Practice Free 300-710 Exam Online Questions
An engineer must investigate a connectivity issue from an endpoint behind a Cisco FTD device and a public DNS server. The endpoint cannot perform name resolution queries.
Which action must the engineer perform to troubleshoot the issue by simulating real DNS traffic on the Cisco FTD while verifying the Snarl verdict?
- A . Perform a Snort engine capture using tcpdump from the FTD CLI.
- B . Use the Capture w/Trace wizard in Cisco FMC.
- C . Create a Custom Workflow in Cisco FMC.
- D . Run me system support firewall-engine-debug command from me FTD CLI.
A network administrator is configuring an FTD in transparent mode. A bridge group is set up and an access policy has been set up to allow all IP traffic. Traffic is not passing through the FTD.
What additional configuration is needed?
- A . The security levels of the interfaces must be set.
- B . A default route must be added to the FTD.
- C . An IP address must be assigned to the BVI.
- D . A mac-access control list must be added to allow all MAC addresses.
A security engineer is deploying a pair of primary and secondary Cisco FMC devices. The secondary must also receive updates from Cisco Talos.
Which action achieves this goal?
- A . Force failover for the secondary Cisco FMC to synchronize the rule updates from the primary.
- B . Configure the secondary Cisco FMC so that it receives updates from Cisco Talos.
- C . Manually import rule updates onto the secondary Cisco FMC device.
- D . Configure the primary Cisco FMC so that the rules are updated.
An engineer must configure high availability for the Cisco Firepower devices. The current network topology does not allow for two devices to pass traffic concurrently.
How must the devices be implemented in this environment?
- A . in active/active mode
- B . in a cluster span EtherChannel
- C . in active/passive mode
- D . in cluster interface mode
Which two conditions are necessary for high availability to function between two Cisco FTD devices? (Choose two.)
- A . The units must be the same version
- B . Both devices can be part of a different group that must be in the same domain when configured within the FMC.
- C . The units must be different models if they are part of the same series.
- D . The units must be configured only for firewall routed mode.
- E . The units must be the same model.