
CCIE Security
Domain 5Objective 8
5.8 HTTP Decryption and Inspection on Cisco FTD, Cisco WSA, and Cisco Umbrella CCIE-SECURITY Practice Questions (Page 10)
Part of the 5.0 Advanced Threat Protection and Content Security domain, which accounts for 20% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 49 practice questions to prepare you well beyond it. (estimate)
49questions here
10free pages
9concepts
20%of the exam
Questions 46–49
- 46
A security administrator is configuring Cisco FTD to inspect decrypted HTTPS traffic for malware and intrusions. They want to ensure that the inspection is applied to all decrypted traffic. What must be configured?
Select an answer first - 47
A European company must comply with GDPR. They are deploying SSL decryption on Cisco WSA. What is a mandatory requirement?
Select an answer first - 48
A company wants to decrypt only traffic from the finance department to external websites, but not decrypt traffic from other departments. They use Cisco FTD. What is the most efficient way to achieve this?
Select an answer first - 49
A user is trying to access a website that uses certificate pinning. The traffic goes through Cisco WSA with SSL decryption. What is the likely outcome?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CCIE-SECURITY
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.