300-710 · Question #47
Which two actions can be used in an access control policy rule? (Choose two.)
The correct answer is A. Block with Reset B. Monitor. Cisco FMC access control policy rules support the following standard actions: Allow, Trust, Monitor, Block, Block with Reset, and Interactive Block (with or without reset). 'Block with Reset' (A) sends a TCP reset to terminate the connection immediately when traffic is blocked…
Question
Which two actions can be used in an access control policy rule? (Choose two.)
Options
- ABlock with Reset
- BMonitor
- CAnalyze
- DDiscover
- EBlock ALL
How the community answered
(63 responses)- A87% (55)
- C2% (1)
- D3% (2)
- E8% (5)
Explanation
Cisco FMC access control policy rules support the following standard actions: Allow, Trust, Monitor, Block, Block with Reset, and Interactive Block (with or without reset). 'Block with Reset' (A) sends a TCP reset to terminate the connection immediately when traffic is blocked. 'Monitor' (B) logs the matching traffic and allows it to be evaluated by subsequent rules-it does not block by itself. 'Analyze' (C) and 'Discover' (D) are not valid access control rule actions; they may appear in other Firepower contexts (like network discovery) but not as ACP rule actions. 'Block ALL' (E) is not a named action; the action is simply called 'Block'.
Topics
Community Discussion
No community discussion yet for this question.