exam questions

Exam 500-220 All Questions

View all questions & answers for the 500-220 exam

Exam 500-220 topic 4 question 52 discussion

Actual exam question from Cisco's 500-220
Question #: 19
Topic #: 4
[All 500-220 Questions]


Refer to the exhibit. Which outcome occurs when logging is set to Enabled?

  • A. Outbound flows are sent to a configured syslog server if a syslog sender is configured for flows.
  • B. The hits counter within this section is now enabled.
  • C. This firewall rule is now enabled.
  • D. Inbound flows are sent to a configured syslog server if a syslog server configured for flows.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
txami
Highly Voted 1 year, 10 months ago
Selected Answer: A
I think A is correct: we are logging outbound traffic to Syslog server.
upvoted 8 times
...
sattori
Most Recent 5 days, 2 hours ago
Selected Answer: C
The exhibit shows the syslog server is accessible via AutoVPN (enable means-allowed, disable-deny). If the traffic passes through the site-to-site AutoVPN connection the traffic will then be subject to the 'Site-to-site outbound firewall' rules and as such an allow rule may be required. This can be configured in Security & SD-WAN > Configure > Site-to-site VPN > Organization-wide settings > Add a rule
upvoted 1 times
...
AnyParka0B
7 months ago
Selected Answer: A
For one, it's outbound rules. For two, see source below. "Logging: If syslog reporting is enabled, denotes whether or not to report on a given rule." Source: https://documentation.meraki.com/General_Administration/Cross-Platform_Content/Using_Layer_3_Firewall_Rules
upvoted 1 times
...
marciociano
10 months, 1 week ago
Selected Answer: C
The correct is C. The exibit shows an MX Firewall rule and "Logging" option is shown when the "Flows" option is selected on the Syslog server configuration. So the "Logging=enabled" means that this rule is allowed to send data to Syslog. I tested this on my lab. "If the Flows role is enabled for Meraki MX reporting, logging for individual firewall rules can be enabled/disabled on the Security & SD-WAN > Configure > Firewall page, under the Logging column as shown below" Ref: https://documentation.meraki.com/General_Administration/Monitoring_and_Reporting/Meraki_Device_Reporting_-_Syslog%2C_SNMP%2C_and_API
upvoted 1 times
...
marciociano
10 months, 1 week ago
The correct is C. The exibit shows an MX Firewall rule and "Logging" option is shown when the "Flows" option is selected on the Syslog server configuration. So the "Logging=enabled" means that this rule is allowed to send data to Syslog. I tested this on my lab. "If the Flows role is enabled for Meraki MX reporting, logging for individual firewall rules can be enabled/disabled on the Security & SD-WAN > Configure > Firewall page, under the Logging column as shown below" Ref: https://documentation.meraki.com/General_Administration/Monitoring_and_Reporting/Meraki_Device_Reporting_-_Syslog%2C_SNMP%2C_and_API
upvoted 1 times
...
rnunes1110
1 year ago
Selected Answer: A
Correct: A
upvoted 1 times
...
Moody7245
1 year, 9 months ago
"Inbound and outbound flows will generate a syslog message showing the source and destination along with port numbers and the firewall rule that they matched. For inbound rules, 1=deny and 0=allow." https://documentation.meraki.com/General_Administration/Monitoring_and_Reporting/Syslog_Server_Overview_and_Configuration Should be A
upvoted 1 times
...
golf4life
1 year, 10 months ago
Should be A - syslog can be configured for both outbound rules and inbound rules. Would like to see the reasoning for D?
upvoted 1 times
...
Netmanb2k
2 years ago
Sorry D is correct
upvoted 1 times
...
Netmanb2k
2 years ago
Should be A
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago