nerdexam
Cisco

300-320 · Question #465

An engineering team must design a firewall solution with shared hardware resources but separation of features such as ACLs, NATs, and management between the external business partners of the…

The correct answer is B. multicontext mode. Multicontext mode partitions a single physical ASA into multiple independent virtual firewalls called security contexts. Each context has its own routing table, ACLs, NAT policies, and management interface, providing logical separation on shared hardware - ideal for isolating…

Security Services

Question

An engineering team must design a firewall solution with shared hardware resources but separation of features such as ACLs, NATs, and management between the external business partners of the organization. Which ASA deployment mode meets these requirements?

Options

  • Aclustering mode
  • Bmulticontext mode
  • Ctransparent mode
  • Drouted mode

How the community answered

(52 responses)
  • A
    4% (2)
  • B
    92% (48)
  • C
    2% (1)
  • D
    2% (1)

Explanation

Multicontext mode partitions a single physical ASA into multiple independent virtual firewalls called security contexts. Each context has its own routing table, ACLs, NAT policies, and management interface, providing logical separation on shared hardware - ideal for isolating business partners. Clustering mode (A) combines multiple ASAs for performance and redundancy but does not provide policy separation. Transparent mode (C) operates at Layer 2 but does not provide multi-tenancy. Routed mode (D) is a single-context Layer 3 deployment and does not separate features between different organizations.

Topics

#ASA#multicontext mode#firewall virtualization#security contexts

Community Discussion

No community discussion yet for this question.

Full 300-320 Practice