Free 350-701 Exam Braindumps (page: 45)

Page 45 of 153

After a recent breach, an organization determined that phishing was used to gain initial access to the network before regaining persistence. The information gained from the phishing attack was a result of users visiting known malicious websites.
What must be done in order to prevent this from happening in the future?

  1. Modify an access policy
  2. Modify identification profiles
  3. Modify outbound malware scanning policies
  4. Modify web proxy settings

Answer(s): D

Explanation:

URL conditions in access control rules allow you to limit the websites that users on your network can access. This feature is called URL filtering. There are two ways you can use access control to specify URLs you want to block (or, conversely, allow):
­ With any license, you can manually specify individual URLs, groups of URLs, and URL lists and feeds to achieve granular, custom control over web traffic. ­ With a URL Filtering license, you can also control access to websites based on the URL's general classification, or category, and risk level, or reputation. The system displays this category and reputation data in connection logs, intrusion events, and application details. Using category and reputation data also simplifies policy creation and administration. It grants you assurance that the system will control web traffic as expected. Finally, because Cisco's threat intelligence is continually updated with new URLs, as well as new categories and risks for existing

URLs, you can ensure that the system uses up-to-date information to filter requested URLs. Malicious sites that represent security threats such as malware, spam, botnets, and phishing may appear and disappear faster than you can update and deploy new policies.


Reference:

https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config- guidev60/Access_Control_Rules__URL_Filtering.html



What is the function of SDN southbound API protocols?

  1. to allow for the dynamic configuration of control plane applications
  2. to enable the controller to make changes
  3. to enable the controller to use REST
  4. to allow for the static configuration of control plane applications

Answer(s): B

Explanation:

Southbound APIs enable SDN controllers to dynamically make changes based on real-time demands and scalability needs.


Reference:

https://www.ciscopress.com/articles/article.asp?p=3004581&seqNum=2



Note: Southbound APIs helps us communicate with data plane (not control plane) applications



Refer to the exhibit.



Traffic is not passing through IPsec site-to-site VPN on the Firepower Threat Defense appliance.
What is causing this issue?

  1. No split-tunnel policy is defined on the Firepower Threat Defense appliance.
  2. The access control policy is not allowing VPN traffic in.
  3. Site-to-site VPN peers are using different encryption algorithms.
  4. Site-to-site VPN preshared keys are mismatched.

Answer(s): A

Explanation:

If sysopt permit-vpn is not enabled then an access control policy must be created to allow the VPN traffic through the FTD device. If sysopt permit-vpn is enabled skip creating an access control policy.


Reference:

https://www.cisco.com/c/en/us/support/docs/security-vpn/ipsec-negotiation-ike- protocols/215470- site-to-site-vpn-configuration-on-ftd-ma.html



An attacker needs to perform reconnaissance on a target system to help gain access to it. The system has weak passwords, no encryption on the VPN links, and software bugs on the system's applications.
Which vulnerability allows the attacker to see the passwords being transmitted in clear text?

  1. weak passwords for authentication
  2. unencrypted links for traffic
  3. software bugs on applications
  4. improper file security

Answer(s): B



Page 45 of 153



Post your Comments and Discuss Cisco® 350-701 exam with other Community members:

David A commented on January 16, 2024
Good Colombia
Anonymous
upvote

Kim commented on May 25, 2023
I just purchased and downloaded my files. Everything looks good so far.
UNITED STATES
upvote