Cisco 300-710 Practice Test - Questions Answers, Page 30
List of questions
Related questions
A cisco Secure firewall Threat Defence device is configured in inline IPS mode to inspect all traffic that passes through the interfaces in the inline set. Which setting in the inline set configuration must be connected to allow traffic to pass through uninterrupted when VDB updates are being applied?
Propagate Link State
Short Fall Open
Strict TCP Enforcement
Tap Mode
When packet capture is used on a Cisco Secure Firewall Threat Defense device and the packet flow is wailing on the malware query, which Snort verdict appears?
retry
replace
block
blocfcflow
An engineer is configuring URL filtering tor a Cisco Secure Firewall Threat Defense device in Cisco Secure Firewall Management Centre. Use's must receive a warning when they access ..wwww badaduitsito com with the option of continuing to the website if they choose to No other websites should he blocked. Which two actions must the engineer take to moot these requirements?
Configure an access control rule that matches an URL object for http://www.Dadadullsile.com' and set the action to Interactive Block.
On the HTTP Responses tab of the access control policy editor, set the Interactive Block Response Page to System-provided.
Configure the default action for the access control policy to Interactive Block.
On the HTTP Responses tab of the access control policy editor set the Block Response Page to Custom.
Configure an access control rule that matches the Adult URL category and sot the action to Interactive Block
Encrypted Visibility Engine (EVE) is enabled under which lab on an access control policy in Cisco Secure Firewall Management Centre?
Network Analysis Policy
Advanced
Security Intelligence
SSL
A company is deploying Cisco Secure Endpoint private cloud. The Secure Endpoint private cloud instance has already been deployed by the server administrator. The server administrator provided the hostname of the private cloud instance to the network engineer via email. What additional information does the network engineer require from the server administrator to be able to make the connection to Secure Endpoint private cloud in Cisco Secure Firewall Management Centre?
SSL certificate for the Secure Endpoint ornate cloud instance
Internet access for the Secure End point private cloud to reach the Secure Endpoint public cloud
Username and password to the Secure Endpoint private cloud instance
IP address and port number for the connection proxy
Network users experience issues when accessing a server on a different network segment. An engineer investigates the issue by performing packet capture on Cisco Secure Firewall Threat Defense. The engineer expects more data and suspects that not all the traffic was collected during a 15-minute can't captured session. Which action must the engineer take to resolve the issue?
Forward the captured data lo an FTP server
Increase the amount of RAM allocated for the capture.
Provide a file name to save the data.
Ensure that the allocated memory is sufficient.
Users report that Cisco Duo 2FA fails when they attempt to connect to the VPN on a Cisco Secure Firewall Threat Defense (FTD) device IT staff have VPN profiles that do not require multifactor authentication and they can connect to the VPN without any issues When viewing the VPN troubleshooting log in Cisco Secure Firewall Management Centre (FMC), the network administrator sees an error in the Cisco Duo AAA server has been marked as tailed. What is the root cause of the Issue?
Multifactor authentication Is not supported on Secure FMC managed devices.
Duo trust certificates are missing from the Secure FTD device.
The internal AD server is unreachable from the Secure FTD device.
AD Trust certificates are missing from the Secure FTD device.
An engineer must change the mode of a Cisco Secure Firewall Threat Defense (FTD) firewall in the Cisco Secure Firewall Management Center (FMC) inventory. The engineer must take these actions:
* Register Secure FTD with Secure FMC.
* Change the firewall mode.
* Deregister the Secure FTD device from Secure FMC.
How must the engineer take FTD take the actions?
Reload the Secure FTD device.
Configure the management IP address.
Access the Secure FTD CLI from the console port.
Erase the Secure FTD configuration
A network administrator wants to configure a Cisco Secure Firewall Threat Defense instance managed by Cisco Secure Firewall Management Center to block traffic to known cryptomning networks. Which system settings must the administrator configure in Secure Firewall Management Center to meet the requirement?
Access Policy. Security Intelligence
Malware Policy.
Rules Intrusion Policy. Security Intelligence
Access Policy. Rules
An administrator is configuring the interface of a Cisco Secure Firewall Threat Defense device in a passive IPS deployment. The device and interface have been identified. Which set of configuration steps of the administrator take next to complete the implementation?
Set the interface mode to passive. Associate the interface with a security zone. Set the MTU parameter. Reset the interface.
Modify the interface to retransmit received traffic. Associate the interface with a security zone Enable the interface. Sat the MTU parameter.
Modify the interface to retransmit received traffic. Associate the interface with a security zone. Set the MTU parameter.
Set the interface mode to passive. Associate the interface with a security zone. Enable the interface. Set the MTU parameter.
Question