to ingest NetFlow traffic from their Cisco FTD device to Cisco Stealthwatch for behavioral analysis. What must be configured on the Cisco FTD to meet this requirement?
interface object to export NetFlow
security intelligence object for NetFlow
flexconfig object for NetFlow
variable set object for NetFlow
An administrator must use Cisco FMC to install a backup route within the Cisco FTD to route traffic in case of a routing failure with the primary route. Which action accomplishes this task?
Install the static backup route and modify the metric to be less than the primary route.
Configure EIGRP routing on the FMC to ensure that dynamic routes are always updated.
Use a default route on the FMC instead of having multiple routes contending for priority.
Create the backup route and use route tracking on both routes to a destination IP address in the network.
A network security engineer must export packet captures from the Cisco FMC web browser while troubleshooting an issue. When navigating to the address https://<FMC
IP>/capture/CAPI/pcap/test.pcap. an error 403: Forbidden is given instead of the PCAP file. Which action must the engineer take to resolve this issue?
Disable the HTTPS server and use HTTP instead.
Enable the HTTPS server for the device platform policy.
Disable the proxy setting on the browser.
Use the Cisco FTD IP address as the proxy server setting on the browser.
An engineer integrates Cisco FMC and Cisco ISE using pxGrid. Which role is assigned for Cisco FMC?
controller
publisher
client
server
An engineer is configuring Cisco FMC and wants to limit the time allowed for processing packets through the interface However if the time is exceeded the configuration must allow packets to bypass detection What must be configured on the Cisco FMC to accomplish this task?
Fast-Path Rules Bypass
Cisco ISE Security Group Tag
Inspect Local Traffic Bypass
Automatic Application Bypass
An engineer is »vorlang on a LAN switch and has noticed that its network connection to the mime Cisco IPS has gone down Upon troubleshooting it is determined that the switch is working as expected What must have been implemented for this failure to occur?
The upstream router has a misconfigured routing protocol
Link-state propagation is enabled
The Cisco IPS has been configured to be in fail-open mode
The Cisco IPS is configured in detection mode
Refer to the exhibit An engineer is modifying an access control pokey to add a rule to inspect all DNS traffic that passes through the firewall After making the change and deploying the pokey they see that DNS traffic is not bang inspected by the Snort engine What is the problem?
The rule must specify the security zone that originates the traffic
The rule must define the source network for inspection as well as the port
The action of the rule is set to trust instead of allow.
The rule is configured with the wrong setting for the source port
What is the role of the casebook feature in Cisco Threat Response?
sharing threat analysts
pulling data via the browser extension
triage automaton with alerting
alert prioritization
A network engineer sets up a secondary Cisco FMC that is integrated with Cisco Security Packet Analyzer What occurs when the secondary Cisco FMC synchronizes with the primary Cisco FMC?
The existing integration configuration is replicated to the primary Cisco FMC
The existing configuration for integration of the secondary Cisco FMC the Cisco Security Packet Analyzer is overwritten.
The synchronization between the primary and secondary Cisco FMC fails
The secondary Cisco FMC must be reintegrated with the Cisco Security Packet Analyzer after the synchronization
Question