ExamGecko
Question list
Search
Search

Question 622 - 350-701 discussion

Report
Export

A network administrator is setting up Cisco FMC to send logs to Cisco Security Analytics and Logging (SaaS). The network administrator is anticipating a high volume of logging events from the firewalls and wants lo limit the strain on firewall resources. Which method must the administrator use to send these logs to Cisco Security Analytics and Logging?

A.

SFTP using the FMCCLI

Answers
A.

SFTP using the FMCCLI

B.

syslog using the Secure Event Connector

Answers
B.

syslog using the Secure Event Connector

C.

direct connection using SNMP traps

Answers
C.

direct connection using SNMP traps

D.

HTTP POST using the Security Analytics FMC plugin

Answers
D.

HTTP POST using the Security Analytics FMC plugin

Suggested answer: B

Explanation:

The Secure Event Connector is a component of the Security Analytics and Logging (SaaS) solution that enables the FMC to send logs to the cloud-based service. The Secure Event Connector uses syslog to forward events from the FMC and the managed devices to the cloud. This method reduces the load on the firewall resources, as the events are sent in batches and compressed before transmission. The Secure Event Connector also provides encryption, authentication, and reliability for the log data.The other methods are not supported by the Security Analytics and Logging (SaaS) solution12Reference:=1: Cisco Security Analytics and Logging (On Premises)

asked 10/10/2024
Suraj Porwal
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first