
CCIE Security
Domain 1Objective 4
1.4 Cisco FMC Features CCIE-SECURITY Practice Questions (Page 12)
Part of the 1.0 Perimeter Security and Intrusion Prevention domain, which accounts for 20% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–1 from this objective — we provide 59 practice questions to prepare you well beyond it. (estimate)
59questions here
12free pages
10concepts
20%of the exam
Questions 56–59
- 56
A company's FMC is running out of disk space because it stores all connection and security events locally. They want to keep recent events for quick analysis but archive older events to meet compliance. What is the most efficient approach?
Select an answer first - 57
A network team wants to block traffic from a set of IP addresses that are updated dynamically based on the current threat landscape. They have configured a dynamic object in FMC. What must they do to ensure the access control policy uses the latest IP list?
Select an answer first - 58
An analyst needs to investigate a specific security event that occurred yesterday. They want to view all connection events from a particular source IP to a specific destination port. What should they use in FMC?
Select an answer first - 59
A compliance officer requires a monthly report of all firewall rule changes. The report should be automatically generated and sent to the compliance team via email. What is the best way to accomplish this in FMC?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CCIE-SECURITY
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.