時間限定無料ダウンロード 最新の300-710日本語問題集で2026年最新の300-710日本語試験問題
最新のCisco 300-710日本語認定の練習テスト問題
質問 # 253
Cisco FTDソフトウェアでは、アプライアンスを通過するトラフィックをパッシブに受信するように設定する必要があるインターフェイスモードはどれですか。
- A. ファイアウォール
- B. IPSのみ
- C. ERSPAN
- D. タップ
正解:C
解説:
Reference:
v64/interface_overview_for_firepower_threat_defense.html
質問 # 254
Cisco FMCのポートオブジェクトの機能は何ですか。
- A. TCP、UDP、およびICMP以外のプロトコルを表す
- B. ルールで送信元と宛先の両方のポート条件を設定するときにトランスポートプロトコルを混在させる
- C. すべてのプロトコルを同じ方法で表す
- D. アクセスコントロールルールのソースポート条件にTCPまたはUDP以外のプロトコルを追加する。
正解:A
解説:
Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config-guide-v62/reusable_objects.html
質問 # 255
エンジニアが Cisco FMC で URL オブジェクトを作成しています。 オブジェクトがアクセス コントロール ポリシーの HTTPS トラフィックと一致するようにするには、どのように設定する必要がありますか?
- A. Web サイト証明書のサブジェクト共通名を使用します
- B. 一致させるプロトコル (HTTP または HTTPS) を指定します。
- C. HTTPS を使用する個々の Web ページへのパスを定義します。
- D. Web サイトのサブドメインを含む FQDN を使用します。
正解:D
質問 # 256
展示を参照してください。
他のすべてのWebサイトへの同じ通信を防ぎながら、このWebサイトへのアクセスを修正するにはどうすればよいですか?
- A. ポート443から172.1.150のみを許可するアクセス制御ポリシールールを作成します
- B. ポート80から172.1.150のみを許可するアクセス制御ポリシールールを作成します。
- C. 侵入ポリシールールを作成して、Snortがポート80から172.1.150のみを許可するようにします。
- D. 侵入ポリシールールを作成して、Snortがポート443から172.1.1.50のみを許可するようにします。
正解:B
質問 # 257
展示品を参照してください。
既存の Cisco FMC 構成の影響は何ですか?
- A. Cisco FMC と管理対象デバイス間の SSL 暗号化通信チャネルがプレーンテキスト通信チャネルになります。
- B. Cisco FMC と Cisco FTD 間の管理接続が無効になっています。
- C. 管理対象デバイスが Cisco FMC から削除されます。
- D. Cisco FMC と管理対象デバイス間の通信用のリモート管理ポートがポート 8443 に変更されます。
正解:B
質問 # 258
セキュリティエンジニアはファイアウォールコンソールとエンドポイントコンソールを管理していますが、両方のコンソールでイベントを確認し、特定のファイルのブロックを変更するのは困難で時間のかかる作業です。このプロセスを効率化するには、エンジニアはどのような対策を講じるべきでしょうか?
- A. Cisco Secure Endpoint コンソール内で、コネクタ GUID をコピーし、Cisco Secure Firewall Management Center (FMC) の AMP タブに貼り付けます。
- B. AMP タブを使用して、Secure FMC から Secure FMC と Cisco Secure Endpoint 間の統合を開始します。
- C. Cisco Secure Endpoint コンソールから、API キーを作成してコピーし、Cisco Secure AMP タブに貼り付けます。
- D. Secure FMC から、Cisco Secure Endpoint オブジェクトを作成し、Cisco Secure Endpoint コンソールでそのオブジェクトを参照します。
正解:B
解説:
To streamline the process of reviewing events and modifying blocking of specific files across both the firewall console and the endpoint console, the security engineer should initiate the integration between Secure FMC and Cisco Secure Endpoint (formerly AMP for Endpoints) from the Secure FMC using the AMP tab.
Steps:
In the FMC, navigate to Devices > Device Management.
Select the device and go to the AMP tab.
Initiate the integration by configuring the necessary API credentials and linking the FMC to the Cisco Secure Endpoint console.
This integration allows the security engineer to view endpoint events and apply blocking actions directly from the FMC, consolidating the management tasks. This approach simplifies the workflow by providing a single interface to manage both network and endpoint security, reducing the time and effort required to maintain security across the organization.
質問 # 259
Cisco Firepowerシステムでアクセスコントロールポリシーが機能するのはどの2つの方法ですか? (2つ選択してください。)
- A. システムは、信頼できるトラフィックの予備検査を実行して、信頼できるパラメータと一致することを検証します。
- B. 設定の変更が導入されると、トラフィック検査が一時的に中断される可能性があります。
- C. システムは侵入検査を実行した後、ファイル検査を実行します。
- D. ファイルポリシーは、関連する変数セットを使用して侵入防止を実行します。
- E. セキュリティインテリジェンスデータに基づいてトラフィックをブロックできます。
正解:B、E
質問 # 260
ネットワーク ユーザーは、インターネット アクセスに関して断続的な問題を経験しています。エンジニアは、この問題が NAT 枯渇によって発生していることを確認しました。エンジニアは、リソースが不足することなく、より多くのユーザーにインターネット アクセスを提供するために、動的 NAT 構成をどのように変更する必要がありますか?
- A. [詳細設定] タブでインターフェイス PAT へのフォールスルーを設定します。
- B. ユーザーのオーバーフローを処理するためにアイデンティティ NAT ルールを追加します。
- C. 使用中のネットワーク オブジェクトに対して追加の静的 NAT を定義します。
- D. 動的自動 NAT ルールを動的手動 NAT に変換します。
正解:A
質問 # 261
管理者がSNORT検査ポリシーを設定していて、CiscoFMCに失敗した展開メッセージが表示されています。管理者は、トラブルシューティングに役立つCisco TAC用にどのような情報を生成する必要がありますか?
- A. A "show tech" for the Cisco FMC.
- B. A "troubleshoot" file for the Cisco FMC
- C. A "show tech" file for the device in question
- D. A Troubleshoot" file for the device in question.
正解:D
質問 # 262
エンジニアがCisco Secure Firewall Threat Defenseデバイスを設定している際に、新しいゼロデイ攻撃のデータペイロード内の特定のパターンを検出したことを理由に、新しい侵入ルールを作成するよう警告が表示されます。ルールの作成者と作成日を示す行を追加するには、どのキーワードタイプを使用する必要がありますか?
- A. 内容
- B. gtp_info
- C. メタデータ
- D. 参考
正解:C
解説:
When creating a new intrusion rule in a Cisco Secure Firewall Threat Defense (FTD) device, the keyword type " metadata " must be used to add a line that identifies the author of the rule and the date it was created.
The metadata keyword is used to store additional information about the rule, such as authorship and creation date.
Steps:
In FMC, navigate toPolicies > Intrusion > Rules.
Create a new rule or edit an existing one.
Use the " metadata " keyword to add information about the author and date.
Example:
metadata: created_at 2023-06-15, author " John Doe " ;
By using the metadata keyword, you ensure that the rule contains relevant information for tracking its creation and authorship, which is essential for maintaining rule documentation and accountability.
References:Cisco Secure Firewall Management Center Intrusion Policy Guide, Chapter on Custom Rule Creation and Metadata Usage.
質問 # 263
組織が、Cisco Secure Endpoint によってフラグが付けられているカスタム アプリケーションを作成しました。
アプリケーションはフラグ付けの対象から除外される必要があります。要件を満たすためのプロセスは何ですか?
- A. 情報ストア パスを使用するようにカスタム アプリケーションを構成します。
- B. カスタム検出リストを変更して、カスタム アプリケーションを除外します。
- C. カスタム アプリケーションを DFC リストに追加し、ポリシーを更新します。
- D. カスタム アプリケーションのハッシュ値を事前に計算し、許可されたアプリケーションに追加します。
正解:D
解説:
To exempt a custom application from being flagged by Cisco Secure Endpoint, the organization must precalculate the hash value of the custom application and add it to the allowed applications list. This process involves creating a hash of the executable file, which uniquely identifies it, and then configuring Cisco Secure Endpoint to recognize this hash as trusted.
Steps:
Calculate the hash value (e.g., SHA-256) of the custom application executable. In the Cisco Secure Endpoint management console, navigate to the policy configuration. Add the calculated hash value to the list of allowed applications or exclusions.
Save and deploy the updated policy.
By adding the hash value to the allowed applications, Cisco Secure Endpoint will recognize the custom application as trusted and will no longer flag it.
質問 # 264
ある企業は、IPS を備えた Cisco Secure Firewall Threat Defense を導入しています。スパイク時に検査なしでトラフィックを通過させ、ネットワーク トラフィックが維持されるようにするには、インライン モードで何を実装する必要がありますか?
- A. リンク状態の伝播を選択
- B. Snort フェールセーフ オプションを設定する
- C. インターフェースモードをルーティングに変更する
- D. MTUを9000に増やす
正解:B
質問 # 265
組織には、ブリッジ グループを使用して内部インターフェイスから外部インターフェイスにトラフィックを渡す Cisco FTD があります。 隣接する Cisco デバイスに関する情報を収集したり、環境でマルチキャストを使用したりすることはできません。 この問題を解決するには、何をする必要がありますか?
- A. CDP トラフィックを許可するファイアウォール ルールを作成します。
- B. ファイアウォール モードを透過に変更します。
- C. ファイアウォール モードをルーティングに変更します。
- D. ファイアウォール インターフェイスを使用してブリッジ グループを作成します。
正解:B
解説:
"In routed firewall mode, broadcast and multicast traffic is blocked even if you allow it in an access rule..."
"The bridge group does not pass CDP packets packets..."
https://www.cisco.com/c/en/us/td/docs/security/asa/asa913/configuration/general/asa-913- general-config/intro-fw.html
質問 # 266
AMPがファイルをマルウェアとして識別したことをCisco Threat Responseが通知した場合、どのアクションを実行する必要がありますか?
- A. テクニカルサポートのためにスナップショットをシスコに送信します。
- B. 調査結果を外部の脅威分析エンジンに転送する。
- C. Cisco Threat Responseがマルウェアを自動的にブロックするのを待ちます。
- D. 悪意のあるファイルをブロックリストに追加します。
正解:D
質問 # 267
エンジニアは、Cisco Secure Firewall Threat Defense インスタンスを展開する必要があります。この会社では、Secure Firewall Threat Defense の展開によって、どのような障害が発生した場合でもビジネス トラフィックが許可され、データ センターの境界で IPS によって接続の問題が引き起こされないことを望んでいます。エンジニアはどの実装モードを使用する必要がありますか。
- A. Snort フェールオープン
- B. ハードウェアバイパス
- C. インラインセット
- D. 受動的
正解:A
質問 # 268
組織内のネットワークデバイスを管理および監視するためのネットワーク監視ツールを導入した後、Cisco FMCのMIBを手動でアップロードする必要があることに気付きました。どのフォルダにMIBファイルをアップロードしますか?
- A. /etc/sf/DCEALERT.MIB
- B. /sf/etc/DCEALERT.MIB
- C. /etc/sf/DCMIB.ALERT
- D. system/etc/DCEALERT.MIB
正解:A
解説:
https://www.cisco.com/c/en/us/td/docs/security/firesight/541/firepower-module-user-guide/asa- firepower-module-user-guide-v541/Intrusion-External-Responses.pdf
質問 # 269
組織にはクライアントからサーバーを保護するためのコンプライアンス要件がありますが、クライアントとサーバーはすべて同じレイヤー3ネットワーク上にあります。クライアントまたはサーバーのIPサブネットを再アドレス指定せずに、セグメンテーションはどのように実現されますか?」
- A. クライアントとサーバーの間にファイアウォールを透過モードで展開します。
- B. クライアントとサーバー間にルーティングモードでファイアウォールを展開します
- C. 同じサブネット上にとどまりながら、クライアントのIPアドレスを変更します。
- D. 同じサブネットにとどまりながら、サーバーのIPアドレスを変更します
正解:A
解説:
Traditionally, a firewall is a routed hop and acts as a default gateway for hosts that connect to one of its screened subnets. A transparent firewall, on the other hand, is a Layer 2 firewall that acts like a "bump in the wire," or a "stealth firewall," and is not seen as a router hop to connected devices. However, like any other firewall, access control between interfaces is controlled, and all of the usual firewall checks are in place. Layer 2 connectivity is achieved by using a "bridge group" where you group together the inside and outside interfaces for a network, and the Firepower Threat Defense device uses bridging techniques to pass traffic between the interfaces.
Each bridge group includes a Bridge Virtual Interface (BVI) to which you assign an IP address on the network. You can have multiple bridge groups for multiple networks. In transparent mode, these bridge groups cannot communicate with each other.
質問 # 270
エンジニアがCisco Secure Firewall Threat Defenseデバイスを設定しており、新たなゼロデイエクスプロイトのデータペイロードにおける特定のパターンの検出に基づいて、新しい侵入ルールを作成したいと考えています。ルールの作成者と作成日を識別する行を追加するには、どのキーワードタイプを使用する必要がありますか?
- A. gtp_info
- B. コンテンツ
- C. メタデータ
- D. 参照
正解:C
解説:
When creating a new intrusion rule in a Cisco Secure Firewall Threat Defense (FTD) device, the keyword type "metadata" must be used to add a line that identifies the author of the rule and the date it was created. The metadata keyword is used to store additional information about the rule, such as authorship and creation date.
Steps:
In FMC, navigate to Policies > Intrusion > Rules.
Create a new rule or edit an existing one.
Use the "metadata" keyword to add information about the author and date.
Example:
metadata: created_at 2023-06-15, author "John Doe";
By using the metadata keyword, you ensure that the rule contains relevant information for tracking its creation and authorship, which is essential for maintaining rule documentation and accountability.
質問 # 271
トラブルシューティングファイルを生成するために、Cisco FMC CLIでどのコマンドを入力しますか?
- A. sudo sf_troubleshoot.pl
- B. show tech-support chassis
- C. show running-config
- D. system support diagnostic-cli
正解:A
解説:
Reference:
https://www.cisco.com/c/en/us/support/docs/security/sourcefire-defense-center/117663-technote- SourceFire-00.html
質問 # 272 
図を参照してください。エンジニアが Cisco Secure Firewall Threat Defense の新しいインスタンスを展開しています。クライアント A とクライアント B が Server_A から DHCP 経由で IP アドレスを受信できるようにするために、エンジニアは次にどの操作を行う必要がありますか?
- A. Secure Firewall Management Center を使用して、DHCP リレー構成プロパティのオプション 82 を無効にします。
- B. Secure Firewall Device Manager を使用して、すべての DHCP Snort ルールを無効にします。
- C. Cisco Secure Firewall Management Center を使用して、DHCP トラフィックを許可するアクセス ルールを追加します。
- D. Secure Firewall Threat Defense の DHCP リレーを使用して、Server_A に別の DHCP プールを追加します。
正解:C
質問 # 273
......
検証済みの300-710日本語問題集と解答で一年間無料最速更新:https://jp.fast2test.com/300-710J-premium-file.html