exam questions

Exam 300-710 All Questions

View all questions & answers for the 300-710 exam

Exam 300-710 topic 1 question 146 discussion

Actual exam question from Cisco's 300-710
Question #: 146
Topic #: 1
[All 300-710 Questions]

A network administrator is deploying a Cisco IPS appliance and needs it to operate initially without affecting traffic flows. It must also collect data to provide a baseline of unwanted traffic before being reconfigured to drop it. Which Cisco IPS mode meets these requirements?

  • A. failsafe
  • B. inline tap
  • C. promiscuous
  • D. bypass
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Initial14
Highly Voted 1 year, 7 months ago
Selected Answer: B
The question states: A network administrator is deploying a Cisco IPS appliance and needs it to operate initially without affecting traffic flows. IT NEEDS TO OPERATE INITIALY, meaning inline tap, because in the future, we willgo from not affecting traffic, to activating IPS. if you use passive deployment, meaning you copy data to IPS in the future you can't implement IPS rule blocking. For me It's B
upvoted 9 times
...
achille5
Most Recent 6 months, 2 weeks ago
Selected Answer: C
https://www.cisco.com/en/US/docs/security/ips/5.0/configuration/guide/cli/cliinter.html#wp1033759
upvoted 2 times
...
aaInman
1 year, 2 months ago
Selected Answer: C
I believe C as well.
upvoted 1 times
...
SegaMasterSystemAdmin
1 year, 4 months ago
Selected Answer: C
This is talking about a Cisco IPS appliance and not a FTD so leaning towards promiscuous mode
upvoted 2 times
...
bobie
1 year, 5 months ago
Selected Answer: C
https://www.cisco.com/en/US/docs/security/ips/5.0/configuration/guide/cli/cliinter.html#wp1033699
upvoted 1 times
...
ureis
1 year, 5 months ago
"It must also collect data" meaning copy the data, only tap mode copy data without affect the network
upvoted 1 times
ureis
1 year, 5 months ago
OBS: TAP cant drop packets, so C is correct
upvoted 1 times
...
...
Joe_Blue
1 year, 7 months ago
Selected Answer: C
The promiscuous mode of the Cisco IPS meets these requirements. It can be configured to operate initially without affecting traffic flows and collects data to provide a baseline of unwanted traffic before being reconfigured to drop it. In promiscuous mode, the IPS is configured to monitor traffic only and does not affect the flow of packets.
upvoted 2 times
...
Dolby58
1 year, 8 months ago
Selected Answer: C
C is correct!
upvoted 2 times
...
Dolby58
1 year, 9 months ago
Selected Answer: B
B is correct. Promiscuous mode doesn't exist.
upvoted 3 times
ureis
1 year, 5 months ago
Promiscuous = Transparent Mode
upvoted 1 times
...
Dolby58
1 year, 8 months ago
I stand corrected. It's not B. The question is about Cisco IPS which has three modes: Promiscuous, Inline and Bypass. So C is correct. https://www.cisco.com/en/US/docs/security/ips/5.0/configuration/guide/cli/cliinter.html#wp1033938
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago