300-320 · Question #465
An engineering team must design a firewall solution with shared hardware resources but separation of features such as ACLs, NATs, and management between the external business partners of the…
The correct answer is B. multicontext mode. Multicontext mode partitions a single physical ASA into multiple independent virtual firewalls called security contexts. Each context has its own routing table, ACLs, NAT policies, and management interface, providing logical separation on shared hardware - ideal for isolating…
Question
An engineering team must design a firewall solution with shared hardware resources but separation of features such as ACLs, NATs, and management between the external business partners of the organization. Which ASA deployment mode meets these requirements?
Options
- Aclustering mode
- Bmulticontext mode
- Ctransparent mode
- Drouted mode
How the community answered
(52 responses)- A4% (2)
- B92% (48)
- C2% (1)
- D2% (1)
Explanation
Multicontext mode partitions a single physical ASA into multiple independent virtual firewalls called security contexts. Each context has its own routing table, ACLs, NAT policies, and management interface, providing logical separation on shared hardware - ideal for isolating business partners. Clustering mode (A) combines multiple ASAs for performance and redundancy but does not provide policy separation. Transparent mode (C) operates at Layer 2 but does not provide multi-tenancy. Routed mode (D) is a single-context Layer 3 deployment and does not separate features between different organizations.
Topics
Community Discussion
No community discussion yet for this question.