210-065 · Question #147
When you configure a zone for firewall traversal, which type of zone is the Cisco VCS-C configured for?
The correct answer is A. client. In a Cisco VCS firewall traversal pair, the VCS-C behind the firewall initiates the connection outward and is therefore configured as the client zone.
Question
When you configure a zone for firewall traversal, which type of zone is the Cisco VCS-C configured for?
Options
- Aclient
- Bserver
- Cproxy
- Dgateway
- Eneighbor
How the community answered
(14 responses)- A93% (13)
- B7% (1)
Why each option
In a Cisco VCS firewall traversal pair, the VCS-C behind the firewall initiates the connection outward and is therefore configured as the client zone.
The VCS-C (Control) resides inside the enterprise firewall and must initiate outbound connections to the VCS-E (Expressway) outside. This initiator role maps directly to the traversal client zone type in VCS configuration. The VCS-E correspondingly is configured with a traversal server zone to accept those inbound connections.
The server zone type is assigned to the VCS-E, not the VCS-C, because the Expressway listens for inbound traversal connections from the Control server.
Proxy is not a valid zone type in Cisco VCS firewall traversal topology.
Gateway zones are used to connect VCS to H.323 or SIP gateways, not for firewall traversal pairing.
Neighbor zones are used for direct SIP or H.323 peering between systems on the same network segment and do not support firewall traversal.
Concept tested: VCS firewall traversal client zone role
Source: https://www.cisco.com/c/en/us/td/docs/telepresence/infrastructure/vcs/config_guide/Cisco-VCS-Administrator-Guide/firewall-traversal.html
Topics
Community Discussion
No community discussion yet for this question.