今天考的350-701, 用的是q225的题库。大概一半新题一半旧题。& v8 m8 p! ?: m4 g% Z
# B1 ^. f( p' w! P l' `) a
网上能找到些新题:
- n' y, K. O1 @+ L: ^1 p# [2 P1.organizationhas a Cisco ESA set up with policies and would like to customize the actionassigned for violations. The organization wants a copy of the message to bedelivered with a message added to flag it as a DLP violation.. {$ E0 E( P/ Y0 x; i* B, V
1 ?$ T$ O- Q8 L# Z0 B \
Which actions must be performed in order to provide this capability?
' l; O# r3 @: H4 N+ e' |! u - quarantine and alter the subject header with a DLP violation F& v+ R( w1 d) P$ H* v5 I y
- deliver and add disclaimer text0 h ?. f/ D% ]
- deliver and send copies to other recipients
% Q8 E: Q- ?0 ?7 ?3 R% Z' O' E" S - quarantine and send a DLP violation notification5 u% P2 K* U- W" \, h( q P
5 m i. M& ?: l6 L/ l
2. Anorganization recently installed a Cisco WSA and would like to take advantage ofthe AVC engine to allow the organization to create a policy to controlapplication specific activity.
$ G( E+ P+ }* b
# R1 U& k, {% L: eAfter enabling the AVC engine, what must be done to implement this?
7 M! O4 s$ N) K5 q# N' w4 r - Use security services to configure the traffic monitor./ @0 h v, C! V. `. F; M
- Use web security reporting to validate engine functionality.1 {+ }4 s2 l2 C: E" l/ ?
- Use URL categorization to prevent the application traffic.3 Q8 a+ y* t: G0 l8 ~" j
- Use an access policy group to configure application control settings.
$ B! }, l0 d6 h% V4 g: F+ b
) H! M& a0 Z q ~+ Q$ F! T0 Z3 p
3. Whichfactor must be considered when choosing the on-premise solution over thecloud-based one?
( Q: H! w" x5 r - With a cloud-based solution, the provider is responsible for the installation, but the customer is responsible for the maintenance of the product0 ]5 V, @! E/ }! X# Z) d% K$ a
- With an on-premise solution, the customer is responsible for the installation and maintenance of the product, whereas with a cloud-based solution, the provider responsiblefor it.
- p5 o. d6 D* t2 X: ~ - With an on-premise solution, the provider is responsible for the installation and maintenance of the product, whereas with a Cloud-based solution, the customer is responsible for it.* }: l4 t7 t# E, K1 k/ }, M8 b
- With an on-premise solution, the provider is responsible for the installation, but the customer is responsible for the maintenance of the product.
" g; [0 y# {, p
& v( p* ~3 w% L) B& ^
4. Whileusing Cisco Firepower's Security Intelligence policies, which two criteria isFirepower block based upon? (Choose two) - |8 b x7 G9 ]
- URLs
- C/ O9 Z1 q8 X" i - port numbers5 C6 R& F) Z8 t2 p
- protocol IDs
! w5 M9 r% ~* W" h. g. M1 f: ?% V5 Z - MAC addresses
: g/ T! T1 z* j9 q% H' ]4 T( `7 x - IP addresses' u% W+ h' W" E: ?5 g: |
( l; f+ R( U& k/ D2 j
5. Refer to theexhibit. Anadministrator is adding a new Cisco FTD device to their network and wants tomanage it with Cisco FMG. The Cisco FTD is not behind a NAT device.
; m" u* Z- [4 y* x
5 j% `8 ?) u8 Y7 p2 Y" KWhich command is needed to enable this on the Cisco FTD?
# @3 `& S( m; e - configure manager add DONTRESOLVE kregistration key>
% G+ ]( b% h4 H) ?9 _1 j+ y- n7 z# j& o3 K - configure manager add <FMC IP address> <registration key> 162 s$ b) L0 M8 t% m: h) q
- configure manager add DONTRESOLVE <registration key> FTD123
$ Y# l& m6 n% X+ L3 ] - configure manager add <FMC IP address> <registration key>
. P7 y% ~/ i$ i/ ]) P h- ?! B' j2 N) D/ O& r& x, O+ t9 ]
9 X& `6 `! z) H& s6 ^5 s' M |