Big 11.11 Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Cisco Securing Networks with Cisco Firepower (300-710 SNCF) 300-710 Question # 73 Topic 8 Discussion

Cisco Securing Networks with Cisco Firepower (300-710 SNCF) 300-710 Question # 73 Topic 8 Discussion

300-710 Exam Topic 8 Question 73 Discussion:
Question #: 73
Topic #: 8

A VPN user is unable to conned lo web resources behind the Cisco FTD device terminating the connection. While troubleshooting, the network administrator determines that the DNS responses are not getting through the Cisco FTD What must be done to address this issue while still utilizing Snort IPS rules?


A.

Uncheck the "Drop when Inline" box in the intrusion policy to allow the traffic.


B.

Modify the Snort rules to allow legitimate DNS traffic to the VPN users.


C.

Disable the intrusion rule threshes to optimize the Snort processing.


D.

Decrypt the packet after the VPN flow so the DNS queries are not inspected


Get Premium 300-710 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.