Vendor: Cisco
Certifications: CCNA Cyber Ops
Exam Name: Understanding Cisco Cybersecurity Fundamentals
Exam Code: 210-250
Total Questions: 80 Q&As
How is traffic forwarded from the Cisco ASA to the FirePOWER services module for analysis?
A. The SFR is transparent and automatically sees all traffic.
B. A service policy redirects traffic from the Cisco ASA packet-processing path to the SFR
C. The SFR has a dedicated data interface
D. The SFR is a standalone appliance that is inserted inline in the data path
Correct Answer: B

Which FirePOWER services capability supports seamless processing after an adaptive security appliance stateful failover event?
A. midsession pickup
B. TCP intercept
C. SFR stateful failover
D. FireSIGHT central policy distribution
Correct Answer: A

Which three options are important when positioning a next-generation firewall solution? (Choose three.)
A. performance
B. resistance to evasion
C. current install base
D. interoperability
E. stability
F. nonproprietary
Correct Answer: ABE

A. categories
B. reputation scores
C. regular expressions
D. IP address filters
Correct Answer: B

Which action does Dynamic Content Analysis enable the Web Security Appliance to do?
A. Reclassify miscategorized sites.
B. Determine the most likely category of the website delivering content.
C. Block web content based on the Web Reputation of the serving site.
D. Choose the best AV engine to scan content.
E. Redirect the user to a site that the security administrator chooses.
Correct Answer: B

NGIPS rulesets are configured using which management application?
A. FireSIGHT Management Center
B. Cisco IDM
C. Cisco IME
D. Cisco ASDM
Correct Answer: A

Why does L4TM require T1 to be in promiscuous mode?
A. To transmit TCP reset packets
B. To process traffic that is not intended for its MAC address
C. To receive Ethernet broadcasts
D. To bind with other promiscuous mode ports
Correct Answer: B

With which hardware option must Cisco ASA models below the 5585-X be sold to support FirePOWER services?
A. SSP module
B. FireSIGHT Management Center
D. FirePOWER services bundle
Correct Answer: A

A. Cisco ASA Identity Firewall
B. Microsoft Active Directory Agent
C. Cisco Directory Agent
D. Sourcefire User Agent
Correct Answer: D

In the access log, what does an ACL tag beginning with BLOCK_ADMIN indicate?
A. The transaction was blocked because of application or object properties.
B. The malware category is set to blocking mode.
C. The transaction was manually blocked by the administrative user.
D. The destination was manually added to the block list.
Correct Answer: A

Which recommendation should be made to increase scalability, performance, and resiliency?
A. Create a Cisco ASA failover pair.
B. Upgrade the current Cisco ASA
C. Upgrade from the FirePOWER software module to the hardware module
D. Deploy Cisco ASA clustering.
Correct Answer: D

You are helping the customer configure authentication. A new AsyncOS upgrade becomes available; what should you do?
A. Avoid mentioning the upgrade to the customer.
B. Immediately show the customer how to run the CLI command upgrade.
C. Contact customer support and ask them to run the upgrade for you.
D. Schedule a convenient time to upgrade again, backing up the configuration before and after the upgrade.
Correct Answer: D

