exam questions

Exam 350-701 All Questions

View all questions & answers for the 350-701 exam

Exam 350-701 topic 1 question 399 discussion

Actual exam question from Cisco's 350-701
Question #: 399
Topic #: 1
[All 350-701 Questions]

An engineer needs to configure an access control policy rule to always send traffic for inspection without using the default action. Which action should be configured for this rule?

  • A. monitor
  • B. trust
  • C. allow
  • D. block
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Premium_Pils
9 months, 3 weeks ago
Selected Answer: C
Allow gets the traffic inspected
upvoted 1 times
...
ums008
1 year, 10 months ago
Selected Answer: C
C is correct: https://www.cisco.com/c/en/us/td/docs/security/firepower/610/configuration/guide/fpmc-config-guide-v61/access_control_rules.html
upvoted 2 times
...
bodomobil
1 year, 11 months ago
Selected Answer: C
C is correct: allow
upvoted 2 times
...
alischajan
2 years, 1 month ago
Selected Answer: A
A - Monitor - is the right answer. Allow always inspect the flow. Allow action permits traffic to pass through the device and continue to its destination, but with inspection and logging enabled. On the other hand, Allow is one of the default actions.
upvoted 1 times
alischajan
2 years, 1 month ago
Monitor and Allow both to inspect the traffic; however, monitor is not the default action.
upvoted 1 times
...
G33
2 years ago
C - Allow The default traffic inspects and allows or drops if malicious (monitor does not drop malicious traffic) https://www.cisco.com/c/en/us/td/docs/security/firepower/610/configuration/guide/fpmc-config-guide-v61/access_control_rules.html
upvoted 2 times
...
...
sull3y
2 years, 2 months ago
If the engineer wants to ensure that all traffic is inspected without using the default action in an access control policy rule, they should configure the "allow" action for this rule. In Cisco Firepower Management Center, the "allow" action permits traffic to pass through the device and continue to its destination, but with inspection and logging enabled. By default, traffic that does not match any access control policy rule is handled by the default action, which is typically set to "allow" or "block". Using the "monitor" action would only allow traffic to pass through the device for the purpose of collecting data and generating reports, without inspection or logging.
upvoted 2 times
sull3y
2 years, 2 months ago
answer:C
upvoted 2 times
...
...
angry
2 years, 2 months ago
allow!
upvoted 1 times
...
luisseijuro
2 years, 3 months ago
Selected Answer: C
https://www.cisco.com/c/en/us/td/docs/security/firepower/70/configuration/guide/fpmc-config-guide-v70/access_control_rules.html
upvoted 1 times
...
Emlia1
2 years, 6 months ago
C should be correct
upvoted 1 times
...
Ed1976
2 years, 6 months ago
Selected Answer: C
Should be - Allow. Monitoring is used only for statistics and just pass traffic to next rules.
upvoted 1 times
...
Ahmedoooooo
2 years, 6 months ago
Selected Answer: C
ALLOW IT is the correct answer
upvoted 1 times
...
Initial14
2 years, 8 months ago
ALLOW ? This option will always send traffic for inspection Rule 4: Allow is the final rule. For this rule, matching traffic is allowed; however, prohibited files, malware, intrusions, and exploits within that traffic are detected and blocked. Remaining non-prohibited, non-malicious traffic is allowed to its destination, though it is still subject to identity requirements and rate limiting. You can configure Allow rules that perform only file inspection, or only intrusion inspection, or neither. https://www.cisco.com/c/en/us/td/docs/security/firepower/610/configuration/guide/fpmc-config-guide-v61/access_control_rules.html
upvoted 3 times
Hereim
2 years, 7 months ago
I agree....
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...