Month End Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam 300-710 All Questions
Exam 300-710 All Questions

View all questions & answers for the 300-710 exam

Cisco CCNP Security 300-710 Question # 19 Topic 3 Discussion

300-710 Exam Topic 3 Question 19 Discussion:
Question #: 19
Topic #: 3

An engineer is troubleshooting a file that is being blocked by a Cisco FTD device on the network.

The user is reporting that the file is not malicious.

Which action does the engineer take to identify the file and validate whether or not it is malicious?


A.

identify the file in the intrusion events and submit it to Threat Grid for analysis.


B.

Use FMC file analysis to look for the file and select Analyze to determine its disposition.


C.

Use the context explorer to find the file and download it to the local machine for investigation.


D.

Right click the connection event and send the file to AMP for Endpoints to see if the hash is malicious.


Get Premium 300-710 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.