Question 1
Q1Multiple answersWhich three operating systems are supported with Cisco AMP for Endpoints? (Choose three.) A.WindowsB.AWSC.AndroidD.Cisco IOSE.OS XF.ChromeOS
Show answer & explanation
Correct answers: A, C, E
Create a free account to browse all 17 sample questions. The full practice test includes 230 questions. Use the simulator for timed and flashcard mode. Or, view 238 more questions in the alternate version 300-710 238 Questions.
Which three operating systems are supported with Cisco AMP for Endpoints? (Choose three.) A.WindowsB.AWSC.AndroidD.Cisco IOSE.OS XF.ChromeOS
Correct answers: A, C, E
Which Cisco Web Security Appliance feature enables the appliance to block suspicious traffic on all of its ports and IP addresses? A.explicit forward modeB.Layer 4 Traffic MonitorC.transparent modeD.Secure Web Proxy
Correct answer: B
Which feature requires the network discovery policy for it to work on the Cisco Next Generation Intrusion Prevention System? A.impact flagsB.URL filteringC.security intelligenceD.health monitoring
Correct answer: C
Which CLI command is used to register a Cisco FirePOWER sensor to Firepower Management Center? A.configure system add B.configure manager add hostC.configure manager deleteD.configure manager add
Correct answer: D
A multinational financial organization is deploying Cisco Web Security Appliances (WSA) across three regional data centers. The network architecture team requires that the WSAs be deployed without altering the existing client browser configurations or the IP addressing scheme of the end-user subnets. The solution must support WCCP v2 for traffic redirection from the core switches. Which deployment mode and interface configuration meets these specific requirements?
Correct answer: B
Transparent Mode allows the WSA to filter traffic without requiring client-side browser configuration changes. Combined with WCCP v2 redirection from the network infrastructure, this meets the requirement to maintain existing IP schemes and client settings while inspecting traffic.
An administrator is troubleshooting an issue where legitimate internal emails are being blocked by the Cisco Email Security Appliance (ESA). The message tracking logs indicate the messages are being stopped at the connection level before content scanning occurs. Which configuration component should be analyzed first to resolve this issue?
Correct answer: B
The Host Access Table (HAT) is the first line of defense in the ESA pipeline. It controls incoming connections based on the sender's IP address or reputation. If messages are blocked at the connection level before content scanning, it indicates a rejection by a HAT policy or SenderGroup.
A security architect is designing a Cisco Firepower Threat Defense (FTD) deployment for a high-frequency trading firm. The primary requirement is microsecond-level latency, and the FTD device must sit between the core switch and the edge router without acting as a hop in the network routing table. Which interface mode should be configured?
Correct answer: B
Transparent Mode (Layer 2) allows the FTD to act as a 'bump in the wire,' inspecting traffic without being a routed hop. This minimizes network redesign and is ideal for environments requiring stealthy insertion or minimal routing changes.
While analyzing a malware incident, a security analyst notices that a file previously marked as 'Clean' by Cisco AMP has suddenly generated a 'Malicious' alert without the file being re-downloaded. What AMP capability is responsible for this behavior?
Correct answer: B
Retrospection is the AMP feature that continuously analyzes file dispositions. If threat intelligence updates change a file's disposition from clean to malicious (or vice versa), AMP sends a retrospective alert for all systems where that file was previously seen.
Register free to unlock 9 more sample questions
Create a free account to continue with the rest of the 300-210 sample set.
Own this practice test forever.
Any 2 exams per month.
Any 4 exams per month.
Any 12 exams over 3 months.