Cisco 300-710 Practice Test - Questions Answers, Page 23

List of questions
Question 221

A security engineer must deploy a Cisco FTD appliance as a bump in the wire to detect intrusion events without disrupting the flow of network traffic. Which two features must be configured to accomplish the task? (Choose two.)
Question 222

Due to an Increase in malicious events, a security engineer must generate a threat report to include intrusion events, malware events, and security intelligence events. How Is this information collected in a single report?
Question 223

An engineer attempts to pull the configuration for a Cisco FTD sensor to review with Cisco TAC but does not have direct access to the CU for the device. The CLl for the device is managed by Cisco FMC to which the engineer has access.
Which action in Cisco FMC grants access to the CLl for the device?
Question 224

An administrator is attempting to add a new FTD device to their FMC behind a NAT device with a NAT ID of NAT001 and a password of Cisco0420l06525. The private IP address of the FMC server is 192.168.45.45. which is being translated to the public IP address of 209.165.200.225/27. Which command set must be used in order to accomplish this task?
Question 225

A security analyst must create a new report within Cisco FMC to show an overview of the daily attacks, vulnerabilities, and connections. The analyst wants to reuse specific dashboards from other reports to create this consolidated one.
Which action accomplishes this task?
Question 226

A network administrator has converted a Cisco FTD from using LDAP to LDAPS for VPN authentication. The Cisco FMC can connect to the LDAPS server, but the Cisco FTD is not connecting.
Which configuration must be enabled on the Cisco FTD?
Question 227

When using Cisco Threat Response, which phase of the Intelligence Cycle publishes the results of the investigation?
Question 228

A security engineer must integrate an external feed containing STIX/TAXII data with Cisco FMC.
Which feature must be enabled on the Cisco FMC to support this connection?
Question 229

A network administrator wants to block traffic to a known malware site at https://www.badsite.comand all subdomains while ensuring no packets from any internal client are sent to that site. Whichtype of policy must the network administrator use to accomplish this goal?
Question 230

An organization is configuring a new Cisco Firepower High Availability deployment. Which action must be taken to ensure that failover is as seamless as possible to end users?
Question