exam questions

Exam 300-710 All Questions

View all questions & answers for the 300-710 exam

Exam 300-710 topic 1 question 109 discussion

Actual exam question from Cisco's 300-710
Question #: 109
Topic #: 1
[All 300-710 Questions]

A network administrator notices that SI events are not being updated. The Cisco FTD device is unable to load all of the SI event entries and traffic is not being blocked as expected. What must be done to correct this issue?

  • A. Restart the affected devices in order to reset the configurations.
  • B. Redeploy configurations to affected devices so that additional memory is allocated to the SI module.
  • C. Replace the affected devices with devices that provide more memory.
  • D. Manually update the SI event entries to that the appropriate traffic is blocked.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ERGEGA
Highly Voted 2 years, 3 months ago
Answer is B. Memory limitations. Cisco Intelligence Feeds are based on the latest threat intelligence from Cisco Talos Intelligence Group (Talos). These feeds tend to get larger as time passes. When a Firepower device receives a feed update, it loads as many entries as it can into the memory it has allocated for Security Intelligence. When a device cannot load all the entries, it may not block traffic as expected. Some connections that should be blocked by a Block list instead continue to be evaluated by access control rules. If you think this is happening, redeploy configurations to the affected devices.
upvoted 8 times
...
Bobster02
Highly Voted 2 years, 11 months ago
Troubleshooting Memory Use: Symptoms: Connections that should be blocked by a Security Intelligence Block list are instead evaluated by access control rules. The Security Intelligence health module alerts that it is out of memory. Cause: Memory limitations. Cisco Intelligence Feeds are based on the latest threat intelligence from Cisco Talos Intelligence Group (Talos). These feeds tend to get larger as time passes. Workaround: If you think this is happening, redeploy configurations to the affected devices. This can allocate more memory to Security Intelligence.
upvoted 6 times
...
bassfunk
Most Recent 10 months ago
Selected Answer: B
Going with B.
upvoted 1 times
...
partyzan06
11 months, 4 weeks ago
Selected Answer: B
B. Redeploy configurations to affected devices so that additional memory is allocated to the SI module.
upvoted 1 times
...
Joe_Blue
1 year, 2 months ago
Selected Answer: B
To correct the issue of SI events not being updated and the Cisco FTD device being unable to load all of the SI event entries, the network administrator should redeploy configurations to affected devices so that additional memory is allocated to the SI module.
upvoted 1 times
...
xziomal9
1 year, 11 months ago
Selected Answer: B
Correct answer is: B
upvoted 1 times
...
aadach
2 years, 2 months ago
Selected Answer: B
Correct B
upvoted 1 times
...
Bobster02
2 years, 11 months ago
B is correct, confirmed.
upvoted 2 times
...
kakakayayaya
2 years, 11 months ago
https://www.cisco.com/c/en/us/td/docs/security/firepower/670/configuration/guide/fpmc-config-guide-v67/security_intelligence_blacklisting.html Workaround: If you think this is happening, redeploy configurations to the affected devices. B - right answer
upvoted 3 times
...
kakakayayaya
3 years ago
Does someone give explanation? How does Intelligence EVENTS affect Intelligence process. It is just logging.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...