ETExamTower
Q51Content Security

When a Cisco WSA evaluates a web request, what happens if it cannot match a user-defined policy?

← → navigate · a answer
Discussion · 2
6
B Answer is correct - https://www.cisco.com/c/en/us/td/docs/security/wsa/wsa11-0/user_guide/b_WSA_UserGuide/b_WSA_UserGuide_chapter_01101.html Policy Order The order that policies appear in a policy table sets the priority with which they are applied to Web requests. Web requests are checked against policies starting at the top of the table and continuing until the first matching policy. Any policies below that point in the table are not processed. If no user-defined policy matches a Web request, then the global policy for that policy type is applied. Global policies are always placed last in Policy tables and cannot be reordered.
4
B:When a Cisco Web Security Appliance (WSA) checks a web request and cannot match a user-defined policy, the appliance applies the global policy. The global policy is a default policy that applies to all traffic that does not match any user-defined policies. It is a predefined policy that can be configured to allow or deny certain kinds of traffic. If the WSA cannot match a web request to any user-defined policy, it will apply the global policy to decide whether to allow or block the request. The WSA uses policies to determine how to handle web requests based on several factors such as user identity, time of day, content type, and URL category. If a user-defined policy matches a web request, it has priority over the global policy. If multiple user-defined policies match a web request, the WSA applies the policy with the highest priority. If no user-defined policy matches a web request, the global policy is applied.