Topic 1: Deployment
What are two application layer preprocessors? (Choose two.)
A.
CIFS
B.
IMAP
C.
SSL
D.
DNP3
E.
ICMP
IMAP
SSL
https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmcconfig-
guide-v60/Application_Layer_Preprocessors.html
An organization is migrating their Cisco ASA devices running in multicontext mode to Cisco
FTD devices. Which action must be taken to ensure that each context on the Cisco ASA is logically separated in the Cisco FTD devices?
A.
Add a native instance to distribute traffic to each Cisco FTD context
B.
Add the Cisco FTD device to the Cisco ASA port channels
C.
Configure a container instance in the Cisco FTD for each context in the Cisco ASA
D.
Configure the Cisco FTD to use port channels spanning multiple networks
Configure a container instance in the Cisco FTD for each context in the Cisco ASA
What are the minimum requirements to deploy a managed device inline?
A.
inline interfaces, security zones, MTU, and mode
B.
passive interface, MTU, and mode
C.
inline interfaces, MTU, and mode
D.
passive interface, security zone, MTU, and mode
inline interfaces, MTU, and mode
Which two conditions must be met to enable high availability between two Cisco FTD
devices? (Choose two.)
A.
same flash memory size
B.
same NTP configuration
C.
same DHCP/PPoE configuration
D.
same host name
E.
same number of interfaces
same NTP configuration
same number of interfaces
Conditions
In order to create an HA between 2 FTD devices, these conditions must be met:
Same model
Same version (this applies to FXOS and to FTD - (major (first number), minor (second
number), and maintenance (third number) must be equal))
Same number of interfaces
Same type of interfaces
Both devices as part of same group/domain in FMC
Have identical Network Time Protocol (NTP) configuration
Be fully deployed on the FMC without uncommitted changes
Be in the same firewall mode: routed or transparent.
Note that this must be checked on both FTD devices and FMC GUI since there have been
cases where the FTDs had the same mode, but FMC does not reflect this.
Does not have DHCP/Point-to-Point Protocol over Ethernet (PPPoE) configured in any of
the interface
Different hostname (Fully Qualified Domain Name (FQDN)) for both chassis. In order to
check the chassis hostname navigate to FTD CLI and run this command
Which two deployment types support high availability? (Choose two.)
A.
transparent
B.
routed
C.
clustered
D.
intra-chassis multi-instance
E.
virtual appliance in public cloud
transparent
routed
Page 3 out of 51 Pages |
Previous |