nerdexam
Cisco

300-710 · Question #408

A network engineer must configure the cabling between a Cisco Secure Firewall Threat Defense appliance and a network so the Secure Firewall Threat Defense appliance performs inline to analyze and…

The correct answer is B. tap mode. Tap mode (Inline Pair in Tap mode) allows the Cisco Secure Firewall Threat Defense appliance to be physically inline while still operating logically in passive mode, enabling the engineer to analyze and tune intrusion events without affecting live traffic. This is ideal for…

Deployment

Question

A network engineer must configure the cabling between a Cisco Secure Firewall Threat Defense appliance and a network so the Secure Firewall Threat Defense appliance performs inline to analyze and tune generated intrusion events before going live. Which secure firewall threat defense mode must the engineer use?

Options

  • Astrict TCP enforcement
  • Btap mode
  • Cbypass
  • Dlink state propagation

How the community answered

(33 responses)
  • A
    3% (1)
  • B
    91% (30)
  • D
    6% (2)

Explanation

Tap mode (Inline Pair in Tap mode) allows the Cisco Secure Firewall Threat Defense appliance to be physically inline while still operating logically in passive mode, enabling the engineer to analyze and tune intrusion events without affecting live traffic. This is ideal for pre-deployment

Topics

#Secure Firewall Threat Defense#Deployment Modes#Tap Mode#IPS Analysis

Community Discussion

No community discussion yet for this question.

Full 300-710 Practice