00:00

QUESTION 31

- (Exam Topic 1)
On Cisco Firepower Management Center, which policy is used to collect health modules alerts from managed devices?

Correct Answer: A

QUESTION 32

- (Exam Topic 1)
An engineer must force an endpoint to re-authenticate an already authenticated session without disrupting the endpoint to apply a new or updated policy from ISE. Which CoA type achieves this goal?

Correct Answer: C

QUESTION 33

- (Exam Topic 1)
What must be used to share data between multiple security products?

Correct Answer: B

QUESTION 34

- (Exam Topic 2)
For Cisco IOS PKI, which two types of Servers are used as a distribution point for CRLs? (Choose two)

Correct Answer: BE
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/15-mt/sec-pki-15-mtbook/sec-pk

QUESTION 35

- (Exam Topic 1)
Refer to the exhibit.
350-701 dumps exhibit
A network administrator configured a site-to-site VPN tunnel between two Cisco IOS routers, and hosts are unable to communicate between two sites of VPN. The network administrator runs the debug crypto isakmp sa command to track VPN status. What is the problem according to this command output?

Correct Answer: C