nerdexam
Cisco

300-710 · Question #238

Refer to exhibit. Which two descriptions of the configurations of the Cisco FirePOWER Services module are true? (Choose two)

The correct answer is C. The module is operating in IDS mode D. Traffic continues to flow if the module fails. The FirePOWER Services module is configured in IDS mode, meaning it acts as an Intrusion Detection System, only monitoring traffic for threats. Consequently, if the module fails, traffic will continue to flow through the device without interruption since no active blocking is…

Deployment

Question

Refer to exhibit. Which two descriptions of the configurations of the Cisco FirePOWER Services module are true? (Choose two)

Exhibit

300-710 question #238 exhibit

Options

  • AThe module is operating in IPS mode
  • BTraffic is blocked if the module fails
  • CThe module is operating in IDS mode
  • DTraffic continues to flow if the module fails
  • EThe module tails to receive redirected traffic

How the community answered

(23 responses)
  • A
    9% (2)
  • B
    9% (2)
  • C
    78% (18)
  • E
    4% (1)

Why each option

The FirePOWER Services module is configured in IDS mode, meaning it acts as an Intrusion Detection System, only monitoring traffic for threats. Consequently, if the module fails, traffic will continue to flow through the device without interruption since no active blocking is performed.

AThe module is operating in IPS mode

If the module were operating in IPS (Intrusion Prevention System) mode, it would be actively blocking traffic, which contradicts option C being correct.

BTraffic is blocked if the module fails

If traffic were blocked upon module failure, it would indicate an IPS deployment with a fail-close mechanism, contradicting the non-disruptive nature of IDS mode.

CThe module is operating in IDS modeCorrect

In IDS (Intrusion Detection System) mode, the FirePOWER module is configured for passive monitoring, detecting threats and generating alerts without actively blocking or interfering with network traffic.

DTraffic continues to flow if the module failsCorrect

When operating in IDS mode, the FirePOWER module does not actively enforce policy or block traffic. Therefore, if the module fails, the flow of network traffic through the device will continue unimpeded.

EThe module tails to receive redirected traffic

Concept tested: Cisco FirePOWER IDS mode operation

Source: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Deployment_Options.html

Topics

#Cisco FirePOWER#IDS vs IPS#Fail-open behavior#Deployment modes

Community Discussion

No community discussion yet for this question.

Full 300-710 Practice