Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Cisco CCNP Security 300-710 Questions and answers with CertsForce

Viewing page 3 out of 13 pages
Viewing questions 21-30 out of questions
Questions # 21:

A network administrator is seeing an unknown verdict for a file detected by Cisco FTD. Which malware policy configuration option must be selected in order to further analyse the file in the Talos cloud?

Options:

A.

Spero analysis


B.

Malware analysis


C.

Dynamic analysis


D.

Sandbox analysis


Expert Solution
Questions # 22:

A security engineer wants to add the Interface Traffic widget to the Summary Dashboard in Cisco Secure Firewall Management Center. The engineer clicks Add Widgets and enters edit mode. Which set of actions must the security engineer take to complete the configuration?

Options:

A.

Click All Categories, open the Analysis & Reporting tab, and then click the Add widget button.


B.

Click All Categories, open the New tab, and then click the Add widget button.


C.

Click All Categories, open the Operations tab, and then click the Add widget button.


D.

Click All Categories, open the Miscellaneous tab, and then click the Add widget button.


Expert Solution
Questions # 23:

How should a high-availability pair of Cisco Secure Firewall Threat Defense Virtual appliances be deployed to Cisco Secure Firewall Management Center?

Options:

A.

Configure high availability first, then add only the primary Cisco Secure Firewall Threat Defense Virtual appliance to Cisco Secure Firewall Management Center.


B.

Add the primary and secondary Cisco Secure Firewall Threat Defense Virtual appliances to Cisco Secure Firewall Management Center first, then configure high availability.


C.

Add the primary appliance to Cisco Secure Firewall Management Center first, then configure high availability.


D.

Configure high availability first, then add the primary and secondary appliances to Cisco Secure Firewall Management Center.


Expert Solution
Questions # 24:

Which interface type allows packets to be dropped?

Options:

A.

passive


B.

inline


C.

ERSPAN


D.

TAP


Expert Solution
Questions # 25:

A network engineer is extending a user segment through an FTD device for traffic inspection without creating another IP subnet How is this accomplished on an FTD device in routed mode?

Options:

A.

by leveraging the ARP to direct traffic through the firewall


B.

by assigning an inline set interface


C.

by using a BVI and create a BVI IP address in the same subnet as the user segment


D.

by bypassing protocol inspection by leveraging pre-filter rules


Expert Solution
Questions # 26:

Which connector is used to integrate Cisco ISE with Cisco FMC for Rapid Threat Containment?

Options:

A.

pxGrid


B.

FTD RTC


C.

FMC RTC


D.

ISEGrid


Expert Solution
Questions # 27:

Which two features of Cisco AMP for Endpoints allow for an uploaded file to be blocked? (Choose two.)

Options:

A.

application blocking


B.

simple custom detection


C.

file repository


D.

exclusions


E.

application whitelisting


Expert Solution
Questions # 28:

An engineer must change the mode of a Cisco Secure Firewall Threat Defense (FTD) firewall in the Cisco Secure Firewall Management Center (FMC) inventory. The engineer must take these actions:

• Register Secure FTD with Secure FMC.

• Change the firewall mode.

• Deregister the Secure FTD device from Secure FMC.

How must the engineer take FTD take the actions?

Options:

A.

Reload the Secure FTD device.


B.

Configure the management IP address.


C.

Access the Secure FTD CLI from the console port.


D.

Erase the Secure FTD configuration


Expert Solution
Questions # 29:

Which Cisco Firepower Threat Defense, which two interface settings are required when configuring a routed interface? (Choose two.)

Options:

A.

Redundant Interface


B.

EtherChannel


C.

Speed


D.

Media Type


E.

Duplex


Expert Solution
Questions # 30:

Remote users who connect via Cisco AnyConnect to the corporate network behind a Cisco FTD device report that they get no audio when calling between remote users using their softphones. These same users can call internal users on the corporate network without any issues. What is the cause of this issue?

Options:

A.

The hairpinning feature is not available on FTD.


B.

Split tunneling is enabled for the Remote Access VPN on FTD


C.

FTDhas no NAT policy that allows outside to outside communication


D.

The Enable Spoke to Spoke Connectivity through Hub option is not selected on FTD.


Expert Solution
Viewing page 3 out of 13 pages
Viewing questions 21-30 out of questions