Implementing Cisco IOS Zone-Based Firewalls Flashcards
Which zone is implied by default and does not need to be manually created?
Self
If interface number 1 is in zone A, and interface number 2 is in zone B, and there are no policy or service commands applied yet to the configuration, what is the status of transit traffic that is being routed between these two interfaces?
Denied
When creating a specific zone pair and applying a policy to it, the policy is being implemented on initial traffic in how many directions?
1
What is the default policy between an administratively created zone and the self zone?
Permit
What is one of the added configuration elements that the Advanced security setting has in the ZBF Wizard that is not included in the Low security setting?
Filtering on peer-to-peer networking applications
Why is it that the return traffic, from previously inspected sessions, is allowed back to the user, in spite of not having a zone pair explicitly configured that matches on the return traffic?
Stateful entries (from the initial flow) are matched, which dynamically allows return traffic
What does the keyword OVERLOAD imply in a NAT configuration?
PAT is being used
What command shows the current NAT translations on the router?
show ip nat translations