ExamGecko
Home / Cisco / 350-701 / List of questions
Ask Question

Cisco 350-701 Practice Test - Questions Answers, Page 17

List of questions

Question 161

Report Export Collapse

What provides the ability to program and monitor networks from somewhere other than the DNAC GUI?

NetFlow

NetFlow

desktop client

desktop client

ASDM

ASDM

API

API

Suggested answer: D
asked 10/10/2024
shubha sunil
39 questions

Question 162

Report Export Collapse

An organization has two machines hosting web applications. Machine 1 is vulnerable to SQL injection while machine 2 is vulnerable to buffer overflows. What action would allow the attacker to gain access to machine 1 but not machine 2?

sniffing the packets between the two hosts

sniffing the packets between the two hosts

sending continuous pings

sending continuous pings

overflowing the buffer's memory

overflowing the buffer's memory

inserting malicious commands into the database

inserting malicious commands into the database

Suggested answer: D
asked 10/10/2024
Duncan Brundseaux
44 questions

Question 163

Report Export Collapse

An organization is trying to improve their Defense in Depth by blocking malicious destinations prior to a connection being established. The solution must be able to block certain applications from being used within the network. Which product should be used to accomplish this goal?

Cisco Firepower

Cisco Firepower

Cisco Umbrella

Cisco Umbrella

ISE

ISE

AMP

AMP

Suggested answer: B
Explanation:

Cisco Umbrella protects users from accessing malicious domains by proactively analyzing and blocking unsafe destinations – before a connection is ever made. Thus it can protect from phishing attacks by blocking suspicious domains when users click on the given links that an attacker sent.

asked 10/10/2024
JAOID EL OUALITI
31 questions

Question 164

Report Export Collapse

A company is experiencing exfiltration of credit card numbers that are not being stored on-premise.

The company needs to be able to protect sensitive data throughout the full environment. Which tool should be used to accomplish this goal?

Security Manager

Security Manager

Cloudlock

Cloudlock

Web Security Appliance

Web Security Appliance

Cisco ISE

Cisco ISE

Suggested answer: B
Explanation:

Cisco Cloudlock is a cloud-native cloud access security broker (CASB) that helps you move to the cloud safely. It protects your cloud users, data, and apps. Cisco Cloudlock provides visibility and compliance checks, protects data against misuse and exfiltration, and provides threat protections against malware like ransomware.

asked 10/10/2024
Suraj Porwal
41 questions

Question 165

Report Export Collapse

An engineer is trying to securely connect to a router and wants to prevent insecure algorithms from being used.

However, the connection is failing. Which action should be taken to accomplish this goal?

Disable telnet using the no ip telnet command.

Disable telnet using the no ip telnet command.

Enable the SSH server using the ip ssh server command.

Enable the SSH server using the ip ssh server command.

Configure the port using the ip ssh port 22 command.

Configure the port using the ip ssh port 22 command.

Generate the RSA key using the crypto key generate rsa command.

Generate the RSA key using the crypto key generate rsa command.

Suggested answer: D
Explanation:

In this question, the engineer was trying to secure the connection so maybe he was trying to allow SSH to the device. But maybe something went wrong so the connection was failing (the connection used to be good). So maybe he was missing the "crypto key generate rsa" command.

asked 10/10/2024
Tyrome Myatt
39 questions

Question 166

Report Export Collapse


A network administrator is using the Cisco ESA with AMP to upload files to the cloud for analysis. The network is congested and is affecting communication. How will the Cisco ESA handle any files which need analysis?

AMP calculates the SHA-256 fingerprint, caches it, and periodically attempts the upload.

AMP calculates the SHA-256 fingerprint, caches it, and periodically attempts the upload.

The file is queued for upload when connectivity is restored.

The file is queued for upload when connectivity is restored.

The file upload is abandoned.

The file upload is abandoned.

The ESA immediately makes another attempt to upload the file.

The ESA immediately makes another attempt to upload the file.

Suggested answer: C
Explanation:

The appliance will try once to upload the file; if upload is not successful, for example because of connectivity problems, the file may not be uploaded. If the failure was because the file analysis server was overloaded, the upload will be attempted once more.

Reference: https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/118796-technoteesa-00.htmlIn this question, it stated "the network is congested" (not the file analysis server was overloaded) sotheappliance will not try to upload the file again.

asked 10/10/2024
Kshitij Vyas
40 questions

Question 167

Report Export Collapse

Which type of algorithm provides the highest level of protection against brute-force attacks?

PFS

PFS

HMAC

HMAC

MD5

MD5

SHA

SHA

Suggested answer: D
asked 10/10/2024
Bruce Baynes
30 questions

Question 168

Report Export Collapse

What must be configured in Cisco ISE to enforce reauthentication of an endpoint session when an endpoint is deleted from an identity group?

posture assessment

posture assessment

CoA

CoA

external identity source

external identity source

SNMP probe

SNMP probe

Suggested answer: B
Explanation:

Cisco ISE allows a global configuration to issue a Change of Authorization (CoA) in the Profiler Configuration page that enables the profiling service with more control over endpoints that are already authenticated.

One of the settings to configure the CoA type is "Reauth". This option is used to enforce reauthentication of an already authenticated endpoint when it is profiled.

Reference: https://www.cisco.com/c/en/us/td/docs/security/ise/1-3/admin_guide/b_ise_admin_guide_13/ b_ise_admin_guide_sample_chapter_010101.html

asked 10/10/2024
Gennaro Migliaccio
34 questions

Question 169

Report Export Collapse

A network administrator is configuring a rule in an access control policy to block certain URLs and selects the "Chat and Instant Messaging" category. Which reputation score should be selected to accomplish this goal?

1

1

3

3

5

5

10

10

Suggested answer: D
Explanation:

We choose "Chat and Instant Messaging" category in "URL Category":

Cisco 350-701 image Question 169 explanation 117390 10102024233051000000

To block certain URLs we need to choose URL Reputation from 6 to 10.

Cisco 350-701 image Question 169 explanation 117390 10102024233051000000

asked 10/10/2024
Swen Leuning
55 questions

Question 170

Report Export Collapse

Which group within Cisco writes and publishes a weekly newsletter to help cybersecurity professionals remain aware of the ongoing and most prevalent threats?

PSIRT

PSIRT

Talos

Talos

CSIRT

CSIRT

DEVNET

DEVNET

Suggested answer: B
Explanation:

Talos Threat Source is a regular intelligence update from Cisco Talos, highlighting the biggest threats each week and other security news.

Reference: https://talosintelligence.com/newsletters

asked 10/10/2024
Kurt Onal
34 questions
Total 631 questions
Go to page: of 64
Search

Related questions