ExamGecko
Home Home / Cisco / 300-710

Cisco 300-710 Practice Test - Questions Answers, Page 25

Question list
Search
Search

List of questions

Search

Related questions











An engineer is creating an URL object on Cisco FMC How must it be configured so that the object will match for HTTPS traffic in an access control policy?

A.

Specify the protocol to match (HTTP or HTTPS).

A.

Specify the protocol to match (HTTP or HTTPS).

Answers
B.

Use the FQDN including the subdomain for the website

B.

Use the FQDN including the subdomain for the website

Answers
C.

Define the path to the individual webpage that uses HTTPS.

C.

Define the path to the individual webpage that uses HTTPS.

Answers
D.

Use the subject common name from the website certificate

D.

Use the subject common name from the website certificate

Answers
Suggested answer: B

An engineer must configure a Cisco FMC dashboard in a multidomain deployment Which action must the engineer take to edit a report template from an ancestor domain?

A.

Add it as a separate widget.

A.

Add it as a separate widget.

Answers
B.

Copy it to the current domain

B.

Copy it to the current domain

Answers
C.

Assign themselves ownership of it

C.

Assign themselves ownership of it

Answers
D.

Change the document attributes.

D.

Change the document attributes.

Answers
Suggested answer: B

What must be implemented on Cisco Firepower to allow multiple logical devices on a single physical device to have access to external hosts?

A.

Add at least two container instances from the same module.

A.

Add at least two container instances from the same module.

Answers
B.

Set up a cluster control link between all logical devices

B.

Set up a cluster control link between all logical devices

Answers
C.

Add one shared management interface on all logical devices.

C.

Add one shared management interface on all logical devices.

Answers
D.

Define VLAN subinterfaces for each logical device.

D.

Define VLAN subinterfaces for each logical device.

Answers
Suggested answer: C

An administrator is configuring a transparent Cisco FTD device to receive ERSPAN traffic from multiple switches on a passive port but the FTD is not processing the traffic What is the problem?

A.

The switches do not have Layer 3 connectivity to the FTD device for GRE traffic transmission.

A.

The switches do not have Layer 3 connectivity to the FTD device for GRE traffic transmission.

Answers
B.

The FTD must be configured with an ERSPAN port, not a passive port.

B.

The FTD must be configured with an ERSPAN port, not a passive port.

Answers
C.

The FTD must &e in routed mode to process ERSPAN traffic.

C.

The FTD must &e in routed mode to process ERSPAN traffic.

Answers
D.

The switches were not set up with a monitor session ID (hat matches the flow ID defined on the FTD

D.

The switches were not set up with a monitor session ID (hat matches the flow ID defined on the FTD

Answers
Suggested answer: C
A.

Connectivity Over Security

A.

Connectivity Over Security

Answers
B.

Security Over Connectivity

B.

Security Over Connectivity

Answers
C.

Maximum Detection

C.

Maximum Detection

Answers
D.

Balanced Security and Connectivity

D.

Balanced Security and Connectivity

Answers
Suggested answer: D

An organization is implementing Cisco FTD using transparent mode in the network. Which rule in the default Access Control Policy ensures that this deployment does not create a loop in the network?

A.

ARP inspection is enabled by default.

A.

ARP inspection is enabled by default.

Answers
B.

Multicast and broadcast packets are denied by default.

B.

Multicast and broadcast packets are denied by default.

Answers
C.

STP BPDU packets are allowed by default.

C.

STP BPDU packets are allowed by default.

Answers
D.

ARP packets are allowed by default.

D.

ARP packets are allowed by default.

Answers
Suggested answer: B

An organization is installing a new Cisco FTD appliance in the network. An engineer is tasked with configuring access between two network segments within the same IP subnet. Which step is needed to accomplish this task?

A.

Assign an IP address to the Bridge Virtual Interface.

A.

Assign an IP address to the Bridge Virtual Interface.

Answers
B.

Permit BPDU packets to prevent loops.

B.

Permit BPDU packets to prevent loops.

Answers
C.

Specify a name for the bridge group.

C.

Specify a name for the bridge group.

Answers
D.

Add a separate bridge group for each segment.

D.

Add a separate bridge group for each segment.

Answers
Suggested answer: A

When a Cisco FTD device is configured in transparent firewall mode, on which two interface types can an IP address be configured? (Choose two.)

A.

Diagnostic

A.

Diagnostic

Answers
B.

EtherChannel

B.

EtherChannel

Answers
C.

BVI

C.

BVI

Answers
D.

Physical

D.

Physical

Answers
E.

Subinterface

E.

Subinterface

Answers
Suggested answer: A, C

An administrator needs to configure Cisco FMC to send a notification email when a data transfer larger than 10 MB is initiated from an internal host outside of standard business hours. Which Cisco FMC feature must be configured to accomplish this task?

A.

file and malware policy

A.

file and malware policy

Answers
B.

application detector

B.

application detector

Answers
C.

intrusion policy

C.

intrusion policy

Answers
D.

correlation policy

D.

correlation policy

Answers
Suggested answer: A

A security engineer is adding three Cisco FTD devices to a Cisco FMC. Two of the devices have successfully registered to the Cisco FMC. The device that is unable to register is located behind a router that translates all outbound traffic to the router's WAN IP address. Which two steps are required for this device to register to the Cisco FMC? (Choose two.)

A.

Reconfigure the Cisco FMC lo use the device's private IP address instead of the WAN address.

A.

Reconfigure the Cisco FMC lo use the device's private IP address instead of the WAN address.

Answers
B.

Configure a NAT ID on both the Cisco FMC and the device.

B.

Configure a NAT ID on both the Cisco FMC and the device.

Answers
C.

Add the port number being used for PAT on the router to the device's IP address in the Cisco FMC.

C.

Add the port number being used for PAT on the router to the device's IP address in the Cisco FMC.

Answers
D.

Reconfigure the Cisco FMC to use the device's hostname instead of IP address.

D.

Reconfigure the Cisco FMC to use the device's hostname instead of IP address.

Answers
E.

Remove the IP address defined for the device in the Cisco FMC.

E.

Remove the IP address defined for the device in the Cisco FMC.

Answers
Suggested answer: B, E
Total 326 questions
Go to page: of 33