NEW 2021 Certification Sample Questions 300-710 Dumps & Practice Exam [Q27-Q46]

Share

NEW 2021 Certification Sample Questions 300-710 Dumps & Practice Exam

300-710 Deluxe Study Guide with Online Test Engine


Skills Measured by 300-710

To get the passing score in the official test, the candidates must address the following skills as described below:

  • Deployment — for the initial part, students must be able to incorporate NGFW modes such as transparent & routed ones, deploy NGIPS such as Inline & Passive, incorporate high availability facilities like standby/active failover, link redundancy, and multi-instance, and finally, explain IRB settings.
  • Management & Troubleshooting — here, candidates must show they have the ability to adjust dashboards & analytics in Firepower Management Center, troubleshoot problems with the help of GUI & FMC CLI, anticipate risks, create reports, and lastly, use packet capture methods to carry out troubleshooting.
  • Integration — in the final domain, students must demonstrate their ability to deploy Threat Intelligence Director when investigating security intelligence feeds from third parties, use Firepower Management Center to tweak Cisco AMP for endpoints and networks, explain the Cisco Identify Services Engine (ISE) & the Cisco FMC PxGrid Integration, carry out security checks with the help of the Cisco Threat Response, and finally, detail the use of the Rapid Threat Containment (RTC) feature found inside FMC.
  • Configuration — under this exam category, examinees will have to tweak the system configurations of Cisco Firepower Management Center and set up policies such as SSL, intrusion, malware & file, access control, identity, DNS, and pre-filter necessary for the Cisco Firepower Management Center. What is more, applicants will have to be aware of how to use that Center to adjust numerous aspects such as correlation, network discovery, actions, application detectors & Open AppID, intrusion rules & objects, and tweak various devices including QoS, NAT, Platform Settings, VPN, Certificates, and Device Management.

 

NEW QUESTION 27
Which CLI command is used to control special handling of ClientHello messages?

  • A. system support ssl-client-hello-tuning
  • B. system support ssl-client-hello-display
  • C. system support ssl-client-hello-force-reset
  • D. system support ssl-client-hello-enabled

Answer: D

Explanation:
Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/610/configuration/guide/fpmc-config-guide-v61/firepower_command_line_reference.html

 

NEW QUESTION 28
When creating a report template, how can the results be limited to show only the activity of a specific subnet?

  • A. Select IP Address as the X-Axis in each section of the report.
  • B. Add a Table View section to the report with the Search field defined as the network in CIDR format.
  • C. Add an Input Parameter in the Advanced Settings of the report, and set the type to Network/IP.
  • D. Create a custom search in Firepower Management Center and select it in each section of the report.

Answer: C

 

NEW QUESTION 29
A network engineer is configuring URL Filtering on Firepower Threat Defense. Which two port requirements on the Firepower Management Center must be validated to allow communication with the cloud service? (Choose two.)

  • A. outbound port TCP/80
  • B. inbound port TCP/443
  • C. outbound port TCP/8080
  • D. outbound port TCP/443
  • E. inbound port TCP/80

Answer: A,D

Explanation:
Section: Management and Troubleshooting
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide- v60/Security__Internet_Access__and_Communication_Ports.html

 

NEW QUESTION 30
Which Cisco Firepower rule action displays an HTTP warning page?

  • A. Interactive Block
  • B. Monitor
  • C. Allow with Warning
  • D. Block

Answer: A

Explanation:
Section: Configuration
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/firesight/541/user-guide/FireSIGHT-System- UserGuide-v5401/AC-Rules-Tuning-Overview.html#76698

 

NEW QUESTION 31
Which two packet captures does the FTD LINA engine support? (Choose two.)

  • A. dynamic firewall importing
  • B. protocol
  • C. application ID
  • D. source IP
  • E. Layer 7 network ID

Answer: B,D

Explanation:
Reference: https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/212474-working-with-firepower-threat-defense-f.html

 

NEW QUESTION 32
What is a functionality of port objects in Cisco FMC?

  • A. to represent all protocols in the same way
  • B. to represent protocols other than TCP, UDP, and ICMP
  • C. to mix transport protocols when setting both source and destination port conditions in a rule
  • D. to add any protocol other than TCP or UDP for source port conditions in access control rules.

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/reusable_objects.html

 

NEW QUESTION 33
An engineer is setting up a new Firepower deployment and is looking at the default FMC policies to start the implementation. During the initial trial phase, the organization wants to test some common Snort rules while still allowing the majority of network traffic to pass. Which default policy should be used?

  • A. Security Over Connectivity
  • B. Connectivity Over Security
  • C. Balanced Security and Connectivity
  • D. Maximum Detection

Answer: B

Explanation:
Section: Deployment

 

NEW QUESTION 34
Which two actions can be used in an access control policy rule? (Choose two.)

  • A. Monitor
  • B. Block ALL
  • C. Block with Reset
  • D. Discover
  • E. Analyze

Answer: A,C

 

NEW QUESTION 35
What is a characteristic of bridge groups on a Cisco FTD?

  • A. In routed firewall mode, routing between bridge groups must pass through a routed interface.
  • B. Routing between bridge groups is achieved only with a router-on-a-stick configuration on a connected router
  • C. In transparent firewall mode, routing between bridge groups is supported
  • D. In routed firewall mode, routing between bridge groups is supported.

Answer: D

 

NEW QUESTION 36
Which CLI command is used to control special handling of ClientHello messages?

  • A. system support ssl-client-hello-reset
  • B. system support ssl-client-hello-tuning
  • C. system support ssl-client-hello-display
  • D. system support ssl-client-hello-force-reset

Answer: B

Explanation:
Section: Management and Troubleshooting
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/610/configuration/guide/fpmc-config- guide-v61/firepower_command_line_reference.html

 

NEW QUESTION 37
Refer to the exhibit.

And engineer is analyzing the Attacks Risk Report and finds that there are over 300 instances of new operating systems being seen on the network How is the Firepower configuration updated to protect these new operating systems?

  • A. The administrator requests a Remediation Recommendation Report from Cisco Firepower
  • B. Cisco Firepower gives recommendations to update the policies.
  • C. Cisco Firepower automatically updates the policies.
  • D. The administrator manually updates the policies.
    Ref: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Tailoring_Intrusion_Protection_to_Your_Network_Assets.html

Answer: B

 

NEW QUESTION 38
A network administrator is configuring Snort inspection policies and is seeing failed deployment messages in Cisco FMC. What information should the administrator generate for Cisco TAC to help troubleshoot?

  • A. A "troubleshoot" file for the Cisco FMC.
  • B. A "show tech" file for the device in question.
  • C. A "troubleshoot" file for the device in question.
  • D. A "show tech" for the Cisco FMC.

Answer: C

 

NEW QUESTION 39
What is the difference between inline and inline tap on Cisco Firepower?

  • A. Inline mode can drop malicious traffic.
  • B. Inline tap mode does full packet capture.
  • C. Inline tap mode can send a copy of the traffic to another device.
  • D. Inline mode cannot do SSL decryption.

Answer: C

 

NEW QUESTION 40
Drag and drop the steps to restore an automatic device registration failure on the standby Cisco FMC from the left into the correct order on the right. Not all options are used.

Answer:

Explanation:

Explanation

Explanation
Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/firepower_management_center_high_availability.html#id_32288

 

NEW QUESTION 41
Refer to the exhibit.

An organization has an access control rule with the intention of sending all social media traffic for inspection After using the rule for some time, the administrator notices that the traffic is not being inspected, but is being automatically allowed What must be done to address this issue?

  • A. Modify the selected application within the rule
  • B. Change the intrusion policy to connectivity over security.
  • C. Modify the rule action from trust to allow
  • D. Add the social network URLs to the block list

Answer: A

 

NEW QUESTION 42
Which two actions can be used in an access control policy rule? (Choose two.)

  • A. Monitor
  • B. Block ALL
  • C. Block with Reset
  • D. Discover
  • E. Analyze

Answer: A,C

Explanation:
Section: Configuration
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/firesight/541/firepower-module-user-guide/asa- firepower-module-user-guide-v541/AC-Rules-Tuning-Overview.html#71854

 

NEW QUESTION 43
A network engineer is logged into the Cisco AMP for Endpoints console and sees a malicious verdict for an identified SHA-256 hash. Which configuration is needed to mitigate this threat?

  • A. Enable a personal firewall in the infected endpoint.
  • B. Use regular expressions to block the malicious file.
  • C. Add the hash from the infected endpoint to the network block list.
  • D. Add the hash to the simple custom deletion list.

Answer: D

 

NEW QUESTION 44
An engineer is troubleshooting a device that cannot connect to a web server. The connection is initiated from the Cisco FTD inside interface and attempting to reach 10.0.1.100 over the non-standard port of 9443 The host the engineer is attempting the connection from is at the IP address of 10.20.10.20. In order to determine what is happening to the packets on the network, the engineer decides to use the FTD packet capture tool Which capture configuration should be used to gather the information needed to troubleshoot this issue?
A)

B)

C)

D)

  • A. Option D
  • B. Option A
  • C. Option C
  • D. Option B

Answer: D

 

NEW QUESTION 45
A network engineer is configuring URL Filtering on Firepower Threat Defense. Which two port requirements on the Firepower Management Center must be validated to allow communication with the cloud service? (Choose two.)

  • A. outbound port TCP/80
  • B. inbound port TCP/443
  • C. outbound port TCP/8080
  • D. outbound port TCP/443
  • E. inbound port TCP/80

Answer: A,D

 

NEW QUESTION 46
......

300-710 dumps review - Professional Quiz Study Materials: https://www.prep4pass.com/300-710_exam-braindumps.html

300-710 Test Prep Training Practice Exam Questions Practice Tests: https://drive.google.com/open?id=1wPYy5hxCYJyuFIhnmAzFB9KQfKT_Aypn