nerdexam
Cisco

300-710 · Question #47

Which two actions can be used in an access control policy rule? (Choose two.)

The correct answer is A. Block with Reset B. Monitor. Cisco FMC access control policy rules support the following standard actions: Allow, Trust, Monitor, Block, Block with Reset, and Interactive Block (with or without reset). 'Block with Reset' (A) sends a TCP reset to terminate the connection immediately when traffic is blocked…

Configuration

Question

Which two actions can be used in an access control policy rule? (Choose two.)

Options

  • ABlock with Reset
  • BMonitor
  • CAnalyze
  • DDiscover
  • EBlock ALL

How the community answered

(63 responses)
  • A
    87% (55)
  • C
    2% (1)
  • D
    3% (2)
  • E
    8% (5)

Explanation

Cisco FMC access control policy rules support the following standard actions: Allow, Trust, Monitor, Block, Block with Reset, and Interactive Block (with or without reset). 'Block with Reset' (A) sends a TCP reset to terminate the connection immediately when traffic is blocked. 'Monitor' (B) logs the matching traffic and allows it to be evaluated by subsequent rules-it does not block by itself. 'Analyze' (C) and 'Discover' (D) are not valid access control rule actions; they may appear in other Firepower contexts (like network discovery) but not as ACP rule actions. 'Block ALL' (E) is not a named action; the action is simply called 'Block'.

Topics

#Access Control Policy#Firepower Threat Defense#Security Policy#Rule Actions

Community Discussion

No community discussion yet for this question.

Full 300-710 Practice