ExamGecko
Question list
Search
Search

Related questions











Question 291 - 300-710 discussion

Report
Export

A cisco Secure firewall Threat Defence device is configured in inline IPS mode to inspect all traffic that passes through the interfaces in the inline set. Which setting in the inline set configuration must be connected to allow traffic to pass through uninterrupted when VDB updates are being applied?

A.

Propagate Link State

Answers
A.

Propagate Link State

B.

Short Fall Open

Answers
B.

Short Fall Open

C.

Strict TCP Enforcement

Answers
C.

Strict TCP Enforcement

D.

Tap Mode

Answers
D.

Tap Mode

Suggested answer: B

Explanation:

In inline IPS mode, to ensure that traffic passes through uninterrupted when VDB (Vulnerability Database) updates are being applied, the 'Short Fall Open' setting must be configured. This setting allows traffic to continue to flow through the firewall even if there are issues with the inspection process, such as during updates or if the inspection engine fails.

Steps:

In FMC, navigate to the inline set configuration.

Enable the 'Short Fall Open' option.

Deploy the configuration to the FTD device.

This ensures that network traffic is not disrupted during updates or other issues with the inspection process.

asked 07/10/2024
Leila Bekirova
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first