CISCO 700-765 Cisco Security Architecture for System Engineers Free Practice Test — 30 Questions

Exam Code: 700-765

30 questions · Full explanations · No account required

Free
Question 1 of 30

In a corporate environment, a network engineer is tasked with configuring a Cisco firewall to enhance security for a web application that handles sensitive customer data. The firewall must be set up to allow HTTP and HTTPS traffic while blocking all other types of traffic. Additionally, the engineer needs to implement a rule that logs all denied traffic for auditing purposes. Which configuration approach should the engineer take to ensure both security and compliance with logging requirements?

Create an access control list (ACL) that permits HTTP and HTTPS traffic, followed by a rule that denies all other traffic and enables logging for denied packets.
Configure the firewall to allow all traffic and then apply a logging rule to capture denied packets.
Set up a default deny rule and only allow traffic from specific IP addresses while logging all allowed traffic.
Implement a stateful inspection rule that allows all established connections and logs all incoming traffic.

About the CISCO 700-765 Cisco Security Architecture for System Engineers Certification

These free practice questions are designed to help you assess your readiness for the CISCO 700-765 Cisco Security Architecture for System Engineers exam by Cisco. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.