Cisco 300-710 Practice Test - Questions Answers, Page 25
List of questions
Related questions
An engineer is creating an URL object on Cisco FMC How must it be configured so that the object will match for HTTPS traffic in an access control policy?
Specify the protocol to match (HTTP or HTTPS).
Use the FQDN including the subdomain for the website
Define the path to the individual webpage that uses HTTPS.
Use the subject common name from the website certificate
An engineer must configure a Cisco FMC dashboard in a multidomain deployment Which action must the engineer take to edit a report template from an ancestor domain?
Add it as a separate widget.
Copy it to the current domain
Assign themselves ownership of it
Change the document attributes.
What must be implemented on Cisco Firepower to allow multiple logical devices on a single physical device to have access to external hosts?
Add at least two container instances from the same module.
Set up a cluster control link between all logical devices
Add one shared management interface on all logical devices.
Define VLAN subinterfaces for each logical device.
An administrator is configuring a transparent Cisco FTD device to receive ERSPAN traffic from multiple switches on a passive port but the FTD is not processing the traffic What is the problem?
The switches do not have Layer 3 connectivity to the FTD device for GRE traffic transmission.
The FTD must be configured with an ERSPAN port, not a passive port.
The FTD must &e in routed mode to process ERSPAN traffic.
The switches were not set up with a monitor session ID (hat matches the flow ID defined on the FTD
Connectivity Over Security
Security Over Connectivity
Maximum Detection
Balanced Security and Connectivity
An organization is implementing Cisco FTD using transparent mode in the network. Which rule in the default Access Control Policy ensures that this deployment does not create a loop in the network?
ARP inspection is enabled by default.
Multicast and broadcast packets are denied by default.
STP BPDU packets are allowed by default.
ARP packets are allowed by default.
An organization is installing a new Cisco FTD appliance in the network. An engineer is tasked with configuring access between two network segments within the same IP subnet. Which step is needed to accomplish this task?
Assign an IP address to the Bridge Virtual Interface.
Permit BPDU packets to prevent loops.
Specify a name for the bridge group.
Add a separate bridge group for each segment.
When a Cisco FTD device is configured in transparent firewall mode, on which two interface types can an IP address be configured? (Choose two.)
Diagnostic
EtherChannel
BVI
Physical
Subinterface
An administrator needs to configure Cisco FMC to send a notification email when a data transfer larger than 10 MB is initiated from an internal host outside of standard business hours. Which Cisco FMC feature must be configured to accomplish this task?
file and malware policy
application detector
intrusion policy
correlation policy
A security engineer is adding three Cisco FTD devices to a Cisco FMC. Two of the devices have successfully registered to the Cisco FMC. The device that is unable to register is located behind a router that translates all outbound traffic to the router's WAN IP address. Which two steps are required for this device to register to the Cisco FMC? (Choose two.)
Reconfigure the Cisco FMC lo use the device's private IP address instead of the WAN address.
Configure a NAT ID on both the Cisco FMC and the device.
Add the port number being used for PAT on the router to the device's IP address in the Cisco FMC.
Reconfigure the Cisco FMC to use the device's hostname instead of IP address.
Remove the IP address defined for the device in the Cisco FMC.
Question