CCFA Exam QuestionsBrowse all questions from this exam

CCFA Exam - Question 46


While a host is Network contained, you need to allow the host to access internal network resources on specific IP addresses to perform patching and remediation. Which configuration would you choose?

Show Answer
Correct Answer: B

When a host is network contained and needs to access specific internal IP addresses for patching and remediation, the correct approach is to configure a Containment Policy with the specific IP addresses. This policy manages the rules and exceptions that apply specifically to contained hosts, ensuring they can communicate with necessary IPs while remaining contained from other network traffic.

Discussion

8 comments
Sign in to comment
Roy_SoOption: B
Feb 2, 2023

Correct Ans is B

ShuliAbbaOption: C
Jan 26, 2023

D is wrong. C is the correct answer - while a host is contained, you must use the containment policy to allow the host to connect to other IP addresses. verified with the Falcon documentation.

ShuliAbba
Jan 28, 2023

correction - B should be the right answer.

testmailuc
Mar 3, 2023

C should be the correct anqser. Documentation checked. Should be a IP/CIDR range

testmailucOption: C
Mar 3, 2023

C should be the correct anqser. Documentation checked. Should be a IP/CIDR range

kangaru
Apr 25, 2023

It is filtered using CIDR range. But you can create multiple filters to flexibly control more allowed IPs.

Dr_FalconOption: B
Mar 21, 2023

B >> Correct Answer - Tested in LAB

BelroseOption: B
Mar 23, 2023

The B is the correct answer, when a host is contained the firewall policy is not working. If you add a standar firewall rule, how can the product to know wich rules apply in containment status? The answer is defining the firewall containment firewall rules in a differente place, in this case is defined in the containment pollicy.

Dave071Option: B
Apr 4, 2023

I would go with B as the requirement is to allow specific internal IP addresses and not the entire internal IP CIDR block.

FerbOPOption: B
Apr 25, 2023

B is correct

sbag0024Option: B
Jun 14, 2023

Going with B , tested in UI