Multiple Choice
A VPN user is unable to connect to web resources behind the Cisco FTD device terminating the connection. While troubleshooting, the network administrator determines that the DNS responses are not getting through the Cisco FTD. What must be done to address this issue while still utilizing Snort IPS rules?
A) Uncheck the "Drop when Inline" box in the intrusion policy to allow the traffic
B) Modify the Snort rules to allow legitimate DNS traffic to the VPN users
C) Disable the intrusion rule thresholds to optimize the Snort processing
D) Decrypt the packet after the VPN flow so the DNS queries are not inspected
Correct Answer:

Verified
Correct Answer:
Verified
Q53: Which Cisco Firepower feature is used to
Q54: What are two features of bridge-group interfaces
Q55: In a Cisco AMP for Networks deployment,
Q56: Which two types of objects are reusable
Q57: Which connector is used to integrate Cisco
Q59: What is the maximum SHA level of
Q60: On the advanced tab under inline set
Q61: What is the benefit of selecting the
Q62: Which two remediation options are available when
Q63: An organization has a compliance requirement to