Cisco 350-701 Practice Test - Questions Answers, Page 43
List of questions
Related questions
Which technology enables integration between Cisco ISE and other platforms to gather and share network and vulnerability data and SIEM and location information?
pxGrid
NetFlow
SNMP
Cisco Talos
Which Cisco DNA Center Intent API action is used to retrieve the number of devices known to a DNA Center?
GET https://fqdnOrlPofDnaCenterPlatform/dna/intent/api/v1/network-device/count
GET https://fqdnOrlPofDnaCenterPlatform/dna/intent/api/v1/network-device
GET
https://fqdnOrlPofDnaCenterPlatform/dna/intent/api/v1/networkdevice?parameter1=value¶meter2=value&....
GET https://fqdnOrlPofDnaCenterPlatform/dna/intent/api/v1/networkdevice/startIndex/recordsToReturn
An organization must add new firewalls to its infrastructure and wants to use Cisco ASA or Cisco FTD.
The chosen firewalls must provide methods of blocking traffic that include offering the user the option to bypass the block for certain sites after displaying a warning page and to reset the connection.
Which solution should the organization choose?
Cisco FTD because it supports system rate level traffic blocking, whereas Cisco ASA does not
Cisco ASA because it allows for interactive blocking and blocking with reset to be configured via the GUI, whereas Cisco FTD does not.
Cisco FTD because it enables interactive blocking and blocking with reset natively, whereas Cisco ASA does not
Cisco ASA because it has an additional module that can be installed to provide multiple blocking capabilities, whereas Cisco FTD does not.
An engineer is configuring web filtering for a network using Cisco Umbrella Secure Internet Gateway.
The requirement is that all traffic needs to be filtered. Using the SSL decryption feature, which type of certificate should be presented to the end-user to accomplish this goal?
third-party
self-signed
organization owned root
SubCA
An engineer needs to configure an access control policy rule to always send traffic for inspection without using the default action. Which action should be configured for this rule?
monitor
allow
block
trust
When NetFlow is applied to an interface, which component creates the flow monitor cache that is used to collect traffic based on the key and nonkey fields in the configured record?
records
flow exporter
flow sampler
flow monitor
Which encryption algorithm provides highly secure VPN communications?
3DES
AES 256
AES 128
DES
An administrator needs to configure the Cisco ASA via ASDM such that the network management system can actively monitor the host using SNMPv3. Which two tasks must be performed for this configuration?
(Choose two.)
Specify the SNMP manager and UDP port.
Specify an SNMP user group
Specify a community string.
Add an SNMP USM entry
Add an SNMP host access entry
Which Cisco ASA deployment model is used to filter traffic between hosts in the same IP subnet using higher-level protocols without readdressing the network?
routed mode
transparent mode
single context mode
multiple context mode
Which function is performed by certificate authorities but is a limitation of registration authorities?
accepts enrollment requests
certificate re-enrollment
verifying user identity
CRL publishing
Question