00:00

QUESTION 76

- (Exam Topic 3)
An engineer needs to configure an access control policy rule to always send traffic for inspection without using the default action. Which action should be configured for this rule?

Correct Answer: B
https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/acce the first three access control rules in the policy—Monitor, Trust, and Block—cannot inspect matching
traffic. Monitor rules track and log but do not inspect network traffic, so the system continues to match traffic against additional rules to determine whether to permit or deny it
https://www.cisco.com/c/en/us/td/docs/security/firepower/623/configuration/guide/fpmc-config-guide-v623/acce

QUESTION 77

- (Exam Topic 3)
Why is it important for the organization to have an endpoint patching strategy?

Correct Answer: D

QUESTION 78

- (Exam Topic 2)
What is the purpose of the My Devices Portal in a Cisco ISE environment?

Correct Answer: A
Reference: https://www.cisco.com/c/en/us/td/docs/security/ise/2-4/mydevices/b_mydevices_2x.html

QUESTION 79

- (Exam Topic 1)
Which benefit is provided by ensuring that an endpoint is compliant with a posture policy configured in Cisco ISE?

Correct Answer: A

QUESTION 80

- (Exam Topic 3)
What is the purpose of CA in a PKI?

Correct Answer: A
Reference: https://cheapsslsecurity.com/blog/understanding-the-role-of-certificate-authorities-in-pki/