300-320 · Question #192
Which two of these correctly describe asymmetric routing and firewalls? (Choose two.)
The correct answer is C. only eight interfaces can belong to an asymmetric routing group D. operational in both failover and non-failover configurations. On Cisco ASA, the asymmetric routing (ASR) feature allows the firewall to handle TCP sessions where the return traffic arrives on a different interface than the initial flow-a situation common in multi-homed or load-balanced environments. The ASA imposes a hard limit of eight…
Question
Which two of these correctly describe asymmetric routing and firewalls? (Choose two.)
Options
- Aonly operational in routed mode
- Bonly operational in transparent mode
- Conly eight interfaces can belong to an asymmetric routing group
- Doperational in both failover and non-failover configurations
- Eonly operational when the firewall has been configured for failover
How the community answered
(42 responses)- A2% (1)
- B19% (8)
- C71% (30)
- E7% (3)
Explanation
On Cisco ASA, the asymmetric routing (ASR) feature allows the firewall to handle TCP sessions where the return traffic arrives on a different interface than the initial flow-a situation common in multi-homed or load-balanced environments. The ASA imposes a hard limit of eight interfaces per asymmetric routing group (C). The feature is not restricted to failover deployments; it can be configured on standalone (non-failover) firewalls as well as failover pairs (D). It is not limited to routed mode only (A is false), not limited to transparent mode only (B is false), and does not require failover to function (E is false).
Topics
Community Discussion
No community discussion yet for this question.