Go Back on 300-710 Exam
Available in 1, 3, 6 and 12 Months Free Updates Plans
PDF: $15 $60

Test Engine: $20 $80

PDF + Engine: $25 $99

300-710 Practice Test


Page 9 out of 51 Pages

Topic 3: Management and Troubleshooting

Which two packet captures does the FTD LINA engine support? (Choose two.)


A.

Layer 7 network ID


B.

source IP


C.

application ID


D.

dynamic firewall importing


E.

protocol





B.
  

source IP



E.
  

protocol



Which two statements about bridge-group interfaces in Cisco FTD are true? (Choose two.) 


A.

The BVI IP address must be in a separate subnet from the connected network.





B.

Bridge groups are supported in both transparent and routed firewall modes.


C.

Bridge groups are supported only in transparent firewall mode.


D.

Bidirectional Forwarding Detection echo packets are allowed through the FTD when using bridge-group members.


E.

Each directly connected network must be on the same subnet. 





B.
  

Bridge groups are supported in both transparent and routed firewall modes.



E.
  

Each directly connected network must be on the same subnet. 



https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmcconfig- guide-v62/transparent_or_routed_firewall_mode_for_firepower_threat_defense.html 

Which CLI command is used to control special handling of ClientHello messages?


A.

system support ssl-client-hello-tuning


B.

system support ssl-client-hello-display


C.

system support ssl-client-hello-force-reset


D.

system support ssl-client-hello-enabled





A.
  

system support ssl-client-hello-tuning



Which Cisco Firepower feature is used to reduce the number of events received in a period
of time?


A.

rate-limiting


B.

suspending


C.

correlation


D.

thresholding





D.
  

thresholding



A company has many Cisco FTD devices managed by a Cisco FMC. The security model
requires that access control rule logs be collected for analysis. The security engineer is
concerned that the Cisco FMC will not be able to process the volume of logging that will be
generated. Which configuration addresses this concern? 


A.

Send Cisco FTD connection events and security events directly to SIEM system forstorage and analysis.


 


B.

Send Cisco FTD connection events and security events to a cluster of Cisco FMC devices for storage and analysis.


C.

Send Cisco FTD connection events and security events to Cisco FMC and configure it to forward logs to SIEM for storage and analysis.


D.

Send Cisco FTD connection events directly to a SIEM system and forward security events from Cisco FMC to the SIEM system for storage and analysis.





C.
  

Send Cisco FTD connection events and security events to Cisco FMC and configure it to forward logs to SIEM for storage and analysis.




Page 9 out of 51 Pages
Previous