nerdexam
Cisco

300-710 · Question #34

Which interface type allows packets to be dropped?

The correct answer is B. inline. Only inline interfaces place the Firepower sensor directly in the traffic path, giving it the ability to inspect and drop packets in real time. Passive interfaces receive a mirrored copy of traffic and have no ability to block anything. ERSPAN is a remote traffic mirroring…

Deployment

Question

Which interface type allows packets to be dropped?

Options

  • Apassive
  • Binline
  • CERSPAN
  • DTAP

How the community answered

(67 responses)
  • A
    7% (5)
  • B
    87% (58)
  • C
    3% (2)
  • D
    3% (2)

Explanation

Only inline interfaces place the Firepower sensor directly in the traffic path, giving it the ability to inspect and drop packets in real time. Passive interfaces receive a mirrored copy of traffic and have no ability to block anything. ERSPAN is a remote traffic mirroring encapsulation technology used for monitoring. TAP mode (on an inline set) also only receives copied traffic and cannot drop packets. Dropping requires being in-path, which only inline mode provides.

Topics

#Inline Deployment#Packet Dropping#Network Security Deployment#Interface Types

Community Discussion

No community discussion yet for this question.

Full 300-710 Practice