300-710 · Question #286
An engineer is configuring a Cisco FTD device to place on the Finance VLAN to provide additional protection for company financial data. The device must be deployed without requiring any changes on the
The correct answer is C. Deploy the device in transparent mode and allow DHCP traffic in the access control policies.. For example, by using an access rule, you can allow DHCP traffic (instead of the unsupported DHCP relay feature) or multicast traffic such as that created by IP/TV. You can also establish routing protocol adjacencies through a transparent firewall; you can allow OSPF, RIP, EIGRP,
Question
An engineer is configuring a Cisco FTD device to place on the Finance VLAN to provide additional protection for company financial data. The device must be deployed without requiring any changes on the end user workstations, which currently use DHCP to obtain an IP address. How must the engineer deploy the device to meet this requirement?
Options
- ADeploy the device in transparent mode and enable the DHCP Server feature.
- BDeploy the device in routed mode and enable the DHCP Relay feature.
- CDeploy the device in transparent mode and allow DHCP traffic in the access control policies.
- DDeploy the device in routed mode and allow DHCP traffic in the access control policies.
How the community answered
(49 responses)- A2% (1)
- B10% (5)
- C82% (40)
- D6% (3)
Explanation
For example, by using an access rule, you can allow DHCP traffic (instead of the unsupported DHCP relay feature) or multicast traffic such as that created by IP/TV. You can also establish routing protocol adjacencies through a transparent firewall; you can allow OSPF, RIP, EIGRP, or BGP traffic through based on an access rule. Likewise, protocols like HSRP or VRRP can pass through the FTD device.
Topics
Community Discussion
No community discussion yet for this question.