Module 20 Flashcards

1
Q

What products provides dedicated firewall services in one device?

A

Cisco ASA with FirePOWER Services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are Cisco ASAs?

A

NGFW (Next Generation Firewall)
devices that deliver integrated threat defense across the entire attack continuum

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does the choice of ASA model depend on?

A

An organization’s requirements, such as maximum throughput, maximum connections per second, and budget

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does the Cisco ASAv do?

A

Brings the power of ASA appliances to the virtual domain

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the two firewall interface modes of operation available on ASA devices?

A

Routed mode and transparent mode

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What happens in routed mode for an ASA device?

A

Two or more interfaces separate Layer 3 networks (domains)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What happens in transparent mode for an ASA devices?

A

The ASA functions like a Layer 2 device

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Why is an ASA in transparent mode referred to as a “bump in the wire” or a “stealth firewall”

A

The ASA functions like a Layer 2 device and is not considered a router hop

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What do the Advanced ASA firewall features include?

A

-ASA virtualization
-High availability with failover
-Identity firewall
-Threat control and containment services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What do most ASA appliances come pre-installed with?

A

Either a Base license or a Security Plus license

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the Cisco ASA 5506-X for?

A

A full-featured security appliance for small businesses, branch offices, and enterprise teleworker environments

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does the Cisco ASA 5506-X give?

A

High performance firewall, SSL VPN, IPsec VPN, and rich networking services in a plug-and-play appliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What does the ASA assign to distinguish between inside and outside networks?

A

Security levels

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the range of security level numbers?

A

0 (untrustworthy) to 100 (very trustworthy)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Is outbound traffic allowed and inspected by default?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Why is returning traffic allowed?

A

Stateful packet inspection allows it

17
Q

What is the ASA 5506-X commonly used as?

A

An edge security device

18
Q

What does the ASA 5506-X help connect?

A

Small business to an ISP device, such as DSL or cable modem, for access to the internet