Tested Material Used To 300-710 Test Engine Exam Questions in here [Apr-2024]
Penetration testers simulate 300-710 exam PDF
Cisco 300-710 certification exam is ideal for IT professionals who want to specialize in network security and seeking to earn a certification that demonstrates their expertise. 300-710 exam is also suitable for network security engineers, network administrators, and security analysts who want to enhance their knowledge and skills in securing networks with Cisco Firepower. Candidates who pass 300-710 exam will be able to design, implement, and manage advanced security solutions using Cisco Firepower technology.
NEW QUESTION # 26
Which firewall design will allow It to forward traffic at layers 2 and 3 for the same subnet?
- A. routed mode
- B. transparent mode
- C. Cisco Firepower Threat Defense mode
- D. Integrated routing and bridging
Answer: B
Explanation:
Explanation
Transparent mode is a firewall configuration in which the firewall acts as a "bump in the wire" or a "stealth firewall" and is not seen as a router hop to connected devices. In transparent mode, the firewall can forward traffic at both layer 2 and layer 3 for the same subnet, as it does not perform any address translation or routing.
The firewall inspects the traffic and applies security policies based on the source and destination IP addresses, ports, and protocols. Transparent mode is useful when you want to deploy a firewall without changing the existing network topology or addressing scheme1.
NEW QUESTION # 27
An engineer is troubleshooting application failures through a FTD deployment. While using the FMC CLI. it has been determined that the traffic in question is not matching the desired policy. What should be done to correct this?
- A. Use the system support firewall-engine-debug command to determine which rules the traffic matching and modify the rule accordingly
- B. Use the system support firewall-engine-dump-user-f density-data command to change the policy and allow the application through the firewall.
- C. Use the system support application-identification-debug command to determine which rules the traffic matching and modify the rule accordingly
- D. Use the system support network-options command to fine tune the policy.
Answer: A
NEW QUESTION # 28
Which two considerations must be made when deleting and re-adding devices while managing them via Cisco FMC? (Choose two.)
- A. Before re-adding the device in Cisco FMC, the manager must be added back.
- B. There is no option to re-apply NAT and VPN policies during registration available, so users need to re-apply the policies after registration is completed.
- C. An option to re-apply NAT and VPN policies during registration is available, so users do not need to re- apply the policies after registration is completed.
- D. Once a device has been deleted, it must be reconfigured before it is re-added to the Cisco FMC.
- E. The Cisco FMC web interface prompts users to re-apply access control policies.
Answer: B,E
Explanation:
Section: Management and Troubleshooting
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide- v60/Device_Management_Basics.html
NEW QUESTION # 29
The event dashboard within the Cisco FMC has been inundated with low priority intrusion drop events, which are overshadowing high priority events. An engineer has been tasked with reviewing the policies and reducing the low priority events. Which action should be configured to accomplish this task?
- A. drop connection
- B. generate events
- C. drop packet
- D. drop and generate
Answer: B
Explanation:
Section: Deployment
Explanation/Reference:
Reference" https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/working_with_intrusion_events.html
NEW QUESTION # 30
Remote users who connect via Cisco AnyConnect to the corporate network behind a Cisco FTD device report that they get no audio when calling between remote users using their softphones. These same users can call internal users on the corporate network without any issues. What is the cause of this issue?
- A. The Enable Spoke to Spoke Connectivity through Hub option is not selected on FTD.
- B. FTD has no NAT policy that allows outside to outside communication
- C. Split tunneling is enabled for the Remote Access VPN on FTD
- D. The hairpinning feature is not available on FTD.
Answer: D
NEW QUESTION # 31
Drag and drop the steps to restore an automatic device registration failure on the standby Cisco FMC from the left into the correct order on the right. Not all options are used.
Answer:
Explanation:
Explanation
Explanation
Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/firepower_management_center_high_availability.html#id_32288
NEW QUESTION # 32
An engineer has been tasked with using Cisco FMC to determine if files being sent through the network are malware. Which two configuration tasks must be performed to achieve this file lookup? (Choose two.)
- A. The Cisco FMC needs to connect to the Cisco AMP for Endpoints service.
- B. The Cisco FMC needs to include a file inspection policy for malware lookup.
- C. The Cisco FMC needs to connect to the Cisco ThreatGrid service directly for sandboxing.
- D. The Cisco FMC needs to connect with the FireAMP Cloud.
- E. The Cisco FMC needs to include a SSL decryption policy.
Answer: B,C
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Reference_a_wrapper_Chapter_topic_here.html#ID-2193-00000296
NEW QUESTION # 33
Which two types of objects are reusable and supported by Cisco FMC? (Choose two.)
- A. network-based objects that represent FQDN mappings and networks, port/protocol pairs, VXLAN tags, security zones and origin/destination country
- B. dynamic key mapping objects that help link HTTP and HTTPS GET requests to Layer 7 application protocols.
- C. network-based objects that represent IP address and networks, port/protocols pairs, VLAN tags, security zones, and origin/destination country
- D. reputation-based objects, such as URL categories
- E. reputation-based objects that represent Security Intelligence feeds and lists, application filters based on category and reputation, and file lists
Answer: C,E
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/reusable_objects.html#ID-2243-00000414
NEW QUESTION # 34
A security engineer is configuring a remote Cisco FTD that has limited resources and internet bandwidth.
Which malware action and protection option should be configured to reduce the requirement for cloud lookups?
- A. Block Malware action and local malware analysis
- B. Block Malware action and dynamic analysis
- C. Malware Cloud Lookup and dynamic analysis
- D. Block File action and local malware analysis
Answer: A
NEW QUESTION # 35
Which group within Cisco does the Threat Response team use for threat analysis and research?
- A. Cisco Deep Analytics
- B. Cisco Talos
- C. Cisco Network Response
- D. OpenDNS Group
Answer: B
Explanation:
Reference:
https://www.cisco.com/c/en/us/products/security/threat-response.html#~benefits
NEW QUESTION # 36
An engineer must define a URL object on Cisco FMC. What is the correct method to specify the URL without performing SSL inspection?
- A. Use Subject Common Name value.
- B. Include all URLs from CRL Distribution Points.
- C. Specify the protocol in the object.
- D. Specify all subdomains in the object group.
Answer: A
NEW QUESTION # 37
Which Cisco Firepower feature is used to reduce the number of events received in a period of time?
- A. thresholding
- B. suspending
- C. rate-limiting
- D. correlation
Answer: A
Explanation:
Section: Management and Troubleshooting
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/firesight/541/firepower-module-user-guide/asa- firepower-module-user-guide-v541/Intrusion-Global-Threshold.html
NEW QUESTION # 38
An engineer is investigating connectivity problems on Cisco Firepower for a specific SGT. Which command allows the engineer to capture real packets that pass through the firewall using an SGT of 64?
- A. capture CAP type inline-tag 64 match ip any any
- B. capture CAP match 64 type inline-tag ip any any
- C. capture CAP headers-only type inline-tag 64 match ip any any
- D. capture CAP buffer 64 match ip any any
Answer: A
NEW QUESTION # 39
What is a functionality of port objects in Cisco FMC?
- A. to mix transport protocols when setting both source and destination port conditions in a rule
- B. to represent all protocols in the same way
- C. to add any protocol other than TCP or UDP for source port conditions in access control rules.
- D. to represent protocols other than TCP, UDP, and ICMP
Answer: D
Explanation:
Section: Management and Troubleshooting
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/reusable_objects.html
NEW QUESTION # 40
What is the advantage of having Cisco Firepower devices send events to Cisco Threat Response via the security services exchange portal directly as opposed to using syslog?
- A. All types of Cisco Firepower devices are supported.
- B. Cisco Firepower devices do not need to be connected to the Internet.
- C. Supports all devices that are running supported versions of Cisco Firepower.
- D. An on-premises proxy server does not need to be set up and maintained.
Answer: D
NEW QUESTION # 41
What is a valid Cisco AMP file disposition?
- A. known-good
- B. pristine
- C. non-malicious
- D. malware
Answer: D
NEW QUESTION # 42
An organization has noticed that malware was downloaded from a website that does not currently have a known bad reputation. How will this issue be addresses globally in the quickest way possible and with the least amount of impact?
- A. Cisco Talos will automatically update the policies.
- B. by creating a URL object in the policy to block the website
- C. by Isolating the endpoint
- D. by denying outbound web access
Answer: A
NEW QUESTION # 43
Which protocol establishes network redundancy in a switched Firepower device deployment?
- A. VRRP
- B. STP
- C. HSRP
- D. GLBP
Answer: B
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/firepower_threat_defense_high_availability.html
NEW QUESTION # 44
An organization wants to secure traffic from their branch office to the headquarter building using Cisco Firepower devices, They want to ensure that their Cisco Firepower devices are not wasting resources on inspecting the VPN traffic. What must be done to meet these requirements?
- A. Enable a flexconfig policy to re-classify VPN traffic so that it no longer appears as interesting traffic
- B. Configure the Cisco Firepower devices to bypass the access control policies for VPN traffic.
- C. Configure the Cisco Firepower devices to ignore the VPN traffic using prefilter policies
- D. Tune the intrusion policies in order to allow the VPN traffic through without inspection
Answer: B
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/640/fdm/fptd-fdm-config-guide-640/fptd-fdm-ravpn.html
NEW QUESTION # 45
What is a functionality of port objects in Cisco FMC?
- A. to mix transport protocols when setting both source and destination port conditions in a rule
- B. to represent all protocols in the same way
- C. to add any protocol other than TCP or UDP for source port conditions in access control rules.
- D. to represent protocols other than TCP, UDP, and ICMP
Answer: D
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/reusable_objects.html
NEW QUESTION # 46
A Cisco FTD device is running in transparent firewall mode with a VTEP bridge group member ingress interface What must be considered by an engineer tasked with specifying a destination MAC address for a packet trace?
- A. The output format option for the packet logs unavailable
- B. The VLAN ID and destination MAC address are optional
- C. The destination MAC address is optional if a VLAN ID value is entered
- D. Only the UDP packet type is supported
Answer: C
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config-guide-v62/troubleshooting_the_system.html
NEW QUESTION # 47
A security engineer must integrate an external feed containing STIX/TAXII data with Cisco FMC. Which feature must be enabled on the Cisco FMC to support this connection?
- A. Cisco Success Network
- B. Threat Intelligence Director
- C. Cisco Secure Endpoint Integration
- D. Security Intelligence Feeds
Answer: B
NEW QUESTION # 48
Which two routing options are valid with Cisco Firepower Threat Defense? (Choose two.)
- A. BGPv4 with nonstop forwarding
- B. ECMP with up to three equal cost paths across a single interface
- C. ECMP with up to three equal cost paths across multiple interfaces
- D. BGPv6
- E. BGPv4 in transparent firewall mode
Answer: B,D
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/601/configuration/guide/fpmc-config- guide-v601/fpmc-config-guide-v60_chapter_01100011.html#ID-2101-0000000e
NEW QUESTION # 49
Which report template field format is available in Cisco FMC?
- A. box lever chart
- B. benchmark chart
- C. bar chart
- D. arrow chart
Answer: C
NEW QUESTION # 50
An engineer must configure high availability for the Cisco Firepower devices. The current network topology does not allow for two devices to pass traffic concurrently. How must the devices be implemented in this environment?
- A. in active/passive mode
- B. in cluster interface mode
- C. in active/active mode
- D. in a cluster span EtherChannel
Answer: A
NEW QUESTION # 51
......
Authentic Best resources for 300-710 Online Practice Exam: https://prepaway.testkingpass.com/300-710-testking-dumps.html