exam questions

Exam 350-701 All Questions

View all questions & answers for the 350-701 exam

Exam 350-701 topic 1 question 366 discussion

Actual exam question from Cisco's 350-701
Question #: 366
Topic #: 1
[All 350-701 Questions]


Refer to the exhibit. What are two indications of the Cisco Firepower Services Module configuration? (Choose two.)

  • A. The module is operating in IDS mode.
  • B. Traffic is blocked if the module fails.
  • C. The module fails to receive redirected traffic.
  • D. The module is operating in IPS mode.
  • E. Traffic continues to flow if the module fails.
Show Suggested Answer Hide Answer
Suggested Answer: AE 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
leowulf
Highly Voted 2 years, 7 months ago
I would go with A and E sfr {fail-open | fail-close [monitor-only]} <- There's a couple different options here. The first one is fail-open which means that if the Firepower software module is unavailable, the ASA will continue to forward traffic. fail-close means that if the Firepower module fails, the traffic will stop flowing. While this doesn't seem ideal, there might be a use case for it when securing highly regulated environments. The monitor-only switch can be used with both and basically puts the Firepower services into IDS-mode only. This might be useful for initial testing or setup.
upvoted 11 times
Initial14
2 years, 6 months ago
I agree
upvoted 3 times
...
...
Premium_Pils
Most Recent 8 months, 1 week ago
Selected Answer: AE
Fail-open let's traffic flow if sourcefire module is unavailable, monitor-only does not intercept traffic and makes the module to an IDS
upvoted 1 times
...
ums008
1 year, 9 months ago
Selected Answer: AE
Correct, please update website
upvoted 3 times
...
Jessie45785
2 years ago
Selected Answer: AE
FirePOWER IDS/IPS is designed to examine the network traffic and identify any malicious patterns (or signatures) that indicate a network/system attack. FirePOWER module works in IDS mode if the ASA's service-policy is specifically configured in monitor mode (promiscuous) else, it works in Inline mode. https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-firepower-services/200451-Configure-Intrusion-Policy-and-Signature.html
upvoted 1 times
...
achille5
2 years, 2 months ago
Selected Answer: DE
The module is operating in IPS mode. This is indicated by the fact that the "mode" is specified as "fail-open", which is the default mode for IPS deployments. Traffic continues to flow if the module fails. This is also indicated by the fact that the "mode" is specified as "fail-open", which means that traffic will be allowed to pass through even if the module is not operational. The monitor-only is an alert type of config not for IDS. :)
upvoted 1 times
achille5
2 years, 1 month ago
i changed to AE. Ignore above.
upvoted 2 times
Directly_Connected
2 years, 1 month ago
What information makes you to change your mind?
upvoted 1 times
...
...
...
Medusa8
2 years, 4 months ago
Selected Answer: AE
Monitor-only means IDS. 100% sure.
upvoted 4 times
achille5
2 years, 2 months ago
The monitor-only is an alert type of config not for IDS. :)
upvoted 1 times
stalkr3
2 years ago
Wrong. Cisco site: "FirePOWER module works in IDS mode if the ASA's service-policy is specifically configured in monitor mode (promiscuous)"
upvoted 2 times
...
...
...
Emlia1
2 years, 4 months ago
Selected Answer: AE
It's A,E
upvoted 3 times
...
Ahmedoooooo
2 years, 5 months ago
Selected Answer: AE
@leowulf Agree with u
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago