nerdexam
Cisco

300-430 · Question #305

A Cisco WLC is deployed to a customer site. The customer provides a list of wired and wireless subnets that must be allowed to pass through the WLC. What is the path in the WLC user interface to…

The correct answer is B. Security > Access Control Lists > Access Control Lists. Creating ACLs in a Cisco WLC for controlling traffic through the controller uses the Security menu path, not interface or WLAN configuration menus.

Device Hardening

Question

A Cisco WLC is deployed to a customer site. The customer provides a list of wired and wireless subnets that must be allowed to pass through the WLC. What is the path in the WLC user interface to create the access list?

Options

  • ASecurity > Access Control Lists > CPU Access Control Lists
  • BSecurity > Access Control Lists > Access Control Lists
  • CController > Interfaces > ACL Name drop-down list
  • DWLANs > WLAN ID > Advanced > Override Interface ACL

How the community answered

(52 responses)
  • A
    2% (1)
  • B
    90% (47)
  • C
    6% (3)
  • D
    2% (1)

Why each option

Creating ACLs in a Cisco WLC for controlling traffic through the controller uses the Security menu path, not interface or WLAN configuration menus.

ASecurity > Access Control Lists > CPU Access Control Lists

Security > Access Control Lists > CPU Access Control Lists is specifically for protecting the WLC management plane by filtering traffic destined to the controller CPU itself, not for general data plane traffic.

BSecurity > Access Control Lists > Access Control ListsCorrect

The path Security > Access Control Lists > Access Control Lists is the correct location in the WLC GUI to define new ACLs that filter traffic passing through the controller. This section allows administrators to create named ACLs with permit/deny rules applied to specific traffic flows for wired and wireless subnets. CPU ACLs and interface assignments are separate, downstream configuration steps.

CController > Interfaces > ACL Name drop-down list

Controller > Interfaces > ACL Name is a field for applying an already-created ACL to a specific interface, not for creating the ACL itself.

DWLANs > WLAN ID > Advanced > Override Interface ACL

WLANs > WLAN ID > Advanced > Override Interface ACL is used to apply an ACL override on a per-WLAN basis, not to define or create an ACL.

Concept tested: Cisco WLC ACL creation via GUI navigation

Source: https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-5/config-guide/b_cg85/access_control_lists.html

Topics

#ACL#WLC GUI navigation#access control lists#security policy

Community Discussion

No community discussion yet for this question.

Full 300-430 Practice