An engineer wants to generate NetFlow records on traffic traversing the Cisco ASA. Which Cisco ASA
command must be used?
Refer to the exhibit.
An engineer creates a Python script to make an API call to Cisco Secure Access. Which output should be expected from the script?
An engineer is trying to decide between using L2TP or GRE over IPsec for their site-to-site VPN implementation. What must be un solution?
What is a commonality between DMVPN and FlexVPN technologies?
A network engineer is trying to figure out whether FlexVPN or DMVPN would fit better in their environment.
They have a requirement for more stringent security multiple security associations for the connections, more efficient VPN establishment as well consuming less bandwidth. Which solution would be best for this and why?
What is the role of Cisco Umbrella Roaming when it is installed on an endpoint?
Drag and drop the solutions from the left onto the solution ' s benefits on the right.
A network engineer has entered the snmp-server user andy myv3 auth sha cisco priv aes 256
cisc0380739941 command and needs to send SNMP information to a host at 10.255.254.1. Which command achieves this goal?
An engineer is configuring cloud logging using a company-managed Amazon S3 bucket for Cisco Umbrella logs. What benefit does this configuration provide for accessing log data?
Refer to the exhibit.
An engineer must configure a Cisco switch to perform PPP authentication via a TACACS server located at IP address 10.1.1.10. Authentication must fall back to the local database using the username LocalUser and password C1Sc0451069341l if the TACACS server is unreachable.
Drag and drop the commands from the left onto the corresponding configuration steps on the right.
How does Cisco Umbrella archive logs to an enterprise owned storage?
Refer to the exhibit,
which command results in these messages when attempting to troubleshoot an iPsec VPN connection?
Which Cisco platform provides an agentless solution to provide visibility across the network including encrypted traffic analytics to detect malware in encrypted traffic without the need for decryption?
An engineer must modify an existing remote access VPN using a Cisco AnyConnect Secure Mobility client solution and a Cisco Secure Firewall. Currently, all the traffic generate by the user Is sent to the VPN tunnel and the engineer must now exclude some servers and access them directly instead. Which element must be modified to achieve this goat?
An administrator needs to configure the Cisco ASA via ASDM such that the network management system
can actively monitor the host using SNMPv3. Which two tasks must be performed for this configuration?
(Choose two.)
What is provided by the Secure Hash Algorithm in a VPN?
Which Dos attack uses fragmented packets to crash a target machine?
Which Talos reputation center allows for tracking the reputation of IP addresses for email and web traffic?
Which SNMPv3 configuration must be used to support the strongest security possible?
Which method of attack is used by a hacker to send malicious code through a web application to an unsuspecting user to request that the victim ' s web browser executes the code?
An administrator configures a new destination list in Cisco Umbrella so that the organization can block specific domains for its devices. What should be done to ensure that all subdomains of domain.com are blocked?
Which two conditions are prerequisites for stateful failover for IPsec? (Choose two)
What are two ways a network administrator transparently identifies users using Active Directory on the Cisco WSA? (Choose two.)
What is the term for having information about threats and threat actors that helps mitigate harmful events that would otherwise compromise networks or systems?
What provides the ability to program and monitor networks from somewhere other than the DNAC GUI?
Which cloud service model offers an environment for cloud consumers to develop and deploy applications
without needing to manage or maintain the underlying cloud infrastructure?
A manufacturing company contracted an external software vendor to develop an application that dynamically creates marketing messages personalized to the business and audience. To ensure that communication between the sender and recipient email addresses does not create false positives, an exception rule must be configured in Cisco Secure Email Threat Defense. Which configuration must be performed?
Refer to the exhibit.
What will happen when the Python script is executed?
A network engineer is deploying multiple Cisco Secure Firewall Threat Defense devices across two data centers. The solution has the following requirements:
Management must have no Internet dependency.
Management must remain accessible during major outages.
Policy management must be centralized.
Which solution must be implemented to meet the requirements?
What are two ways a network administrator transparently identifies users using Active Directory on the Cisco WSA? (Choose two.) The eDirectory client must be installed on each client workstation.
A customer has various external HTTP resources available including Intranet Extranet and Internet, with a
proxy configuration running in explicit mode. Which method allows the client desktop browsers to be configured
to select when to connect direct or when to use the proxy?
Which two are valid suppression types on a Cisco Next Generation Intrusion Prevention System? (Choose two)
Which Cisco platform onboards the endpoint and can issue a CA signed certificate while also automatically configuring endpoint network settings to use the signed endpoint certificate, allowing the endpoint to gain network access?
Refer to the exhibit.
Which configuration item makes it possible to have the AAA session on the network?
An engineer is deploying a Cisco Secure Email Gateway and must ensure it reaches the Cisco update servers to retrieve new rules. The engineer must now manually configure the Outbreak Filter rules on an AsyncOS for Cisco Secure Email Gateway. Only outdated rules must be replaced. Up-to-date rules must be retained. Which action must the engineer take next to complete the configuration?
Which two commands are required when configuring a flow-export action on a Cisco ASA? (Choose two.)
Which threat intelligence standard contains malware hashes?
An administrator configures a Cisco WSA to receive redirected traffic over ports 80 and 443. The organization requires that a network device with specific WSA integration capabilities be configured to send the traffic to the WSA to proxy the requests and increase visibility, while making this invisible to the users. What must be done on the Cisco WSA to support these requirements?
Which deployment model is the most secure when considering risks to cloud adoption?
Drag and drop the security solutions from the left onto the benefits they provide on the right.
An engineer adds a custom detection policy to a Cisco AMP deployment and encounters issues with the
configuration. The simple detection mechanism is configured, but the dashboard indicates that the hash is not 64 characters and is non-zero. What is the issue?
Which feature requires that network telemetry be enabled?
Which protocol provides the strongest throughput performance when using Cisco AnyConnect VPN?
Refer to the exhibit. An engineer must configure a new Cisco ISE backend server as a RADIUS server to provide AAA for all access requests from the client to the ISE-Frontend server.
Which Cisco ISE configuration must be used?
Which Cisco security solution determines if an endpoint has the latest OS updates and patches installed on the system?
A switch with Dynamic ARP Inspection enabled has received a spoofed ARP response on a trusted interface.
How does the switch behave in this situation?
An engineer is configuring Dropbox integration with Cisco Cloudlock. Which action must be taken before granting API access in the Dropbox admin console?
Which kind of API that is used with Cisco DNA Center provisions SSIDs, QoS policies, and update software versions on switches?
Which Cisco security solution provides patch management in the cloud?
Which open standard creates a framework for sharing threat intelligence in a machine-digestible format?
An organization is implementing URL blocking using Cisco Umbrella. The users are able to go to some sites but other sites are not accessible due to an error. Why is the error occurring?
What are two differences between a Cisco WSA that is running in transparent mode and one running in explicit mode? (Choose two)
Where are individual sites specified to be block listed in Cisco Umbrella?
Which Cisco security solution stops exfiltration using HTTPS?
What are the two types of managed Intercloud Fabric deployment models? (Choose two.)
What is an advantage of the Cisco Umbrella roaming client?
An administrator configures new authorization policies within Cisco ISE and has difficulty profiling the devices. Attributes for the new Cisco IP phones that are profiled based on the RADIUS authentication are seen however the attributes for CDP or DHCP are not. What should the administrator do to address this issue?
An organization has a Cisco ESA set up with policies and would like to customize the action assigned for
violations. The organization wants a copy of the message to be delivered with a message added to flag it as a
DLP violation. Which actions must be performed in order to provide this capability?
Which two configurations must be made on Cisco ISE and on Cisco TrustSec devices to force a session to be adjusted after a policy change is made? (Choose two)
Which DevSecOps implementation process gives a weekly or daily update instead of monthly or quarterly in the applications?
Drag and drop the capabilities from the left onto the correct technologies on the right.
A network security engineer must export packet captures from the Cisco FMC web browser while troubleshooting an issue. When navigating to the address < FMC IP > /capure/CAPI/pcap/test.pcap, an error 403: Forbidden is given instead of the PCAP file. Which action must the engineer take to resolve this issue?
Which function is performed by certificate authorities but is a limitation of registration authorities?
In which two ways does a system administrator send web traffic transparently to the Web Security Appliance?
(Choose two)
A malicious user gained network access by spoofing printer connections that were authorized using MAB on
four different switch ports at the same time. What two catalyst switch security features will prevent further
violations? (Choose two)
An organization received a large amount of SPAM messages over a short time period. In order to take action on the messages, it must be determined how harmful the messages are and this needs to happen dynamically.
What must be configured to accomplish this?
How many interfaces per bridge group does an ASA bridge group deployment support?
Which security control is required for identifying and neutralizing malicious code that attempts to execute on an endpoint?
Based on the NIST 800-145 guide, which cloud architecture is provisioned for exclusive use by a specific group of consumers from different organizations and may be owned, managed, and operated by one or more of those organizations?
What are two functions of TAXII in threat intelligence sharing? (Choose two.)
Which VPN technology supports a multivendor environment and secure traffic between sites?
What is the benefit of integrating Cisco ISE with a MDM solution?
How is DNS tunneling used to exfiltrate data out of a corporate network?
When a Cisco Secure Web Appliance checks a web request, what occurs if it is unable to match a user-defined policy?
Refer to the exhibit.
How does Cisco Umbrella manage traffic that is directed toward risky domains?
Refer to the exhibit.
Consider that any feature of DNS requests, such as the length off the domain name
and the number of subdomains, can be used to construct models of expected behavior to which
observed values can be compared. Which type of malicious attack are these values associated with?
Which policy is used to capture host information on the Cisco Firepower Next Generation Intrusion Prevention
System?
Refer to the exhibit.
A Cisco Secure Endpoint malware event shows that a file was convicted as malicious and that its remediation status is Quarantine Failed. Before escalating the incident, the analyst must determine what can be concluded from the available event data. What is occurring based on the logs?
Refer to the exhibit. Which configuration item makes it possible to have the AAA session on the network?
What is a benefit of using Cisco FMC over Cisco ASDM?
On Cisco Firepower Management Center, which policy is used to collect health modules alerts from managed
devices?
The security architect has concluded that the optimal mail flow positions the existing Cisco Secure Email Gateways as the first termination point for inbound messages, while Cisco Secure Email Threat Defense is positioned between the Secure Email Gateways and the cloud mail platform. The security engineer has been asked to configure the incoming-traffic domain setting in Cisco Secure Email Threat Defense so that it reflects the Secure Email Gateway handling inbound messages ahead of the service. Which domain configuration for incoming traffic must be selected to meet the requirement?
When a transparent authentication fails on the Web Security Appliance, which type of access does the end user get?
An organization wants to secure data in a cloud environment. Its security model requires that all users be
authenticated and authorized. Security configuration and posture must be continuously validated before access is granted or maintained to applications and data. There is also a need to allow certain application traffic and deny all other traffic by default. Which technology must be used to implement these requirements?
A security engineer must protect endpoints when a file appears harmless during initial inspection but later shows malicious behavior. The solution must continuously observe process and file activity after execution and respond when a threat emerges. The infrastructure includes Cisco Secure Endpoint. Which feature must the engineer configure to meet the requirements?
Which API is used for Content Security?
Which Secure Email Gateway implementation method segregates inbound and outbound email?
Which two Cisco ISE components must be configured for BYOD? (Choose two.)
Which Linux system call loads an eBPF program and manages eBPF maps within the kernel?
Which Cisco ISE feature helps to detect missing patches and helps with remediation?
Which action controls the amount of URI text that is stored in Cisco WSA logs files?
Refer to the exhibit.
What is the result of this Python script of the Cisco DNA Center API?
An attacker needs to perform reconnaissance on a target system to help gain access to it. The system has weak passwords, no encryption on the VPN links, and software bugs on the system’s applications. Which
vulnerability allows the attacker to see the passwords being transmitted in clear text?
Which feature within Cisco ISE verifies the compliance of an endpoint before providing access to the
network?
Which two key and block sizes are valid for AES? (Choose two)
What are two recommended approaches to stop DNS tunneling for data exfiltration and command and control call backs? (Choose two.)
When a Cisco WSA checks a web request, what occurs if it is unable to match a user-defined policy?
Which VMware platform does Cisco ACI integrate with to provide enhanced visibility, provide policy integration and deployment, and implement security policies with access lists?
A large retail enterprise is deploying Cisco Secure Private Access to enable remote employees to reach internal applications without manual intervention. The IT department requires a seamless, zero-touch enrollment process in which users are registered and authenticated transparently without requiring end-user action. The architecture must support robust high availability for back-end connectivity to ensure continuous access to private resources. Which configuration approach must the administrator implement to meet the requirement?
An organization is implementing URL blocking using Cisco Umbrella. The users are able to go to some sites
but other sites are not accessible due to an error. Why is the error occurring?
Which two products are used to forecast capacity needs accurately in real time? (Choose two.)
Which endpoint solution protects a user from a phishing attack?
An engineer is adding a Cisco DUO solution to the current TACACS+ deployment using Cisco ISE. The engineer wants to authenticate users using their account when they log into network devices. Which action accomplishes this task?
Which algorithm provides encryption and authentication for data plane communication?
Which Cisco ASA deployment model is used to filter traffic between hosts in the same IP subnet using higher-level protocols without readdressing the network?
What is a feature of an endpoint detection and response solution?
A network engineer is configuring a Cisco Catalyst switch. The network engineer must prevent traffic on the network from being interrupted by broadcast packets flooding the network using a predefined threshold. What must be configured on the switch?
What is a feature of NetFlow Secure Event Logging?
Which technology provides a combination of endpoint protection endpoint detection, and response?
Refer to the exhibit.
A newly installed stack of Cisco Catalyst switches has been integrated with Cisco ISE for 802.1X port control and downloadable access control list (dACL) enforcement. Test workstations authenticate successfully, but the expected dACL never appears in the port configuration, leaving all traffic unrestricted. Packet captures confirm that Cisco ISE transmits the correct attributes, yet the switches classify them as “unknown” and ignore the instructions. A review of the running configuration shows complete AAA and 802.1X configuration. Which configuration command must be added to resolve the issue?
An engineer is configuring their router to send NetfFow data to Stealthwatch which has an IP address of 1 1 11 using the flow record Stea!thwatch406397954 command Which additional command is required to complete the flow record?
Drag and drop the exploits from the left onto the type of security vulnerability on the right.
What is a difference between GRE over IPsec and IPsec with crypto map?
Which two fields are defined in the NetFlow flow? (Choose two)
What is a prerequisite when integrating a Cisco ISE server and an AD domain?
Refer to the exhibit.
When configuring a remote access VPN solution terminating on the Cisco ASA, an administrator would like to utilize an external token authentication mechanism in conjunction with AAA authentication using machine
certificates. Which configuration item must be modified to allow this?
Which action must be taken in the AMP for Endpoints console to detect specific MD5 signatures on endpoints and then quarantine the files?
For which two conditions can an endpoint be checked using ISE posture assessment? (Choose two)
Which option is the main function of Cisco Firepower impact flags?
Using Cisco Cognitive Threat Analytics, which platform automatically blocks risky sites, and test unknown sites for hidden advanced threats before allowing users to click them?
What is the recommendation in a zero-trust model before granting access to corporate applications and
resources?
What is the most commonly used protocol for network telemetry?
Which standard is used to automate exchanging cyber threat information?
Which solution combines Cisco IOS and IOS XE components to enable administrators to recognize applications, collect and send network metrics to Cisco Prime and other third-party management tools, and prioritize application traffic?
Which CLI command is used to enable URL filtering support for shortened URLs on the Cisco Secure Email Gateway?
A large enterprise is currently managing a hybrid environment consisting of a private data center and multiple public cloud providers. The security engineering team is concerned about “Shadow IT” and the lack of visibility into unauthorized cloud services being used by various departments. The architect must select a solution that provides comprehensive discovery of cloud application usage and assesses the risk of each service based on industry certifications. Which technical solution must be used to provide cross-environment visibility?
What is the purpose of the My Devices Portal in a Cisco ISE environment?
Which statement describes a serverless application?
Drag and drop the descriptions from the left onto the correct protocol versions on the right.
What is the primary benefit of deploying an ESA in hybrid mode?
Which policy represents a shared set of features or parameters that define the aspects of a managed device that are likely to be similar to other managed devices in a deployment?
Which command enables 802.1X globally on a Cisco switch?
Which Cisco ISE service checks the compliance of endpoints before allowing the endpoints to connect to
the network?
What are two rootkit types? (Choose two)
Which Cisco WSA feature supports access control using URL categories?
Refer to the exhibit.
A network engineer is testing NTP authentication and realizes that any device synchronizes time with this router and that NTP authentication is not enforced What is the cause of this issue?
An organization is receiving SPAM emails from a known malicious domain. What must be configured in order to
prevent the session during the initial TCP communication?
Which solution for remote workers enables protection, detection, and response on the endpoint against known and unknown threats?
What is the Cisco API-based broker that helps reduce compromises, application risks, and data breaches in an environment that is not on-premise?
An organization plans to upgrade its current email security solutions, and an engineer must deploy Cisco Secure Email. The requirements for the upgrade are:
Implement Data Loss Prevention
Implement mail encryption
Integrate with an existing Cisco IronPort Secure Email Gateway solution
Which Cisco Secure Email license is needed to accomplish this task?
What are two Detection and Analytics Engines of Cognitive Threat Analytics? (Choose two)
What do tools like Jenkins, Octopus Deploy, and Azure DevOps provide in terms of application and
infrastructure automation?
A network administrator is using the Cisco ESA with AMP to upload files to the cloud for analysis. The network
is congested and is affecting communication. How will the Cisco ESA handle any files which need analysis?
What does Cisco AMP for Endpoints use to help an organization detect different families of malware?
An engineer recently completed the system setup on a Cisco WSA Which URL information does the system send to SensorBase Network servers?
Which problem Is solved by deploying a multicontext firewall?
Refer to the exhibit.
What does the API key do while working with
An engineer is implementing NAC for LAN users on a segmented network. The engineer confirms that the device of each user is supported and the Cisco switch configuration is correct.
Which configuration should be made next to ensure there are no authentication issues?
A network administrator is configuring a rule in an access control policy to block certain URLs and selects the “Chat and Instant Messaging” category. Which reputation score should be selected to accomplish this goal?
Which two features are used to configure Cisco ESA with a multilayer approach to fight viruses and malware?
(Choose two)
Which solution is more secure than the traditional use of a username and password and encompasses at least two of the methods of authentication?
An engineer needs to detect and quarantine a file named abc424400664 zip based on the MD5 signature of the file using the Outbreak Control list feature within Cisco Advanced Malware Protection (AMP) for Endpoints The configured detection method must work on files of unknown disposition Which Outbreak Control list must be configured to provide this?
Which solution combines Cisco IOS and IOS XE components to enable administrators to recognize
applications, collect and send network metrics to Cisco Prime and other third-party management tools, and prioritize application traffic?
What is a key difference between Cisco Firepower and Cisco ASA?
Why would a user choose an on-premises ESA versus the CES solution?
Which type of protection encrypts RSA keys when they are exported and imported?
Refer to the exhibit.
Refer to the exhibit. A Cisco ISE administrator adds a new switch to an 802.1X deployment and has difficulty with some endpoints gaining access.
Most PCs and IP phones can connect and authenticate using their machine certificate credentials. However printer and video cameras cannot base d on the interface configuration provided, what must be to get these devices on to the network using Cisco ISE for authentication and authorization while maintaining security controls?
What are two benefits of workload security? (Choose two.)
Which two methods must be used to add switches into the fabric so that administrators can control how switches are added into DCNM for private cloud management? (Choose two.)
Why is it important to patch endpoints consistently?
Which two protocols must be configured to authenticate end users to the Web Security Appliance? (Choose two.)
Refer to the exhibit. Traffic is not passing through IPsec site-to-site VPN on the Secure Firewall Threat Defense appliance. What is causing this issue?
Which characteristic is unique to a Cisco WSAv as compared to a physical appliance?
An organization is using DNS services for their network and want to help improve the security of the DNS infrastructure. Which action accomplishes this task?
Which Cisco security solution secures public, private, hybrid, and community clouds?
Drag and drop the Firepower Next Generation Intrusion Prevention System detectors from the left onto the correct definitions on the right.
An organization has a requirement to collect full metadata information about the traffic going through their AWS cloud services They want to use this information for behavior analytics and statistics Which two actions must be taken to implement this requirement? (Choose two.)
What is a description of microsegmentation?
Which CoA response code is sent if an authorization state is changed successfully on a Cisco IOS device?
A security policy administrator configures a Cisco Secure Access SIA DNS policy to block all social media categories for the Marketing Active Directory group. While testing from one of the user machines, access to the domain is allowed. When searching for this domain in User Activity Search, no queries for that specific domain are returned. Consider these facts:
The test user is part of the Marketing Active Directory group.
The domain socialmediaexample.org belongs to the social media category.
The user is configured with the Umbrella Roaming Client for DNS redirection.
All other social media websites are properly blocked for the same user and match the correct policy.
Which configuration must the administrator implement in Cisco Secure Access to meet the requirement?
An MDM provides which two advantages to an organization with regards to device management? (Choose two)
A recent change left network engineers unable to SSH into a branch Cisco Catalyst switch. The engineer confirms that the TACACS server group TACACS-GROUP is defined but unreachable. There is no fallback to the local database when TACACS+ is unavailable. Security policy requires TACACS+ as the primary authentication method with automatic fallback to local accounts. Which configuration command must be added to resolve the issue?
What are two functions of secret key cryptography? (Choose two)
For Cisco IOS PKI, which two types of Servers are used as a distribution point for CRLs? (Choose two)
What must be enabled to secure SaaS-based applications?
Which solution supports high availability in routed or transparent mode as well as in northbound and
southbound deployments?
A mall provides security services to customers with a shared appliance. The mall wants separation of
management on the shared appliance. Which ASA deployment mode meets these needs?
An engineer is configuring device-hardening on a router in order to prevent credentials from being seen
if the router configuration was compromised. Which command should be used?
When NetFlow is applied to an interface, which component creates the flow monitor cache that is used
to collect traffic based on the key and nonkey fields in the configured record?
What is managed by Cisco Security Manager?
Refer to the exhibit.
What conclusion should an administrator draw about the URL malicious-domain-example.com?
Which Cisco product provides proactive endpoint protection and allows administrators to centrally manage the
deployment?
What is a feature of the open platform capabilities of Cisco DNA Center?
What is the primary role of the Cisco Email Security Appliance?
Which capability is provided by application visibility and control?
What is the function of the crypto is a kmp key cisc406397954 address 0.0.0.0 0.0.0.0 command when establishing an IPsec VPN tunnel?
Drag and drop the Cisco CWS redirection options from the left onto the capabilities on the right.
What is a characteristic of Firepower NGIPS inline deployment mode?
Which RADIUS attribute can you use to filter MAB requests in an 802.1 x deployment?
A network engineer must create an access control list on a Cisco Adaptive Security Appliance firewall. The access control list must permit HTTP traffic to the internet from the organization ' s inside network 192.168.1.0/24. Which IOS command must oe used to create the access control list?
An organization wants to provide visibility and to identify active threats in its network using a VM. The
organization wants to extract metadata from network packet flow while ensuring that payloads are not retained
or transferred outside the network. Which solution meets these requirements?
Drag and drop the VPN functions from the left onto the descriptions on the right.
Which two global commands must the network administrator implement to limit the attack surface of an internet-facing Cisco router? (Choose two.)
Which two characteristics of messenger protocols make data exfiltration difficult to detect and prevent?
(Choose two)
Which two parameters are used to prevent a data breach in the cloud? (Choose two.)
Which two criteria must a certificate meet before the WSA uses it to decrypt application traffic? (Choose two.)
A healthcare organization is deploying Cisco Secure Access to prevent protected health information from being shared with generative AI services. The security team requires real-time DLP inspection only for traffic destined for AI applications, with minimal false positives during general web browsing. The policy must permit tuning based on the proximity and match counts of PHI identifiers. Which configuration action must the engineer perform?
Which technology must De used to Implement secure VPN connectivity among company branches over a private IP cloud with any-to-any scalable connectivity?
How does DNS Tunneling exfiltrate data?
Which open standard underpins OpenID Connect, enabling Cisco Duo to authorize application access?
What must be configured in Cisco ISE to enforce reauthentication of an endpoint session when an endpoint is
deleted from an identity group?
Drag and drop the VPN functions from the left onto the description on the right.
Which Cisco firewall solution supports configuration via Cisco Policy Language?
Which portion of the network do EPP solutions solely focus on and EDR solutions do not?
Which open source tool does Cisco use to create graphical visualizations of network telemetry on Cisco IOS XE devices?
What is an advantage of using a next-generation firewall compared to a traditional firewall?
Refer to the exhibit.
The DHCP snooping database resides on router R1, and dynamic ARP inspection is configured only on switch SW2. Which ports must be configured as untrusted so that dynamic ARP inspection operates normally?
Which system performs compliance checks and remote wiping?
An engineer is configuring guest WLAN access using Cisco ISE and the Cisco WLC. Which action temporarily gives guest endpoints access dynamically while maintaining visibility into who or what is connecting?
Refer to the exhibit.
A site-to-site IKEv2 VPN between a Cisco Secure Firewall Threat Defense device with public IP address 203.0.113.10 and a third-party firewall with public IP address 198.51.100.20 is failing to establish at a logistics company. The engineer enables IKEv2 debugging on the FTD and captures the output. Which action must be performed to resolve the issue?
Which Cisco Advanced Malware protection for Endpoints deployment architecture is designed to keep data
within a network perimeter?
What provides visibility and awareness into what is currently occurring on the network?
Refer to the exhibit.
A network administrator configured a site-to-site VPN tunnel between two Cisco IOS routers, and hosts are unable to communicate between two sites of VPN. The network administrator runs the debug crypto isakmp sa command to track VPN status. What is the problem according to this command output?
An engineer must configure Cisco AMP for Endpoints so that it contains a list of files that should not be executed by users. These files must not be quarantined. Which action meets this configuration requirement?
Which factor must be considered when choosing the on-premise solution over the cloud-based one?
Which benefit is provided by ensuring that an endpoint is compliant with a posture policy configured in Cisco ISE?
Which attribute has the ability to change during the RADIUS CoA?
An engineer is configuring 802.1X authentication on Cisco switches in the network and is using CoA as a mechanism. Which port on the firewall must be opened to allow the CoA traffic to traverse the network?
What does Cisco ISE use to collect endpoint attributes that are used in profiling?
Which Splunk SOAR component automates multi-step security actions into a repeatable workflow?
Which two endpoint measures are used to minimize the chances of falling victim to phishing and social
engineering attacks? (Choose two)
Which key feature of Cisco ZFW is unique among other Cisco IOS firewall solutions?
Which two capabilities of Integration APIs are utilized with Cisco DNA center? (Choose two)
For which type of attack is multifactor authentication an effective deterrent?
Which Cisco Secure Client module is integrated with Splunk Enterprise to provide monitoring capabilities to administrators to allow them to view endpoint application usage?
Which category includes DoS Attacks?
An engineer configured a new network identity in Cisco Umbrella but must verify that traffic is being routed
through the Cisco Umbrella network. Which action tests the routing?
Drag and drop the capabilities of Cisco Firepower versus Cisco AMP from the left into the appropriate category on the right.
Refer to the exhibit. A network engineer must retrieve the interface configuration on a Cisco router by using the NETCONF API. The engineer uses a python script to automate the activity.
Which code snippet completes the script?
An engineer is configuring AMP for endpoints and wants to block certain files from executing. Which outbreak
control method is used to accomplish this task?
Which type of attack is MFA an effective deterrent for?
An engineer must configure AsyncOS for Cisco Secure Web Appliance to push log files to a syslog server using the SCP retrieval method. Drag and drop the steps from the left into the sequence on the right to complete the configuration.
Which two tasks allow NetFlow on a Cisco ASA 5500 Series firewall? (Choose two)
Which two aspects of the cloud PaaS model are managed by the customer but not the provider? (Choose two)
A company wants to enforce security policy using Cisco Secure Access Secure Internet Access. The design requirements are:
Block adult-content and gambling categories for all users.
Inspect file downloads for malware.
Bypass TLS decryption for financial and healthcare domains because of compliance requirements.
Allow the Marketing department to use social media while keeping file scanning active for downloads from those sites.
Which two configuration actions must the engineer perform in Cisco Secure Access to meet the requirements? (Choose two.)
Which action configures the IEEE 802.1X Flexible Authentication feature lo support Layer 3 authentication mechanisms?
What are two reasons for implementing a multifactor authentication solution such as Duo Security provide to an
organization? (Choose two)
Drag and drop the suspicious patterns for the Cisco Tetration platform from the left onto the correct definitions on the right.
Which action configures the IEEE 802.1X Flexible Authentication feature to support Layer 3 authentication mechanisms?
What is a feature of container orchestration?