ExamGecko
Home Home / Cisco / 300-710

Cisco 300-710 Practice Test - Questions Answers, Page 31

Question list
Search
Search

List of questions

Search

Related questions











Refer to the exhibit.

An engineer generates troubleshooting files in Cisco Secure Firewall Management Center (FMC). A successfully completed task Is removed before the files are downloaded. Which two actions must be taken to determine the filename and obtain the generated troubleshooting files without regenerating them? (Choose two.)

A.

Use an FTP client Hi expert mode on Secure FMC lo upload the files to the FTP server.

A.

Use an FTP client Hi expert mode on Secure FMC lo upload the files to the FTP server.

Answers
B.

Go to the same screen as shown in the exhibit, click Advanced Troubleshooting, enter the rile name, and then start the download

B.

Go to the same screen as shown in the exhibit, click Advanced Troubleshooting, enter the rile name, and then start the download

Answers
C.

Connect to CU on the FTD67 and FTD66 devices and copy the tiles from flash to the PIP server.

C.

Connect to CU on the FTD67 and FTD66 devices and copy the tiles from flash to the PIP server.

Answers
D.

Go to expert mode on Secure FMC. list the contents of/Var/common, and determine the correct filename from the output

D.

Go to expert mode on Secure FMC. list the contents of/Var/common, and determine the correct filename from the output

Answers
E.

Click System Monitoring, men Audit to determine the correct filename from the line containing the Generate Troubleshooting Files string.

E.

Click System Monitoring, men Audit to determine the correct filename from the line containing the Generate Troubleshooting Files string.

Answers
Suggested answer: D, E

Explanation:

If a task to generate troubleshooting files in Cisco Secure Firewall Management Center (FMC) is completed successfully but removed before the files are downloaded, the following steps can be taken to determine the filename and obtain the generated troubleshooting files without regenerating them:

Go to expert mode on Secure FMC:

Access expert mode on the FMC via SSH or the console.

List the contents of the directory /var/common to locate the generated troubleshooting files. Use the command ls /var/common.

Use the System Monitoring Audit logs:

In FMC, navigate to System > Monitoring > Audit.

Find the line containing the 'Generate Troubleshooting Files' string to determine the correct filename.

These actions help identify and retrieve the generated troubleshooting files without the need to regenerate them, saving time and resources.

An administrator is configuring a new report template off. of a saved search within Cisco Secure Firewall Management Centre. The goal is to use the malware analysis report template, but use a different type saved search as the basis. The report is not working. What must be considered when configuring this report template?

A.

Saved searches can be used for the same report template only

A.

Saved searches can be used for the same report template only

Answers
B.

Saved searches are available freely for all report templates within the same domain.

B.

Saved searches are available freely for all report templates within the same domain.

Answers
C.

Saved searches from a different report template must be used.

C.

Saved searches from a different report template must be used.

Answers
D.

Saved searches must be renamed before using for different report template.

D.

Saved searches must be renamed before using for different report template.

Answers
Suggested answer: A

Explanation:

When configuring a new report template based on a saved search in Cisco Secure Firewall Management Center (FMC), it is important to note that saved searches are specific to the report template they were created with. Saved searches cannot be freely used across different report templates.

To use a different type of saved search, you must ensure that it aligns with the specific report template being used. This restriction ensures that the saved search parameters match the report's data requirements.

A network engineer is planning on replacing an Active/Standby pair of physical Cisco Secure Firewall ASAs with a pair of Cisco Secure Firewall Threat Defense Virtual appliances. Which two virtual environments support the current High Availability configuration? (Choose two.)

A.

KVM

A.

KVM

Answers
B.

Azure

B.

Azure

Answers
C.

ESXi

C.

ESXi

Answers
D.

AWS

D.

AWS

Answers
E.

Openstack

E.

Openstack

Answers
Suggested answer: C, D

Explanation:

Cisco Secure Firewall Threat Defense Virtual (FTDv) appliances support High Availability (HA) configurations in specific virtual environments. The supported environments for HA setups include:

ESXi: VMware's ESXi is a widely supported platform for deploying FTDv appliances in HA configurations.

AWS: Amazon Web Services (AWS) supports FTDv appliances and allows for HA configurations to ensure redundancy and reliability in cloud deployments.

These environments provide the necessary infrastructure and capabilities to support the high availability requirements for FTDv appliances.

An engineer must export a packet capture from Cisco Secure Firewall Management Center to assist in troubleshooting an issue an a Secure Firewall Threat Defense device. When the engineer navigates to URL for Secure Firewall Management Center at:

..<FMC IP>/capture/CAP/pcap/sample.pcap

An engineer receives a 403: Forbidden error instead of being provided with the PCAP file. Which action resolves the issue?

A.

Disable the HTTPS server and use HTTP.

A.

Disable the HTTPS server and use HTTP.

Answers
B.

Enable the proxy setting in the device platform policy.

B.

Enable the proxy setting in the device platform policy.

Answers
C.

Enable HTTPS in the device platform policy.

C.

Enable HTTPS in the device platform policy.

Answers
D.

Disable the proxy setting on the client browser.

D.

Disable the proxy setting on the client browser.

Answers
Suggested answer: C

Explanation:

If an engineer receives a 403: Forbidden error when attempting to download a packet capture file from Cisco Secure Firewall Management Center (FMC), the issue is likely due to HTTPS not being enabled in the device platform policy. To resolve this issue, the engineer must enable HTTPS in the platform policy.

Steps:

In FMC, navigate to Policies > Device Management > Platform Settings.

Edit the relevant platform policy.

Enable HTTPS for the device.

Deploy the changes to the FTD device.

This ensures that the FMC and FTD device can securely transfer the packet capture file over HTTPS, resolving the 403 error.

Cisco Security Analytics and Logging SaaS licenses come with how many days of data retention by default?

A.

60

A.

60

Answers
B.

365

B.

365

Answers
C.

90

C.

90

Answers
D.

120

D.

120

Answers
Suggested answer: C

Explanation:

Cisco Security Analytics and Logging (SaaS) licenses come with a default data retention period of 90 days. This retention period allows organizations to store and analyze their security event data for up to 90 days, providing sufficient time for security monitoring and forensic investigations.

An engineer is implementing a new Cisco Secure Firewall. The firewall must filler traffic between the three subnets:

* LAN 192.168.101.0724

* DMZ 192.168 200.0/24

* WAN 10.0.0.0/30

Which firewall mode must the engineer implement?

A.

transparent

A.

transparent

Answers
B.

network

B.

network

Answers
C.

routed

C.

routed

Answers
D.

gateway

D.

gateway

Answers
Suggested answer: C

Explanation:

To filter traffic between multiple subnets, the engineer must implement the firewall in routed mode. In routed mode, the firewall operates as a Layer 3 device, capable of routing traffic between different IP subnets. This mode is appropriate for filtering traffic between LAN, DMZ, and WAN subnets.

Steps to configure routed mode:

Access the firewall's management interface.

Configure interfaces for each subnet (LAN, DMZ, WAN) with appropriate IP addresses and network masks.

Define security zones and apply access control policies to filter traffic as required.

This ensures that the firewall can inspect and route traffic between the different subnets, providing the necessary security and control.

An engineer is configuring a new dashboard within Cisco Secure Firewall Management Center and is having trouble implementing a custom widget. When a custom analysis widget is configured which option is mandatory for the system to display the information?

A.

table

A.

table

Answers
B.

filter

B.

filter

Answers
C.

title

C.

title

Answers
D.

results

D.

results

Answers
Suggested answer: C

Explanation:

When configuring a custom widget on a dashboard within Cisco Secure Firewall Management Center (FMC), it is mandatory to provide a title for the system to display the information correctly. The title helps in identifying and organizing the widget on the dashboard.

Steps:

Navigate to the dashboard section in FMC.

Add a new custom widget.

Configure the widget settings and provide a title.

Save and apply the widget to the dashboard.

Providing a title ensures that the widget is correctly displayed and easily identifiable on the dashboard.

An administrator configures the interfaces of a Cisco Secure Firewall Threat Defence device in an inline IPS deployment. The administrator completes these actions:

* identifies the device and the interfaces

* sets the interface mode to inline

* enables the interlaces

Which configuration step must the administrator take next to complete the implementation?

A.

Enable spanning-tree PortFast on the interfaces.

A.

Enable spanning-tree PortFast on the interfaces.

Answers
B.

Configure an inline set

B.

Configure an inline set

Answers
C.

Set the interface to Transparent mode.

C.

Set the interface to Transparent mode.

Answers
D.

Set the interface to routed mode.

D.

Set the interface to routed mode.

Answers
Suggested answer: B

Explanation:

After setting the interface mode to inline and enabling the interfaces on a Cisco Secure Firewall Threat Defense (FTD) device in an inline IPS deployment, the next step is to configure an inline set. An inline set groups two interfaces that work together to inspect traffic passing between them.

Steps to configure an inline set:

In FMC, navigate to Devices > Device Management.

Select the FTD device and configure the interfaces.

Create a new inline set, adding the relevant interfaces that have been set to inline mode.

Deploy the configuration to the FTD device.

Configuring an inline set ensures that the traffic between the specified interfaces is inspected and processed according to the IPS policies, completing the implementation of the inline IPS deployment.

A network engineer is deploying a pair of Cisco Secure Firewall Threat Defense devices managed by Cisco Secure Firewall Management Center tor High Availability Internet access is a high priority for the business and therefore they have invested in internet circuits from two different ISPs. The requirement from the customer Is that Internet access must do available to their user's oven if one of the ISPs is down. Which two features must be deployed to achieve this requirement? (Choose two.)

A.

EtherChannel interfaces

A.

EtherChannel interfaces

Answers
B.

Route Tracking

B.

Route Tracking

Answers
C.

SLA Monitor

C.

SLA Monitor

Answers
D.

Redundant interfaces

D.

Redundant interfaces

Answers
E.

BGP

E.

BGP

Answers
Suggested answer: B, C

Explanation:

To ensure high availability of internet access when deploying a pair of Cisco Secure Firewall Threat Defense (FTD) devices managed by Cisco Secure Firewall Management Center (FMC), the following features must be deployed:

Route Tracking: This feature monitors the reachability of a specified target (such as an external IP address) through the configured routes. If the route to the target is lost, the FTD can dynamically adjust the routing to use an alternate path, ensuring continuous internet access.

SLA Monitor: Service Level Agreement (SLA) monitoring works alongside route tracking to continuously verify the status and performance of the internet links. If the SLA for one of the ISP links fails (indicating the link is down or underperforming), the FTD can switch traffic to the secondary ISP link.

Steps to configure:

In FMC, navigate to Devices > Device Management.

Select the FTD device and configure route tracking to monitor the ISP links.

Configure SLA monitors to continuously check the health and performance of the internet circuits.

These configurations ensure that internet access remains available to users even if one of the ISPs goes down.

A network engineer detects a connectivity issue between Cisco Secure Firewall Management Centre and Cisco Secure Firewall Threat Defense Initial troubleshooting indicates that heartbeats and events not being received. The engineer re-establishes the secure channels between both peers Which two commands must the engineer run to resolve the issue? (Choose two.)

A.

manage_procs.pl

A.

manage_procs.pl

Answers
B.

sudo stats_unified.pl

B.

sudo stats_unified.pl

Answers
C.

sudo perfstats -Cq < /var/sf/rna/correlator-stats/now

C.

sudo perfstats -Cq < /var/sf/rna/correlator-stats/now

Answers
D.

show history

D.

show history

Answers
E.

show disk-manager

E.

show disk-manager

Answers
Suggested answer: A, B

Explanation:

When connectivity issues are detected between Cisco Secure Firewall Management Center (FMC) and Cisco Secure Firewall Threat Defense (FTD) devices, and initial troubleshooting indicates that heartbeats and events are not being received, the engineer can run the following commands to resolve the issue by re-establishing secure channels and checking process statuses:

manage_procs.pl: This script is used to manage and restart processes on the FTD device. Running this script can help restart any malfunctioning processes and re-establish connectivity between the FMC and FTD.

sudo stats_unified.pl: This command provides detailed statistics and status of the unified system processes. It helps in diagnosing and resolving issues related to the secure channel and event reporting.

Steps:

Access the FTD CLI.

Run the command manage_procs.pl to restart processes.

Run the command sudo stats_unified.pl to gather detailed process statistics and verify the status.

These commands help resolve connectivity issues by ensuring that all necessary processes are running correctly and secure channels are re-established.

Total 326 questions
Go to page: of 33