300-710 · Question #238
Refer to exhibit. Which two descriptions of the configurations of the Cisco FirePOWER Services module are true? (Choose two)
The correct answer is C. The module is operating in IDS mode D. Traffic continues to flow if the module fails. The FirePOWER Services module is configured in IDS mode, meaning it acts as an Intrusion Detection System, only monitoring traffic for threats. Consequently, if the module fails, traffic will continue to flow through the device without interruption since no active blocking is…
Question
Refer to exhibit. Which two descriptions of the configurations of the Cisco FirePOWER Services module are true? (Choose two)
Exhibit
Options
- AThe module is operating in IPS mode
- BTraffic is blocked if the module fails
- CThe module is operating in IDS mode
- DTraffic continues to flow if the module fails
- EThe module tails to receive redirected traffic
How the community answered
(23 responses)- A9% (2)
- B9% (2)
- C78% (18)
- E4% (1)
Why each option
The FirePOWER Services module is configured in IDS mode, meaning it acts as an Intrusion Detection System, only monitoring traffic for threats. Consequently, if the module fails, traffic will continue to flow through the device without interruption since no active blocking is performed.
If the module were operating in IPS (Intrusion Prevention System) mode, it would be actively blocking traffic, which contradicts option C being correct.
If traffic were blocked upon module failure, it would indicate an IPS deployment with a fail-close mechanism, contradicting the non-disruptive nature of IDS mode.
In IDS (Intrusion Detection System) mode, the FirePOWER module is configured for passive monitoring, detecting threats and generating alerts without actively blocking or interfering with network traffic.
When operating in IDS mode, the FirePOWER module does not actively enforce policy or block traffic. Therefore, if the module fails, the flow of network traffic through the device will continue unimpeded.
Concept tested: Cisco FirePOWER IDS mode operation
Source: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Deployment_Options.html
Topics
Community Discussion
No community discussion yet for this question.
