nerdexam
Cisco

300-320 · Question #192

Which two of these correctly describe asymmetric routing and firewalls? (Choose two.)

The correct answer is C. only eight interfaces can belong to an asymmetric routing group D. operational in both failover and non-failover configurations. On Cisco ASA, the asymmetric routing (ASR) feature allows the firewall to handle TCP sessions where the return traffic arrives on a different interface than the initial flow-a situation common in multi-homed or load-balanced environments. The ASA imposes a hard limit of eight…

Security Services

Question

Which two of these correctly describe asymmetric routing and firewalls? (Choose two.)

Options

  • Aonly operational in routed mode
  • Bonly operational in transparent mode
  • Conly eight interfaces can belong to an asymmetric routing group
  • Doperational in both failover and non-failover configurations
  • Eonly operational when the firewall has been configured for failover

How the community answered

(42 responses)
  • A
    2% (1)
  • B
    19% (8)
  • C
    71% (30)
  • E
    7% (3)

Explanation

On Cisco ASA, the asymmetric routing (ASR) feature allows the firewall to handle TCP sessions where the return traffic arrives on a different interface than the initial flow-a situation common in multi-homed or load-balanced environments. The ASA imposes a hard limit of eight interfaces per asymmetric routing group (C). The feature is not restricted to failover deployments; it can be configured on standalone (non-failover) firewalls as well as failover pairs (D). It is not limited to routed mode only (A is false), not limited to transparent mode only (B is false), and does not require failover to function (E is false).

Topics

#asymmetric routing#firewall failover#routing groups#stateful inspection

Community Discussion

No community discussion yet for this question.

Full 300-320 Practice