Topic 1: Deployment
Which protocol establishes network redundancy in a switched Firepower device
deployment?
A.
STP
B.
HSRP
C.
GLBP
D.
VRRP
STP
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmcconfig-guide-v62/firepower_threat_defense_high_availability.html
Within an organization's high availability environment where both firewalls are passing traffic, traffic must be segmented based on which department it is destined for. Each department is situated on a different LAN. What must be configured to meet these requirements?
A.
span EtherChannel clustering
B.
redundant interfaces
C.
high availability active/standby firewalls
D.
multi-instance firewalls
multi-instance firewalls
Which policy rule is included in the deployment of a local DMZ during the initial deployment
of a Cisco NGFW through the Cisco FMC GUI?
A.
a default DMZ policy for which only a user can change the IP addresses.
B.
deny ip any
C.
no policy rule is included
D.
permit ip any
no policy rule is included
With Cisco Firepower Threat Defense software, which interface mode must be configured
to passively receive traffic that passes through the appliance?
A.
inline set
B.
passive
C.
routed
D.
inline tap
passive
An administrator is optimizing the Cisco FTD rules to improve network performance, and
wants to bypass inspection for certain traffic types to reduce the load on the Cisco FTD.
Which policy must be configured to accomplish this goal?
A.
prefilter
B.
intrusion
C.
identity
D.
URL filtering
prefilter
Page 5 out of 51 Pages |
Previous |