DCOM 211 Final Exam Guide ACTUAL UPDATED QUESTIONS AND CORRECT
ANSWERS
, A system execution space (customer context) does not True
have any Layer 2 or Layer 3 interfaces or any network
settings.
An admin context is created after the System Execution False
Space and all (customer contexts) have been created
Any interface not defined as an admin context is a True
customer context
Stealth firewalls do not provide a way to filter packets False
that traverse from one host to another on the same LAN
segment
Traditional firewalls require a new network segment to be True
created when they are inserted into a network
The alias command is not supported in transparent True
firewall mode.
Reverse Routing Injection (RRI) is supported when a False
Cisco ASA is configured as a transparent firewall mode
Network Address Translation Traversal (NAT-T) & Public False
Key Infrastructure (PKI) are partially supported in
transparent mode for the management tunnel
In a scenario where all security contexts in the Cisco ASA False
use unique physical or logical subinterfaces, the packet
classification becomes more difficult because the
security appliance labels the packets based upon the
source interface
In a scenario where an interface is shared between True
multiple security contexts, then the interface may be
assigned the same mac address across all virtual firewalls
_ ____________ is when the security appliance acts as a Single-Mode Transparent Firewalls
secured bridge that switches traffic from one interface to
another.
_ _________ does not support the sharing of interfaces Multimode Transparent Firewalls
between multiple contexts
ANSWERS
, A system execution space (customer context) does not True
have any Layer 2 or Layer 3 interfaces or any network
settings.
An admin context is created after the System Execution False
Space and all (customer contexts) have been created
Any interface not defined as an admin context is a True
customer context
Stealth firewalls do not provide a way to filter packets False
that traverse from one host to another on the same LAN
segment
Traditional firewalls require a new network segment to be True
created when they are inserted into a network
The alias command is not supported in transparent True
firewall mode.
Reverse Routing Injection (RRI) is supported when a False
Cisco ASA is configured as a transparent firewall mode
Network Address Translation Traversal (NAT-T) & Public False
Key Infrastructure (PKI) are partially supported in
transparent mode for the management tunnel
In a scenario where all security contexts in the Cisco ASA False
use unique physical or logical subinterfaces, the packet
classification becomes more difficult because the
security appliance labels the packets based upon the
source interface
In a scenario where an interface is shared between True
multiple security contexts, then the interface may be
assigned the same mac address across all virtual firewalls
_ ____________ is when the security appliance acts as a Single-Mode Transparent Firewalls
secured bridge that switches traffic from one interface to
another.
_ _________ does not support the sharing of interfaces Multimode Transparent Firewalls
between multiple contexts