An engineer is creating an URL object on Cisco FMC. How must it be configured so that the object will match for HTTPS traffic in an access control policy?
A.
Specify the protocol to match (HTTP or HTTPS).
B.
Use the FQDN including the subdomain for the website.
C.
Use the subject common name from the website certificate.
D.
Define the path to the individual webpage that uses HTTPS.
The subject common name from the website certificate is used to match HTTPS traffic without performing SSL inspection. This allows the system to identify and match the URLs without decrypting the traffic, hence avoiding SSL inspection.
You cannot specify the protocol whether it's HTTP or HTTPS when creating an URL object, you can just add the actual URL so if unsure of the URL you can obtain this from the CN portion of the web cert.
C is correct-- look at he document n the first quarter of the text--
https://www.cisco.com/c/en/us/td/docs/security/firepower/630/configuration/guide/fpmc-config-guide-v63/reusable_objects.html?bookSearch=true#ID-2243-00000414
If you plan to use a URL object to match HTTPS traffic in an access control rule, create the object using the subject common name in the public key certificate used to encrypt the traffic. Also, the system disregards subdomains within the subject common name, so do not include subdomain information. For example, use example.com rather than www.example.com.
Wrong - Protocol is not specified in URL objects. Question asks for how the URL object is configured - not the access policy
upvoted 1 times
...
...
This section is not available anymore. Please use the main Exam Page.300-710 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Stevens0103
8 months, 2 weeks agobassfunk
1 year, 2 months agoSegaMasterSystemAdmin
1 year, 4 months agoTHEODORABLE
1 year, 5 months agoTHEODORABLE
1 year, 5 months agoInitial14
1 year, 6 months agojewell2j
1 year, 3 months agoBbb78
1 year, 6 months agoNian
6 days, 15 hours ago