Configuring Basic Firewall Policies on Cisco ASA Flashcards
Name three features the Cisco ASA provides?
Simple packet filtering using standard or extended access lists, Layer 2 transparent implementation,
Support for remote-access SSL VPN connections
Which Cisco ASA models are designed for small and branch offices?
5505, 5512-x
When used in an access policy, which component could identify multiple servers?
Object groups
What is an accurate description of the word inbound as it relates to an ASA?
Traffic from a device that is located on a low-security interface, Traffic that is exiting any interface
When is traffic allowed to be routed and forwarded if the source of the traffic is from a device located off of a low-security interface if the destination device is located off of a high-security interface?
This traffic is allowed if the initial traffic was inspected and this traffic is the return traffic, If there is an access list that is permitting this traffic
What tools could be used to configure or manage an ASA?
CSM, ASDM, CLI
Name an element, which is part of the Modular Policy Framework on the ASA, are used to classify traffic?
Class maps
When you configure the ASA as a DHCP server for a small office, what default gateway will be assigned for the DHCP clients to use?
The ASAs inside IP address
When you configure network address translation for a small office, devices on the Internet will see the ASA inside users as coming from which IP address?
The outside address of the ASA
You’re interested in verifying whether the security policy you implemented is having the desired effect. How can you verify this policy without involving end users or their computers?
Use the Packet Tracer tool