I would go with A and E
sfr {fail-open | fail-close [monitor-only]} <- There's a couple different options here. The first one is fail-open which means that if the Firepower software module is unavailable, the ASA will continue to forward traffic. fail-close means that if the Firepower module fails, the traffic will stop flowing. While this doesn't seem ideal, there might be a use case for it when securing highly regulated environments. The monitor-only switch can be used with both and basically puts the Firepower services into IDS-mode only. This might be useful for initial testing or setup.
FirePOWER IDS/IPS is designed to examine the network traffic and identify any malicious patterns (or signatures) that indicate a network/system attack. FirePOWER module works in IDS mode if the ASA's service-policy is specifically configured in monitor mode (promiscuous) else, it works in Inline mode.
https://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-firepower-services/200451-Configure-Intrusion-Policy-and-Signature.html
The module is operating in IPS mode. This is indicated by the fact that the "mode" is specified as "fail-open", which is the default mode for IPS deployments.
Traffic continues to flow if the module fails. This is also indicated by the fact that the "mode" is specified as "fail-open", which means that traffic will be allowed to pass through even if the module is not operational. The monitor-only is an alert type of config not for IDS. :)
This section is not available anymore. Please use the main Exam Page.350-701 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
leowulf
Highly Voted 2 years, 7 months agoInitial14
2 years, 6 months agoPremium_Pils
Most Recent 8 months, 1 week agoums008
1 year, 9 months agoJessie45785
2 years agoachille5
2 years, 2 months agoachille5
2 years, 1 month agoDirectly_Connected
2 years, 1 month agoMedusa8
2 years, 4 months agoachille5
2 years, 2 months agostalkr3
2 years agoEmlia1
2 years, 4 months agoAhmedoooooo
2 years, 5 months ago