Cisco 350-701 Practice Test - Questions Answers, Page 9
Related questions
In which cloud services model is the tenant responsible for virtual machine OS patching?
IaaS
UCaaS
PaaS
SaaS
Which cloud service model offers an environment for cloud consumers to develop and deploy applications without needing to manage or maintain the underlying cloud infrastructure?
PaaS
XaaS
IaaS
SaaS
What does the Cloudlock Apps Firewall do to mitigate security concerns from an application perspective?
It allows the administrator to quarantine malicious files so that the application can function, just not maliciously.
It discovers and controls cloud apps that are connected to a company's corporate environment.
It deletes any application that does not belong in the network.
It sends the application information to an administrator to act on.
Which solution protects hybrid cloud deployment workloads with application visibility and segmentation?
Nexus
Stealthwatch
Firepower
Tetration
In a PaaS model, which layer is the tenant responsible for maintaining and patching?
hypervisor
virtual machine
network
application
On which part of the IT environment does DevSecOps focus?
application development
wireless network
data center
perimeter network
What is the function of Cisco Cloudlock for data security?
data loss prevention
controls malicious cloud apps
detects anomalies
user and entity behavior analytics
An administrator wants to ensure that all endpoints are compliant before users are allowed access on the corporate network. The endpoints must have the corporate antivirus application installed and be running the latest build of Windows 10.
What must the administrator implement to ensure that all devices are compliant before they are allowed on the network?
Cisco Identity Services Engine and AnyConnect Posture module
Cisco Stealthwatch and Cisco Identity Services Engine integration
Cisco ASA firewall with Dynamic Access Policies configured
Cisco Identity Services Engine with PxGrid services enabled
An engineer must force an endpoint to re-authenticate an already authenticated session without disrupting the endpoint to apply a new or updated policy from ISE. Which CoA type achieves this goal?
Port Bounce
CoA Terminate
CoA Reauth
CoA Session Query
Which two probes are configured to gather attributes of connected endpoints using Cisco Identity Services Engine? (Choose two)
RADIUS
TACACS+
DHCP
sFlow
SMTP
Question