PrepAway - Latest Free Exam Questions & Answers

Which Cisco ASA feature is implemented by the ip verify…

Which Cisco ASA feature is implemented by the ip verify reverse-path interface interface_name command?

PrepAway - Latest Free Exam Questions & Answers

A.
uRPF

B.
TCP intercept

C.
botnet traffic filter

D.
scanning threat detection

E.
IPS (IP audit)

Explanation:
https://supportforums.cisco.com/thread/2070206
Unicast RPF is disabled by default on the ASA unless you explicitly enable it on an interface. Since it is disabled by default on all interfaces, you will not see them in
the configuration. Once you enable RPF for a specific interface, you will see that enabled in the configuration.
For example:
If you have 3 interfaces: inside, dmz and outside, and you enable it for inside only, then when you perform “sh run ip verify reverse-path”, you will see the following:
ip verify reverse-path interface inside
OR/ you will see that in the running configuration as well. The other 2 interfaces that you haven’t explicitly enabled will still be disabled by default, and will not show
under the configuration.


Leave a Reply