Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 300-745 Exam - Topic 1 Question 10 Discussion

Refer to the exhibit.A software developer noticed that the application source code had been found on the internet. To avoid such an incident from happening again, the developer applied a DLP policy to prevent from uploading source code into generative AI tool like ChatGPT. When testing the policy, the developer noticed that it is still possible for the source code to be uploaded. Which action must the developer take to prevent this issue?
D) Change the DLP action from Monitor to Block.
A) Enable the rule.
B) Move the ChatGPT Source Code rule to the bottom.
C) Modify the data classifications.

Cisco 300-745 Exam - Topic 1 Question 10 Discussion

Actual exam question for Cisco's 300-745 exam
Question #: 10
Topic #: 1
[All 300-745 Questions]

Refer to the exhibit.

A software developer noticed that the application source code had been found on the internet. To avoid such an incident from happening again, the developer applied a DLP policy to prevent from uploading source code into generative AI tool like ChatGPT. When testing the policy, the developer noticed that it is still possible for the source code to be uploaded. Which action must the developer take to prevent this issue?

Show Suggested Answer Hide Answer
Suggested Answer: D

In the provided exhibit of the Cisco Data Loss Prevention (DLP) Policy interface (likely within Cisco Umbrella or a similar cloud security gateway), the reason for the policy's failure to stop the upload is clearly visible in the 'Action' column. The rule named 'ChatGPT Source Code' is currently configured with the action set to Monitor.

According to the Cisco SDSI v1.0 objectives regarding application and data security, the Monitor action is designed for visibility and auditing. It allows the traffic to pass through while generating a log entry for security analysts to review. This is often used during an initial 'discovery' phase to understand how data is moving without disrupting business processes. However, to fulfill the requirement of preventing the unauthorized upload of sensitive data---such as application source code---the policy must be enforcement-centric.

By selecting Option D, the developer changes the action from 'Monitor' to Block. In 'Block' mode, the DLP engine will actively intercept the web request to ChatGPT, inspect the content for 'Source Code' classifications, and drop the connection if a match is found, thereby preventing the data from leaving the corporate environment. While moving rules (Option B) can resolve conflicts if a 'Block' rule is superseded by an 'Allow' rule higher in the list, the primary issue here is the non-restrictive action of the specific rule itself. Modifying data classifications (Option C) is unnecessary if the engine is already correctly identifying the source code, as evidenced by the successful monitoring logs mentioned in the scenario. Changing the action to Block is the definitive step to ensure data integrity and prevent intellectual property theft.


Contribute your Thoughts:

0/2000 characters
Kirby
3 days ago
I think the answer is D. Changing to Block is crucial.
upvoted 0 times
...
Susy
8 days ago
Not sure if just modifying classifications will solve the problem.
upvoted 0 times
...
Raylene
13 days ago
Wait, can source code really still be uploaded even with a DLP policy?
upvoted 0 times
...
Leanna
19 days ago
Definitely should change the DLP action to Block.
upvoted 0 times
...
Vivienne
24 days ago
I think moving the rule to the bottom might mess things up.
upvoted 0 times
...
Janey
29 days ago
Sounds like they need to enable the rule!
upvoted 0 times
...
Tamala
1 month ago
Seems like a big oversight, how did they miss that?
upvoted 0 times
...
Linn
1 month ago
Wait, can you really upload code even with a DLP policy?
upvoted 0 times
...
Antione
1 month ago
I thought moving the rule would work, but I guess not.
upvoted 0 times
...
Skye
2 months ago
Definitely need to change the action to Block!
upvoted 0 times
...
Gracia
2 months ago
Sounds like a classic DLP fail.
upvoted 0 times
...
Tambra
2 months ago
Modifying data classifications seems like it could help, but I wonder if that's really the main issue here.
upvoted 0 times
...
Tatum
2 months ago
I feel like moving the rule to the bottom could mess things up, but I can't recall why that would be a bad idea.
upvoted 0 times
...
Annett
2 months ago
This reminds me of a practice question where we had to adjust DLP actions. I think changing it to Block makes sense.
upvoted 0 times
...
Miesha
4 months ago
I remember studying DLP policies, but I'm not sure if enabling the rule is enough.
upvoted 0 times
...

Save Cancel