Cisco 350-701 Practice Test - Questions Answers, Page 6
List of questions
Related questions
Which statement about IOS zone-based firewalls is true?
An unassigned interface can communicate with assigned interfaces
Only one interface can be assigned to a zone.
An interface can be assigned to multiple zones.
An interface can be assigned only to one zone.
What is a characteristic of Cisco ASA Netflow v9 Secure Event Logging?
It tracks flow-create, flow-teardown, and flow-denied events.
It provides stateless IP flow tracking that exports all records of a specific flow.
It tracks the flow continuously and provides updates every 10 seconds.
Its events match all traffic classes in parallel.
Which CLI command is used to register a Cisco FirePower sensor to Firepower Management Center?
configure system add <host><key>
configure manager <key> add host
configure manager delete
configure manager add <host><key
Which policy is used to capture host information on the Cisco Firepower Next Generation Intrusion Prevention System?
Correlation
Intrusion
Access Control
Network Discovery
Which ASA deployment mode can provide separation of management on a shared appliance?
DMZ multiple zone mode
transparent firewall mode
multiple context mode
routed mode
Refer to the exhibit.
What is a result of the configuration?
Traffic from the DMZ network is redirected
Traffic from the inside network is redirected
All TCP traffic is redirected
Traffic from the inside and DMZ networks is redirected
Which policy represents a shared set of features or parameters that define the aspects of a managed device that are likely to be similar to other managed devices in a deployment?
Group Policy
Access Control Policy
Device Management Policy
Platform Service Policy
Which two tasks allow NetFlow on a Cisco ASA 5500 Series firewall? (Choose two)
Enable NetFlow Version 9.
Create an ACL to allow UDP traffic on port 9996.
Apply NetFlow Exporter to the outside interface in the inbound direction.
Create a class map to match interesting traffic.
Define a NetFlow collector by using the flow-export command
A mall provides security services to customers with a shared appliance. The mall wants separation of management on the shared appliance. Which ASA deployment mode meets these needs?
routed mode
transparent mode
multiple context mode
multiple zone mode
What is a characteristic of Firepower NGIPS inline deployment mode?
ASA with Firepower module cannot be deployed.
It cannot take actions such as blocking traffic.
It is out-of-band from traffic.
It must have inline interface pairs configured.
Question