PrepAway - Latest Free Exam Questions & Answers

Category: 642-637 (v.1)

Exam 642-637: Securing Networks with Cisco Routers and Switches (SECURE) v1.0 (May 20th, 2013)

Note that when performing the configuration, you should use the exact names highlighted in bold below…

Scenario:
You have been given the task of performing initial zone-based policy firewall configurations. You
will need to create zones, assign the zones to specific interfaces, and create zone pairs to allow
for traffic flow between interfaces. You will also need to define a zone-based policy firewall and
assign the policy to the zone pair. To access the router console ports, refer to the exhibit, click the
router for access, and perform the following tasks.

Note that when performing the configuration, you should use the exact names highlighted in bold
below:
Globally create zones and label them with the following names:
OUTSIDE
IHSIDE
Assign interfaces to zones as indicated in the exhibit
Create a zone pair for traffic flowing from the inside to outside zones named IH-TO-OUT –
Define a zone-based firewall policy named IH-TO-OUT-POLICY
Use the “match protocol” classification option to statefully inspect HTTP traffic and drop all other
traffic
Use a class-map named HTTP_POLICY
Apply zone-based firewall policy IN-TO-OUT-POLICY to the zone pair


Page 8 of 12« First...678910...Last »