[2026年01月] 検証済み Cisco 試験問題集 300-710日本語 試験学習ガイド [Q38-Q53]

Share

[2026年01月] 検証済みCisco試験問題集で300-710日本語試験学習ガイド

ベスト品質のCisco 300-710日本語試験解答リアル練習試験問題集で[2026]

質問 # 38
インターフェイスの最大スループットより大きいレート制限を持つQoSルールを指定した結果はどうなりますか?

  • A. レート制限ルールは無効になっています。
  • B. 一致するトラフィックはレート制限されません。
  • C. システムはすべてのトラフィックをレート制限します。
  • D. システムは繰り返し警告を生成します。

正解:B

解説:
Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config-guide-v62/quality_of_service_qos.pdf


質問 # 39
ネットワーク エンジニアは Cisco Firepower 4100 アプライアンスを導入しており、高可用性を実現するためにマルチインスタンス環境を構成する必要があります。この設定の右側のシーケンスに、左側のアクションをドラッグ アンド ドロップします。

正解:

解説:

Explanation:
The correct sequence of actions for configuring a multi-instance environment for high availability on a Cisco Firepower 4100 appliance is as follows:
* Add a resource profile for container instances. A resource profile defines the CPU, RAM, and disk space allocation for each container instance. You can create multiple resource profiles with different resource
* settings and assign them to different container instances1.
* Add a MAC pool prefix and view the MAC address for the container instance interfaces. A MAC pool prefix is a 24-bit prefix that is used to generate MAC addresses for the container instance interfaces.
You can specify a custom MAC pool prefix or use the default one. You can also view the MAC addresses that are assigned to each container instance interface1.
* Configure interfaces. You need to configure the physical interfaces, EtherChannels, and VLAN subinterfaces that will be used by the container instances. You can also configure shared interfaces that can be used by multiple container instances on the same security module/engine1.
* Add a Standalone Firepower Threat Defense for Cisco Secure Firewall Management Center. You need to add a logical device that runs a standalone Firepower Threat Defense (FTD) application instance and register it with the Cisco Secure Firewall Management Center (FMC). This logical device will act as the management interface for the container instances1.
* Add a high-availability pair. You need to add another logical device that runs a standalone FTD application instance and register it with the FMC as well. Then, you need to configure high availability (HA) between the two standalone FTD logical devices. This will enable HA for the container instances that are associated with them1.


質問 # 40
展示を参照してください。

組織には、検査のためにすべてのソーシャルメディアトラフィックを送信することを目的としたアクセス制御ルールがあります。ルールをしばらく使用した後、管理者はトラフィックが検査されていないことに気付きますが、自動的に許可されますこの問題に対処するにはどうすればよいですか?

  • A. 侵入ポリシーをセキュリティを介した接続に変更します。
  • B. ルールアクションを信頼から変更して許可する
  • C. ソーシャルネットワークのURLをブロックリストに追加します
  • D. ルール内で選択したアプリケーションを変更します

正解:D


質問 # 41
病院ネットワークは、Cisco FMC管理対象デバイスをアップグレードする必要があり、ディザスタリカバリプロセスが実施されていることを確認する必要があります。ネットワークのダウンタイムを最小限に抑えるために何をする必要がありますか?

  • A. CiscoFMC管理対象デバイスをクラスタリング用に設定します。
  • B. フェールオーバー用にCiscoFMCを設定します
  • C. 冗長性を追加するためにISPへの2番目の回線を構成します
  • D. バックアップとして使用するために現在の構成のコピーを保持します

正解:D

解説:
Cisco Threat Intelligence Director (TID) and High Availability Configurations If you host TID on the active Firepower Management Center in a high availability configuration, the system does not synchronize TID configurations and TID data to the standby Firepower Management Center. We recommend performing regular backups of TID data on your active Firepower Management Center so that you can restore the data after failover.
https://www.cisco.com/c/en/us/td/docs/security/firepower/660/configuration/guide/fpmc-config- guide-v66/firepower_management_center_high_availability.html


質問 # 42
最近の買収により、中堅企業ではネットワーク帯域幅の使用率が高くなっています。ネットワーク運用チームは、ネットワーク帯域幅が増加したため、1つのCiscoFTDアプライアンスの展開をより大容量にスケールアップするよう求められています。この目標を達成するには、どの設計オプションを使用する必要がありますか?

  • A. パフォーマンスを向上させるために、ファイアウォールクラスタリングモードで複数のCiscoFTDアプライアンスを導入します。
  • B. VPNロードバランシングを使用して複数のCisco FTDアプライアンスを導入し、パフォーマンスを拡張します。
  • C. パフォーマンスを向上させるためにクラスタリングモードで複数のCisco FTDHAペアを導入する
  • D. パフォーマンスを向上させるために複数のCisco FTDHAペアを導入する

正解:A

解説:
https://www.cisco.com/c/en/us/td/docs/security/firepower/fxos/clustering/ftd-cluster- solution.html#concept_C8502505F840451C9E600F1EED9BC18E


質問 # 43
しきい値設定を構成できる2つの場所はどれですか。 (2つ選択してください。)

  • A. 各IPSルール
  • B. 各アクセス制御ルールについて
  • C. グローバルに、ネットワーク分析ポリシー内
  • D. プリプロセッサごと、ネットワーク分析ポリシー内
  • E. 侵入ポリシーごとにグローバルに

正解:A、E

解説:
You can set a global threshold across all traffic to limit how often events from a specific source or destination are logged and displayed per specified time period. For more information, see Understanding Thresholding, page 22-1 and Configuring Global Thresholds, page 22-3.
* You can set thresholds per shared object rule, standard text rule, or preprocessor rule in your intrusion policy configuration, as described in Configuring Event Thresholding, page 20-21.
https://www.cisco.com/c/en/us/td/docs/security/firesight/541/firepower-module-user-guide/asa- firepower-module-user-guide-v541/Intrusion-Global-Threshold.pdf


質問 # 44
Cisco FTDソフトウェアでは、アプライアンスを通過するトラフィックをパッシブに受信するように設定する必要があるインターフェイスモードはどれですか。

  • A. ERSPAN
  • B. ファイアウォール
  • C. タップ
  • D. IPSのみ

正解:A

解説:
Reference:
v64/interface_overview_for_firepower_threat_defense.html


質問 # 45

図を参照してください。エンジニアがCisco Secure Firewall Threat DefenseのインスタンスをIPSインラインペアモードのインターフェースで設定しています。要件を満たすには、インターフェースe1/6に何を設定する必要がありますか?

  • A. インラインセットMTUを1500に設定
  • B. リンク状態の伝播が無効
  • C. セキュリティゾーンが OUTSIDE_ZONE に設定されました
  • D. フェイルセーフが無効

正解:A


質問 # 46
ネットワークエンジニアはCisco Firepower 4100アプライアンスを導入しており、高可用性を実現するためにマルチインスタンス環境を構成する必要があります。左側のアクションを右側のシーケンスにドラッグ&ドロップして、この構成に追加してください。

正解:

解説:

Explanation:
The correct sequence of actions for configuring a multi-instance environment for high availability on a Cisco Firepower 4100 appliance is as follows:
Add a resource profile for container instances. A resource profile defines the CPU, RAM, and disk space allocation for each container instance.You can create multiple resource profiles with different resource settings and assign them to different container instances1.
Add a MAC pool prefix and view the MAC address for the container instance interfaces. A MAC pool prefix is a 24-bit prefix that is used to generate MAC addresses for the container instance interfaces. You can specify a custom MAC pool prefix or use the default one.You can also view the MAC addresses that are assigned to each container instance interface1.
Configure interfaces. You need to configure the physical interfaces, EtherChannels, and VLAN subinterfaces that will be used by the container instances.You can also configure shared interfaces that can be used by multiple container instances on the same security module/engine1.
Add a Standalone Firepower Threat Defense for Cisco Secure Firewall Management Center. You need to add a logical device that runs a standalone Firepower ThreatDefense (FTD) application instance and register it with the Cisco Secure Firewall Management Center (FMC).This logical device will act as the management interface for the container instances1.
Add a high-availability pair. You need to add another logical device that runs a standalone FTD application instance and register it with the FMC as well. Then, you need to configure high availability (HA) between the two standalone FTD logical devices.This will enable HA for the container instances that are associated with them1.


質問 # 47
FirePower Threat Defense v6.0 でサポートされている 2 つの動的ルーティング プロトコルはどれですか? (2 つ選択)

  • A. イス-イス
  • B. 静的ルーティング
  • C. EIGRP
  • D. OSPF
  • E. BGP

正解:D、E


質問 # 48
Cisco FMCで使用できるレポートテンプレートフィールド形式はどれですか。

  • A. bar chart
  • B. box lever chart
  • C. arrow chart
  • D. benchmark chart

正解:A

解説:
Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config- guide- v60/Working_with_Reports.html


質問 # 49
分析用に設定された機密性の高いネットワークに関連するポートとプロトコルに関する情報をアナリストに提供するCiscoFMCレポートはどれですか。

  • A. ネットワークレポート
  • B. 火力レポート
  • C. ホストレポート
  • D. マルウェアレポート

正解:A


質問 # 50
ステップをドラッグアンドドロップして、スタンバイCisco FMCでの自動デバイス登録失敗を左側から右側の正しい順序に復元します。すべてのオプションが使用されるわけではありません。

正解:

解説:

Explanation

Explanation
Reference: https://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config- guide-v62/firepower_management_center_high_availability.html#id_32288


質問 # 51
エンジニアが、サービスグル​​ープタグを使用しているCiscoFirepowerの接続の問題を調査しています。
特定のデバイスが正しくタグ付けされていないため、ファイアウォールを通過するときにクライアントが適切なポリシーを使用できません。この問題はどのように解決されますか?

  • A. 詳細オプションでtracerouteを使用します。
  • B. 一致基準でパケットキャプチャを使用します。
  • C. 正しいフィルタリングを備えたパケットスニファを使用する
  • D. IPサブネットフィルターでWiresharkを使用します。

正解:B


質問 # 52
管理者はCiscoASAからCiscoFTDアプライアンスへの移行に取り組んでおり、トラフィックを中断せずにルールをテストする必要があります。移行のこのフェーズでASAルールを設定するには、どのポリシータイプを使用する必要がありますか。

  • A. アイデンティティ
  • B. アクセス制御
  • C. プレフィルター
  • D. 侵入

正解:C

解説:
Reference:
https://www.cisco.com/c/en/us/td/docs/security/firepower/migration-tool/migration-guide/ASA2FTD-with-FP-Migration-Tool/b_Migration_Guide_ASA2FTD_chapter_01011.html


質問 # 53
......

正真正銘のベスト材料300-710日本語:https://www.jpntest.com/shiken/300-710J-mondaishu

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡