Go Back on 300-710 Exam
Available in 1, 3, 6 and 12 Months Free Updates Plans
PDF: $15 $60

Test Engine: $20 $80

PDF + Engine: $25 $99

300-710 Practice Test


Page 5 out of 51 Pages

Topic 1: Deployment

Which protocol establishes network redundancy in a switched Firepower device
deployment?


A.

STP


B.

HSRP


C.

GLBP


D.

VRRP





A.
  

STP



Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmcconfig-guide-v62/firepower_threat_defense_high_availability.html

Within an organization's high availability environment where both firewalls are passing traffic, traffic must be segmented based on which department it is destined for. Each department is situated on a different LAN. What must be configured to meet these requirements?


A.

span EtherChannel clustering


B.

redundant interfaces


C.

high availability active/standby firewalls


D.

multi-instance firewalls





D.
  

multi-instance firewalls



Which policy rule is included in the deployment of a local DMZ during the initial deployment
of a Cisco NGFW through the Cisco FMC GUI?


A.

a default DMZ policy for which only a user can change the IP addresses.


B.

deny ip any


C.

no policy rule is included


D.

permit ip any





C.
  

no policy rule is included



With Cisco Firepower Threat Defense software, which interface mode must be configured
to passively receive traffic that passes through the appliance?


A.

inline set


B.

passive


C.

routed


D.

inline tap





B.
  

passive



An administrator is optimizing the Cisco FTD rules to improve network performance, and
wants to bypass inspection for certain traffic types to reduce the load on the Cisco FTD.
Which policy must be configured to accomplish this goal?


A.

prefilter


B.

intrusion


C.

identity


D.

URL filtering





A.
  

prefilter




Page 5 out of 51 Pages
Previous