and CORRECT Answers
A system execution space (customer context) does not have any Layer 2 or Layer 3 interfaces
or any network settings. - CORRECT ANSWER✔- True
An admin context is created after the System Execution Space and all (customer contexts)
have been created - CORRECT ANSWER✔- False
Any interface not defined as an admin context is a customer context - CORRECT
ANSWER✔- True
Stealth firewalls do not provide a way to filter packets that traverse from one host to another
on the same LAN segment - CORRECT ANSWER✔- False
Traditional firewalls require a new network segment to be created when they are inserted into
a network - CORRECT ANSWER✔- True
The alias command is not supported in transparent firewall mode. - CORRECT ANSWER✔-
True
Reverse Routing Injection (RRI) is supported when a Cisco ASA is configured as a
transparent firewall mode - CORRECT ANSWER✔- False
Network Address Translation Traversal (NAT-T) & Public Key Infrastructure (PKI) are
partially supported in transparent mode for the management tunnel - CORRECT
ANSWER✔- False
In a scenario where all security contexts in the Cisco ASA use unique physical or logical
subinterfaces, the packet classification becomes more difficult because the security appliance
labels the packets based upon the source interface - CORRECT ANSWER✔- False
, In a scenario where an interface is shared between multiple security contexts, then the
interface may be assigned the same mac address across all virtual firewalls - CORRECT
ANSWER✔- True
_____ ____ _____ _____ is when the security appliance acts as a secured bridge that
switches traffic from one interface to another. - CORRECT ANSWER✔- Single-Mode
Transparent Firewalls
_____ _____ _____ does not support the sharing of interfaces between multiple contexts -
CORRECT ANSWER✔- Multimode Transparent Firewalls
_____ _____ can optionally inspect layer 2 traffic & filter unwanted traffic - CORRECT
ANSWER✔- Transparent Firewalls
_____ _____ segregate protected networks from unprotected ones by acting as an extra hop
in the network design - CORRECT ANSWER✔- Routed Firewalls
_____ _____ acts & behaves as an independent entity with its own configuration -
CORRECT ANSWER✔- Virtual Firewalls
Remote management for Admin Context is conducted through: - CORRECT ANSWER✔-
Port 22 or port 23
The Bridge Group Virtual Interface (BVI) Bridge group feature) - CORRECT ANSWER✔-
Up to four physical interfaces or subinterfaces can be assigned to this bridge group.
Three important settings configured for each context in the system execution space include: -
CORRECT ANSWER✔- - Context Name
- Location of context's startup configuration (Configlet)
- Interface allocation
Cisco ASA is set up in transparent mode: - CORRECT ANSWER✔- - Only one site-to-site
IPsec tunnel can be configured.
- The IPsec tunnel could be terminated on either the internal or external interface