今天考的350-701, 用的是q225的题库。大概一半新题一半旧题。 Q* m3 b& L: e3 v: A3 x8 H' g: X6 V. l
0 M. R8 r. D4 \/ W" c
网上能找到些新题:
( g( u' y8 A0 B! k- R0 f1.organizationhas a Cisco ESA set up with policies and would like to customize the actionassigned for violations. The organization wants a copy of the message to bedelivered with a message added to flag it as a DLP violation.0 s2 c. A( K8 j' v
0 J8 L" _) G& [" q7 l5 B7 IWhich actions must be performed in order to provide this capability?
' z" X$ F1 Q4 t+ z) U% F1 B1 W - quarantine and alter the subject header with a DLP violation
0 w8 I) O- x1 ~4 E - deliver and add disclaimer text
+ z6 D( d9 u% @2 N/ Z! H/ D. y! G - deliver and send copies to other recipients8 B+ C N4 V4 `
- quarantine and send a DLP violation notification
! s' ~7 }" F1 C2 X
5 ]* {1 }$ x! s0 ? z' c; u
2. Anorganization recently installed a Cisco WSA and would like to take advantage ofthe AVC engine to allow the organization to create a policy to controlapplication specific activity.2 P; U) j5 }) K1 ]- {* o
. n, i d: f* d+ S i# WAfter enabling the AVC engine, what must be done to implement this?
) m4 L9 s& H. Q5 G' a6 ] - Use security services to configure the traffic monitor.3 C2 r) @) n3 B! o; c
- Use web security reporting to validate engine functionality.' M" Z3 N5 i7 R8 k9 z
- Use URL categorization to prevent the application traffic.
2 D% M4 y5 O( w3 @4 s$ Q% J - Use an access policy group to configure application control settings.2 _7 M4 l) Z( h3 `9 V0 s0 U) s! L
; t1 `+ ^3 Y9 e9 S* k' n" t% C2 O) j( a
3. Whichfactor must be considered when choosing the on-premise solution over thecloud-based one? % a$ l% J% P- q/ ?+ D7 M
- With a cloud-based solution, the provider is responsible for the installation, but the customer is responsible for the maintenance of the product8 R9 B% ?4 ~6 P
- With an on-premise solution, the customer is responsible for the installation and maintenance of the product, whereas with a cloud-based solution, the provider responsiblefor it.
/ V8 ?4 b) w8 h) Q7 I2 E# T& G0 w - With an on-premise solution, the provider is responsible for the installation and maintenance of the product, whereas with a Cloud-based solution, the customer is responsible for it.
5 x, |8 [2 s" `4 R. l7 q - With an on-premise solution, the provider is responsible for the installation, but the customer is responsible for the maintenance of the product.
, i5 c% Y- o- W$ E! X1 Y , R! v& W4 A( g: e$ a, e& w- M
4. Whileusing Cisco Firepower's Security Intelligence policies, which two criteria isFirepower block based upon? (Choose two)
9 c9 B. X+ j) a# B: R3 f; ` - URLs7 U3 }3 @7 V3 k( j* ]! A
- port numbers! b7 t" p3 O) c# y8 X3 g7 N
- protocol IDs" A$ g# S/ ?# n
- MAC addresses
0 k- i5 b) y0 x- x& a; W - IP addresses9 X7 ]. P. e. \5 w* ^! {9 n
# `! g) ], o& ?* \- I4 W
5. Refer to theexhibit. Anadministrator is adding a new Cisco FTD device to their network and wants tomanage it with Cisco FMG. The Cisco FTD is not behind a NAT device.$ I/ R# t! e; G3 i; Y
8 D% A1 E6 [% E, a& ?5 y! v
Which command is needed to enable this on the Cisco FTD?
9 r. D8 N% ` h4 ~4 x- n - configure manager add DONTRESOLVE kregistration key>
6 f2 C/ ~- F2 ]+ O - configure manager add <FMC IP address> <registration key> 16
! g9 z2 X& m2 a5 q l& |( R7 c - configure manager add DONTRESOLVE <registration key> FTD123
3 S: W: O% O+ z, g5 \& X - configure manager add <FMC IP address> <registration key>
5 h/ d& d R$ `' Q; u4 n
1 z+ v" x$ N6 R8 v# |+ C- p& ?! I* B3 e+ d+ b
|