Cisco
300-415 · Question #133
300-415 Question #133: Real Exam Question with Answer & Explanation
The correct answer is B: Attach security policy to the device template.. For Cisco SD-WAN DNS inspection with Umbrella, a security policy must be attached to the device template, and the Umbrella token needs to be configured on vManage to establish the integration.
Security and Quality of Service
Question
Which two requirements must be met for DNS inspection when integrating with cisco umbrella? (Choose two)
Options
- AUpload the WAN Edge serial allow list to the Umbrella portal.
- BAttach security policy to the device template.
- CConfigure the Umbrella token on the vManage.
- DCreate and attach a System feature template with the Umbrella registration credentials.
- ERegister and configure the vManage public IP and serial number in the Umbrella portal.
Explanation
For Cisco SD-WAN DNS inspection with Umbrella, a security policy must be attached to the device template, and the Umbrella token needs to be configured on vManage to establish the integration.
Common mistakes.
- A. While device registration is part of the process, there is no specific 'WAN Edge serial allow list' upload to the Umbrella portal; devices are typically registered through the vManage integration.
- D. While a System feature template is used for general device configuration, the primary Umbrella registration credentials (like the token) are configured directly on vManage for the overall integration, not typically in a separate system feature template specific to Umbrella registration itself.
- E. While vManage's public IP and serial number are involved in device identification, the specific action of 'register and configure' these elements manually in the Umbrella portal isn't the primary integration mechanism; the vManage controller handles registration using the Umbrella token.
Concept tested. Cisco SD-WAN Umbrella DNS security integration
Topics
#Cisco Umbrella Integration#DNS Security#SD-WAN Security Policy#vManage Configuration
Community Discussion
No community discussion yet for this question.