Question 1 of 30
In a corporate environment, a network security engineer is tasked with configuring a Cisco Firepower device to enforce security policies based on user roles and application types. The engineer needs to create a policy rule that allows access to a specific application for users in the \"Finance\" department while blocking access to that application for all other departments. Additionally, the engineer must ensure that the policy rule is applied only during business hours (9 AM to 5 PM) and logs all denied access attempts. Which configuration approach should the engineer take to achieve this?
Create a rule that specifies the "Finance" user group, allows access to the application, and applies a time-based condition for business hours while enabling logging for denied attempts.
Set up a global rule that allows access to all applications for the "Finance" department without any time restrictions or logging.
Implement a rule that blocks all access to the application for all users and then create an exception for the "Finance" department without any time constraints.
Configure a rule that allows access to the application for all users during business hours but logs all access attempts regardless of the department.

Preparing for CISCO 300-710 Securing Networks with Cisco Firepower (SNCF)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free