PrepAway - Latest Free Exam Questions & Answers

what can be determined about this Cisco IOS zone based firewall policy?

Refer to the exhibit. Based on the show policy-map type inspect zone-pair session command output shown,
what can be determined about this Cisco IOS zone based firewall policy?

PrepAway - Latest Free Exam Questions & Answers

A.
All packets will be dropped since the class-default traffic class is matching all traffic.

B.
This is an inbound policy (applied to traffic sourced from the less secured zone destined to the more
secured zone).

C.
This is an outbound policy (applied to traffic sourced from the more secured zone destined to the less
secured zone).

D.
Stateful packet inspection will be applied only to HTTP packets that also match ACL 110.

E.
All non-HTTP traffic will be permitted to pass aslong as it matches ACL 110.

F.
All non-HTTP traffic will be inspected.


Leave a Reply