nerdexam
Cisco

300-320 · Question #160

A network designer wants to improve security at the edge of the network and allow routing protocols to communicate without any additional configuration. What firewall mode meets the design…

The correct answer is D. transparent. Transparent mode (Layer 2 firewall mode) inserts the firewall invisibly into the network as a bridge. Because it operates at Layer 2, it has no IP presence in the routed path - routing protocols such as OSPF, EIGRP, or BGP running on adjacent routers communicate through the…

Security Services

Question

A network designer wants to improve security at the edge of the network and allow routing protocols to communicate without any additional configuration. What firewall mode meets the design requirements?

Options

  • Arouted
  • Bzoned
  • Ccontext
  • Dtransparent

How the community answered

(59 responses)
  • A
    10% (6)
  • B
    3% (2)
  • C
    5% (3)
  • D
    81% (48)

Explanation

Transparent mode (Layer 2 firewall mode) inserts the firewall invisibly into the network as a bridge. Because it operates at Layer 2, it has no IP presence in the routed path - routing protocols such as OSPF, EIGRP, or BGP running on adjacent routers communicate through the firewall as if it were not there, requiring no additional routing configuration on the firewall itself. In contrast, routed mode makes the firewall a Layer 3 hop, requiring routing protocol peering or static routes to be configured on the firewall. Transparent mode thus provides security policy enforcement (packet inspection, ACLs) at the network edge without disrupting existing routing adjacencies.

Topics

#transparent firewall#firewall modes#routing protocol passthrough#edge security

Community Discussion

No community discussion yet for this question.

Full 300-320 Practice