1-2-3 Flashcards

1
Q

In Cisco Secure Firewall, which deployment mode does NOT assign IP addresses to its interfaces?

A

Transparent mode.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Why would you choose Cisco Secure Firewall in transparent mode for deployment?

A

To add security without changing existing network IP addressing or topology.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Name two advanced features unsupported in Cisco Secure Firewall’s Transparent mode.

A

VPN termination and dynamic routing protocols.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the main operational difference between Transparent and Routed firewall modes?

A

Transparent mode operates at Layer 2 without changing network topology, whereas Routed mode operates at Layer 3 as a routed network hop.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does the “fail-to-wire” feature on Inline interfaces accomplish?

A

It allows traffic to continue passing through if the firewall loses power or experiences a software failure, ensuring business continuity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What advantage does firewall clustering have over failover pairs?

A

Clustering supports active-active configurations, enhancing both network availability and throughput simultaneously.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Why might you deploy Cisco Secure Firewall in Transparent mode instead of Routed mode in an existing network?

A

To add security without altering the existing IP addressing or network structure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

If an organization prioritizes uninterrupted network operation over immediate blocking capabilities during initial IPS testing, which interface mode should they select?

A

Inline Tap mode, as it detects malicious traffic without blocking it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly