Question 1 of 30
In a corporate environment, a network engineer is tasked with configuring a Cisco firewall to enhance security for a web application that handles sensitive customer data. The firewall must be set up to allow HTTP and HTTPS traffic while blocking all other types of traffic. Additionally, the engineer needs to implement a rule that logs all denied traffic for auditing purposes. Which configuration approach should the engineer take to ensure both security and compliance with logging requirements?
Create an access control list (ACL) that permits HTTP and HTTPS traffic, followed by a rule that denies all other traffic and enables logging for denied packets.
Configure the firewall to allow all traffic and then apply a logging rule to capture denied packets.
Set up a default deny rule and only allow traffic from specific IP addresses while logging all allowed traffic.
Implement a stateful inspection rule that allows all established connections and logs all incoming traffic.

Preparing for CISCO 700-765 Cisco Security Architecture for System Engineers? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free