An engineer is building a new access control policy using Cisco FMC. The policy must inspect a unique IPS policy as well as log rule matching. Which action must be taken to meet these requirements?
A.
Configure an IPS policy and enable per-rule logging
B.
Disable the default IPS policy and enable global logging
C.
Configure an IPS policy and enable global logging
D.
Disable the default IPS policy and enable per-rule logging
To meet the requirements of inspecting a unique IPS policy and logging rule matching in a new access control policy using Cisco FMC, the correct action is:
A. Configure an IPS policy and enable per-rule logging.
This approach ensures that each rule within the access control policy can be inspected with the specified IPS policy and that logging is enabled for each rule to track and log matching traffic
Option C: Configure an IPS policy and enable global logging. This would apply the IPS policy and enable logging globally, but it might not provide the granularity needed for per-rule inspection and logging
The policy must inspect a unique IPS policy as well as log "rule" matching, so does it mean the rule is IPS rule or Access Control Policy rule? I can only see logging option at Access Control Policy level. so should the answer "global" is more safe?
"The policy must inspect a unique IPS policy as well as log rule matching"
In each policy yo can enable logging for more traffic detail.
You also can enable the logging in default policy
Answer A
To meet the requirements of inspecting a unique IPS policy as well as logging rule matching in a new access control policy using Cisco FMC, the engineer should configure an IPS policy and enable per-rule logging. Therefore, the correct answer is A: Configure an IPS policy and enable per-rule logging.
There is no per-rule logging on the system. Also there would be no need to log the ACL rule as an Intrusion event will cause the rule to generate an event.
you can set logging per rule for an access control policy, so A is the right one
upvoted 4 times
...
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
14a1949
1 week, 2 days agogc999
1 year agoCokamaniako
1 year, 2 months agoInitial14
1 year, 3 months agoJoe_Blue
1 year, 4 months agomatan24
1 year, 4 months agominon_bob
1 year, 7 months agocryptofetti
2 years, 10 months agogwb
5 months agocewe
2 years, 4 months ago