Month End Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Cisco CCNP Security 300-710 Questions and answers with CertsForce

Viewing page 8 out of 12 pages
Viewing questions 71-80 out of questions
Questions # 71:

Which Cisco Firepower feature is used to reduce the number of events received in a period of time?

Options:

A.

rate-limiting


B.

suspending


C.

correlation


D.

thresholding


Expert Solution
Questions # 72:

A security engineer must integrate an external feed containing STIX/TAXII data with Cisco FMC. Which feature must be enabled on the Cisco FMC to support this connection?

Options:

A.

Cisco Success Network


B.

Cisco Secure Endpoint Integration


C.

Threat Intelligence Director


D.

Security Intelligence Feeds


Expert Solution
Questions # 73:

A VPN user is unable to conned lo web resources behind the Cisco FTD device terminating the connection. While troubleshooting, the network administrator determines that the DNS responses are not getting through the Cisco FTD What must be done to address this issue while still utilizing Snort IPS rules?

Options:

A.

Uncheck the "Drop when Inline" box in the intrusion policy to allow the traffic.


B.

Modify the Snort rules to allow legitimate DNS traffic to the VPN users.


C.

Disable the intrusion rule threshes to optimize the Snort processing.


D.

Decrypt the packet after the VPN flow so the DNS queries are not inspected


Expert Solution
Questions # 74:

Which license type is required on Cisco ISE to integrate with Cisco FMC pxGrid?

Options:

A.

mobility


B.

plus


C.

base


D.

apex


Expert Solution
Questions # 75:

administrator is configuring SNORT inspection policies and is seeing failed deployment messages in Cisco FMC . What information should the administrator generate for Cisco TAC to help troubleshoot?

Options:

A.

A Troubleshoot" file for the device in question.


B.

A "show tech" file for the device in question


C.

A "show tech" for the Cisco FMC.


D.

A "troubleshoot" file for the Cisco FMC


Expert Solution
Questions # 76:

How should a high-availability pair of Cisco Secure Firewall Threat Defense Virtual appliances be deployed to Cisco Secure Firewall Management Center?

Options:

A.

Configure high availability first, then add only the primary Cisco Secure Firewall Threat Defense Virtual appliance to Cisco Secure Firewall Management Center.


B.

Add the primary and secondary Cisco Secure Firewall Threat Defense Virtual appliances to Cisco Secure Firewall Management Center first, then configure high availability.


C.

Add the primary appliance to Cisco Secure Firewall Management Center first, then configure high availability.


D.

Configure high availability first, then add the primary and secondary appliances to Cisco Secure Firewall Management Center.


Expert Solution
Questions # 77:

A network administrator notices that inspection has been interrupted on all non-managed interfaces of a device. What is the cause of this?

Options:

A.

The value of the highest MTU assigned to any non-management interface was changed.


B.

The value of the highest MSS assigned to any non-management interface was changed.


C.

A passive interface was associated with a security zone.


D.

Multiple inline interface pairs were added to the same inline interface.


Expert Solution
Questions # 78:

Question # 78

Refertothe exhibit. An engineer is analyzing a Network Risk Report from Cisco FMC. Which application must the engineer take immediate action against to prevent unauthorized network use?

Options:

A.

Kerberos


B.

YouTube


C.

Chrome


D.

TOR


Expert Solution
Questions # 79:

An administrator is adding a QoS policy to a Cisco FTD deployment. When a new rule is added to the policy and QoS is applied on 'Interfaces in Destination Interface Objects", no interface objects are available What is the problem?

Options:

A.

The FTD is out of available resources lor use. so QoS cannot be added


B.

The network segments that the interfaces are on do not have contiguous IP space


C.

QoS is available only on routed interfaces, and this device is in transparent mode.


D.

A conflict exists between the destination interface types that is preventing QoS from being added


Expert Solution
Questions # 80:

An engineer is configuring a new dashboard within Cisco Secure Firewall Management Center and is having trouble implementing a custom widget. When a custom analysis widget is configured which option is mandatory for the system to display the information?

Options:

A.

table


B.

filter


C.

title


D.

results


Expert Solution
Viewing page 8 out of 12 pages
Viewing questions 71-80 out of questions