Independence Day Deal! Unlock 25% OFF Today – Limited-Time Offer - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco Exam 300-710 Topic 6 Question 72 Discussion

Actual exam question for Cisco's 300-710 exam
Question #: 72
Topic #: 6
[All 300-710 Questions]

A network engineer must configure IPS mode on a Cisco Secure firewall Threat Defense device to inspect traffic and act as an IDS. The engineer already configured the passive-interface on the secure firewall threat Defence device and SPAN on the switch. What must be configured next by the engineer?

Show Suggested Answer Hide Answer
Suggested Answer: C

https://www.cisco.com/c/en/us/td/docs/security/firepower/640/configuration/guide/fpmc-config-guide-v64/system_configuration.html#ID-2241-00000551

''You cannot send backups to one remote system and reports to another, but you can choose to send either to a remote system and store the other on the Firepower Management Center.''


Contribute your Thoughts:

Amalia
2 months ago
I hope the engineer doesn't forget to order some extra coffee before tackling this config. It's gonna be a long night!
upvoted 0 times
Victor
10 days ago
C: DHCP on the switch
upvoted 0 times
...
Alishia
18 days ago
A: That's right, setting up the intrusion policy is crucial for IPS mode.
upvoted 0 times
...
Octavio
20 days ago
B: active Interface on the Secure Firewall threat Defense device
upvoted 0 times
...
Bernardo
23 days ago
A: intrusion policy on the Secure Firewall Threat Defense device
upvoted 0 times
...
...
Twana
2 months ago
DHCP on the switch? Really? I don't think that's related to setting up the IPS at all. Let's focus on the actual networking configuration here.
upvoted 0 times
Jame
2 days ago
D) active SPAN port on the switch
upvoted 0 times
...
Abel
5 days ago
B) active Interface on me Secure Firewall threat Defense device
upvoted 0 times
...
Frederick
6 days ago
A) intrusion policy on the Secure Firewall Threat Defense device
upvoted 0 times
...
Britt
8 days ago
Yes, setting up the intrusion policy on the Secure Firewall Threat Defense device is the next step to configure IPS mode.
upvoted 0 times
...
Desirae
18 days ago
D) active SPAN port on the switch
upvoted 0 times
...
Jess
19 days ago
A: Yes, setting up the intrusion policy is the next step to configure IPS mode on the firewall.
upvoted 0 times
...
Johna
21 days ago
B) active Interface on me Secure Firewall threat Defense device
upvoted 0 times
...
Huey
29 days ago
B: active Interface on the Secure Firewall threat Defense device
upvoted 0 times
...
Carmela
1 months ago
A: intrusion policy on the Secure Firewall Threat Defense device
upvoted 0 times
...
Micheline
1 months ago
A) intrusion policy on the Secure Firewall Threat Defense device
upvoted 0 times
...
...
Irma
2 months ago
I'm more worried about configuring the SPAN port correctly. Without that, the traffic won't even reach the firewall for inspection.
upvoted 0 times
Alaine
1 months ago
B) active Interface on me Secure Firewall threat Defense device
upvoted 0 times
...
Virgilio
2 months ago
A) intrusion policy on the Secure Firewall Threat Defense device
upvoted 0 times
...
...
Hyman
2 months ago
I agree with Gussie. The intrusion policy is crucial for the IPS to start inspecting and taking action on the traffic.
upvoted 0 times
Eugene
24 days ago
D) active SPAN port on the switch
upvoted 0 times
...
Lashaunda
1 months ago
A) intrusion policy on the Secure Firewall Threat Defense device
upvoted 0 times
...
Glenn
1 months ago
B) active Interface on me Secure Firewall threat Defense device
upvoted 0 times
...
Dominque
1 months ago
A) intrusion policy on the Secure Firewall Threat Defense device
upvoted 0 times
...
...
Tracie
2 months ago
I believe active Interface on the Secure Firewall Threat Defense device should be configured next for IPS mode.
upvoted 0 times
...
Gussie
2 months ago
Definitely option A, intrusion policy. That's the key step to actually enable the IPS functionality on the Secure Firewall Threat Defense device.
upvoted 0 times
...
Emily
3 months ago
I agree with Domonique, configuring intrusion policy is necessary for IPS mode.
upvoted 0 times
...
Domonique
3 months ago
I think the next step is to configure intrusion policy on the Secure Firewall Threat Defense device.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77