Câu 53: 300-710: Securing Networks with Cisco Firepower (300-710 SNCF)
A VPN user is unable to connect to web resources behind the Cisco FTD device terminating the connection. While troubleshooting, the network administrator determines that the DNS response are not getting through the Cisco FTD. What must be done to address this issue while still utilizing Snort IPS rules?
Nội dung câu hỏi
A VPN user is unable to connect to web resources behind the Cisco FTD device terminating the connection. While troubleshooting, the network administrator determines that the DNS response are not getting through the Cisco FTD. What must be done to address this issue while still utilizing Snort IPS rules?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Uncheck the ג€Drop when Inlineג€ box in the intrusion policy to allow the traffic
- B. Modify the Snort rules to allow legitimate DNS traffic to the VPN users — đáp án hiện tại
- C. Disable the intrusion rule thresholds to optimize the Snort processing
- D. Decrypt the packet after the VPN flow so the DNS queries are not inspected
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.
Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.