List of questions
Related questions
Question 176 - 300-710 discussion
An engineer is troubleshooting connectivity to the DNS servers from hosts behind a new Cisco FTD device. The hosts cannot send DNS queries to servers in the DMZ. Which action should the engineer take to troubleshoot this issue using the real DNS packets?
Use the Connection Events dashboard to check the block reason and adjust the inspection policy as needed.
Use the packet capture tool to check where the traffic is being blocked and adjust the access control or intrusion policy as needed.
Use the packet tracer tool to determine at which hop the packet is being dropped.
Use the show blocks command in the Threat Defense CLI tool and create a policy to allow the blocked traffic.
0 comments
Leave a comment first