300-725 · Question #8
What is the default action when a new custom category is created and added to an access policy?
The correct answer is A. monitor. When a new custom URL category is created on the Cisco WSA and added to an access policy, the default action assigned to it is 'Monitor.' Monitor means the WSA allows the traffic to pass but logs it for reporting purposes - no blocking or decryption occurs. This is the safe…
Question
What is the default action when a new custom category is created and added to an access policy?
Options
- Amonitor
- Ballow
- Cblock
- Ddecrypt
How the community answered
(26 responses)- A88% (23)
- C8% (2)
- D4% (1)
Explanation
When a new custom URL category is created on the Cisco WSA and added to an access policy, the default action assigned to it is 'Monitor.' Monitor means the WSA allows the traffic to pass but logs it for reporting purposes - no blocking or decryption occurs. This is the safe default to prevent unintended disruption. Administrators must explicitly change the action to 'Block,' 'Allow,' or 'Decrypt' based on their security requirements. Starting with Monitor ensures visibility into how the category is being used before enforcing a more restrictive action.
Topics
Community Discussion
No community discussion yet for this question.