QuestionQ1
ConfigurationA network engineer needs to disable the HTTP response page and interactive blocking for the entire access control policy in Cisco Secure Firewall Management Center. What must be selected for Block Response Page and Interactive Block Response Page?
- A View
- B Custom
- C System
- D None
QuestionQ2
IntegrationAn organization has deployed Cisco Firepower without IPS capabilities and now wants to enable traffic inspection. It must detect protocol anomalies and use Snort rule sets to identify malicious behavior. How can this be achieved?
- A Modify the network discovery policy to detect new hosts to inspect.
- B Modify the access control policy to redirect interesting traffic to the engine.
- C Modify the intrusion policy to determine the minimum severity of an event to inspect.
- D Modify the network analysis policy to process the packets for inspection.
Community Discussion
QuestionQ3
ConfigurationAn engineer needs to export a packet capture from Cisco Secure Firewall Management Center to help troubleshoot an issue on a Secure Firewall Threat Defense device. When the engineer browses to the Secure Firewall Management Center URL below:
https:///capture/CAPI/pcap/sample.pcap
The engineer receives a 403: Forbidden error rather than the PCAP file. Which action fixes the issue?
- A Disable the proxy setting on the client browser.
- B Disable the HTTPS server and use HTTP.
- C Enable HTTPS in the device platform policy.
- D Enable the proxy setting in the device platform policy.
Community Discussion
QuestionQ4
Configuration
Refer to the exhibit. An engineer needs to create a QoS policy in Cisco Firepower Management Center that limits HTTP and HTTPS traffic from HR users. Set both the upload and download limit for HTTP and HTTPS traffic to 5 Mb/s.
Community Discussion
QuestionQ5
ConfigurationAn engineer creates a new rule while configuring an Access Control Policy. After the policy is deployed, the rule does not work as expected, and its associated hit counters remain at zero. What is causing this error?
- A An incorrect application signature was used in the rule.
- B The wrong source interface for Snort was selected in the rule.
- C The rule was not enabled after being created.
- D Logging is not enabled for the rule.


Community Discussion