4/5 - (1 vote)

Get Latest [Jun-2022] Conduct effective penetration tests using ActualCollection 300-710

Penetration testers simulate 300-710 exam PDF

Exam Content

The content of the Cisco 300-710 test revolves around four domains, each containing specific knowledge and skills that the candidates must develop competency in. These areas have different percentage weights in the exam syllabus, which shows how many questions related to this or that topic will appear in the test. While preparing for your certification exam, you need to pay special attention to the sections with higher weight. However, you need to remember that only mastering all the topics will guarantee success in your test. The detailed outline of the domains covered in Cisco 300-710 is provided below.

  • Deployment – 30%

Within this first topic, the examinees need to demonstrate that they have the relevant skills in implementing NGFW modes (including routed mode as well as transparent mode); implementing NGIPS modes (including passive & inline); implementing high availability options (including link redundancy, standby/active failover, multi-instance); describing IRB configurations.

  • Configuration – 30%

This domain requires that the students have the expertise in a wide range of knowledge areas. For starters, they should have proficiency in configuring system settings within Cisco Firepower Management Center as well as configuring the policies, such as access control, malware & file, intrusion, identity, SSL, DNS, prefilter within Cisco Firepower Management Center. In addition, they need to able to customize the following features with the help of Cisco Firepower Management Center: network discovery, correlation, application detectors (Open AppID), and actions. This part also encompasses such skills as customizing objects with the help of Firepower Management Center (including object management as well as intrusion rules) and customizing devices with the help of Firepower Management Center (including device Management, VPN, NAT, QoS, Certificates, Platform Settings).

  • Management & Troubleshooting – 25%

To tackle the questions associated with this subject area, the test takers should develop their competency in performing troubleshooting with the help of FMC CLI as well as GUI; customizing dashboards as well as reporting in FMC; troubleshooting with the help of packet capture actions; analyzing standard reports and risk.

  • Integration – 15%

The last section in the Cisco 300-710 exam encompasses the individuals’ skills, such as customizing Cisco AMP for Networks within Firepower Management Center; configuring Cisco AMP for Endpoints within Firepower Management Center; implementing Threat Intelligence Director for third-party security intelligence feeds. Moreover, the learners should possess the expertise in describing the utilization of Cisco Threat Response for the needs of security investigations; describing Cisco FMC PxGrid Integration using Cisco Identify Services Engine (ISE); describing the functionality of Rapid Threat Containment (RTC) within Firepower Management Center.

Domain #1. Deployment

The first domain talks about the Cisco security solution deployment. About 30% of the total content comes from this section. As far as learning is concerned, it talks about the implementation of NGFW and NGIPS modes along with high availability options implementation. Routed mode and transparent modes are also covered extensively. Finally, IRB configuration has given its due importance along with link redundancy, multi-instance, inline, and active failover.

Cisco 300-710 Exam Topics:

Section Weight Objectives
Integration 15% – Configure Cisco AMP for Networks in Firepower Management Center
– Configure Cisco AMP for Endpoints in Firepower Management Center
– Implement Threat Intelligence Director for third-party security intelligence feeds
– Describe using Cisco Threat Response for security investigations
– Describe Cisco FMC PxGrid Integration with Cisco Identify Services Engine (ISE)
– Describe Rapid Threat Containment (RTC) functionality within Firepower Management Center
Configuration 30% – Configure system settings in Cisco Firepower Management Center
– Configure these policies in Cisco Firepower Management Center

  • Access control
  • Intrusion
  • Malware and file
  • DNS
  • Identity
  • SSL
  • Prefilter

– Configure these features using Cisco Firepower Management Center

  • Network discovery
  • Application detectors (Open AppID)
  • Correlation
  • Actions

– Configure objects using Firepower Management Center

  • Object Management
  • Intrusion Rules

– Configure devices using Firepower Management Center

  • Device Management
  • NAT
  • VPN
  • QoS
  • Platform Settings
  • Certificates
Management and Troubleshooting 25% – Troubleshoot with FMC CLI and GUI
– Configure dashboards and reporting in FMC
– Troubleshoot using packet capture procedures
– Analyze risk and standard reports
Deployment 30% – Implement NGFW modes

  • Routed mode
  • Transparent mode

– Implement NGIPS modes

  • Passive
  • Inline

– Implement high availability options

  • Link redundancy
  • Active/standby failover
  • Multi-instance

– Describe IRB configurations

 

QUESTION 53
A network engineer is logged into the Cisco AMP for Endpoints console and sees a malicious verdict for an identified SHA-256 hash. Which configuration is needed to mitigate this threat?

 
 
 
 

QUESTION 54
Which CLI command is used to control special handling of ClientHello messages?

 
 
 
 

QUESTION 55
Which CLI command is used to generate firewall debug messages on a Cisco Firepower?

 
 
 
 

QUESTION 56
Which Cisco Firepower feature is used to reduce the number of events received in a period of time?

 
 
 
 

QUESTION 57
Refer to the exhibit An engineer is modifying an access control pokey to add a rule to inspect all DNS traffic that passes through the firewall After making the change and deploying the pokey they see that DNS traffic is not bang inspected by the Snort engine What is the problem?

 
 
 
 

QUESTION 58
In which two places can thresholding settings be configured? (Choose two.)

 
 
 
 
 

QUESTION 59
IT management is asking the network engineer to provide high-level summary statistics of the Cisco FTD appliance in the network. The business is approaching a peak season so the need to maintain business uptime is high. Which report type should be used to gather this information?

 
 
 
 

QUESTION 60
A network administrator notices that SI events are not being updated The Cisco FTD device is unable to load all of the SI event entries and traffic is not being blocked as expected. What must be done to correct this issue?

 
 
 
 

QUESTION 61
After using Firepower for some time and learning about how it interacts with the network, an administrator is trying to correlate malicious activity with a user Which widget should be configured to provide this visibility on the Cisco Firepower dashboards?

 
 
 
 

QUESTION 62
Which CLI command is used to generate firewall debug messages on a Cisco Firepower?

 
 
 
 

QUESTION 63
Which feature within the Cisco FMC web interface allows for detecting, analyzing and blocking malware in network traffic?

 
 
 
 

QUESTION 64
A VPN user is unable to conned lo web resources behind the Cisco FTD device terminating the connection. While troubleshooting, the network administrator determines that the DNS responses are not getting through the Cisco FTD What must be done to address this issue while still utilizing Snort IPS rules?

 
 
 
 

QUESTION 65
A network engineer is configuring URL Filtering on Firepower Threat Defense. Which two port requirements on the Firepower Management Center must be validated to allow communication with the cloud service? (Choose two.)

 
 
 
 
 

QUESTION 66
With Cisco Firepower Threat Defense software, which interface mode must be configured to passively receive traffic that passes through the appliance?

 
 
 
 

QUESTION 67
A network administrator is seeing an unknown verdict for a file detected by Cisco FTD. Which malware policy configuration option must be selected in order to further analyse the file in the Talos cloud?

 
 
 
 

QUESTION 68
Which firewall design allows a firewall to forward traffic at layer 2 and layer 3 for the same subnet?

 
 
 
 

Tested Material Used To 300-710 Test Engine: https://www.actualcollection.com/300-710-exam-questions.html

Related Links: www.stes.tyc.edu.tw www.stes.tyc.edu.tw www.stes.tyc.edu.tw www.stes.tyc.edu.tw www.stes.tyc.edu.tw www.stes.tyc.edu.tw