nerdexam
CiscoCisco

300-710 · Question #254

300-710 Question #254: Real Exam Question with Answer & Explanation

The correct answer is B: Prefilter policy. To fastpath trusted network traffic and improve performance, the administrator would configure rules within a Prefilter policy, which allows specific traffic to bypass deeper inspection stages.

Configuration

Question

A Cisco FMC administrator wants to configure fastpathing of trusted network traffic to increase performance. In which type of policy would the administrator configure this feature?

Options

  • AIdentity policy
  • BPrefilter policy
  • CNetwork Analysis policy
  • DIntrusion policy

Explanation

To fastpath trusted network traffic and improve performance, the administrator would configure rules within a Prefilter policy, which allows specific traffic to bypass deeper inspection stages.

Common mistakes.

  • A. An Identity policy is used for user authentication and authorization, not for controlling traffic inspection levels or fastpathing for performance.
  • C. A Network Analysis policy defines advanced detection settings for the Snort inspection engine, which is a deeper level of inspection, not for bypassing it.
  • D. An Intrusion policy defines rules for the Snort intrusion detection/prevention engine, which performs deep packet inspection, the opposite of fastpathing.

Concept tested. Configuring traffic fastpathing

Reference. https://www.cisco.com/c/en/us/td/docs/security/firepower/640/configuration/guide/fpmc-config-guide-v64/prefilter-policies.html

Topics

#FMC Prefilter policy#Traffic optimization#Fastpathing#Network performance

Community Discussion

No community discussion yet for this question.

Full 300-710 PracticeBrowse All 300-710 Questions