nerdexam
Cisco

350-701 · Question #445

An engineer needs to configure an access control policy rule to always send traffic for inspection without using the default action. Which action should be configured for this rule?

The correct answer is B. allow. Rule 4: Allow is the final rule. For this rule, matching traffic is allowed; however, prohibited files, malware, intrusions, and exploits within that traffic are detected and blocked. Remaining non- prohibited, non-malicious traffic is allowed to its destination, though it is…

Submitted by haru.x· Mar 30, 2026Network Security

Question

An engineer needs to configure an access control policy rule to always send traffic for inspection without using the default action. Which action should be configured for this rule?

Options

  • Amonitor
  • Ballow
  • Cblock
  • Dtrust

How the community answered

(31 responses)
  • A
    6% (2)
  • B
    81% (25)
  • C
    3% (1)
  • D
    10% (3)

Explanation

Rule 4: Allow is the final rule. For this rule, matching traffic is allowed; however, prohibited files, malware, intrusions, and exploits within that traffic are detected and blocked. Remaining non- prohibited, non-malicious traffic is allowed to its destination, though it is still subject to identity requirements and rate limiting. You can configure Allow rules that perform only file inspection, or only intrusion inspection, or neither. guide-v61/access_control_rules.html

Topics

#access control policy#FTD#traffic inspection#allow action

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice