nerdexam
Cisco

300-710 · Question #358

An engineer is implementing a new Cisco Secure Firewall. The firewall must filler traffic between the three subnets: - LAN 192.168.101.0/24 - DMZ 192.168.200.0/24 - WAN 10.0.0.0/30 Which firewall…

The correct answer is C. routed. When a firewall must filter traffic between multiple subnets with different IP address ranges (LAN 192.168.101.0/24, DMZ 192.168.200.0/24, and WAN 10.0.0.0/30), the firewall must operate in routed mode. Routed mode makes the firewall a Layer 3 (IP routing) hop between subnets…

Deployment

Question

An engineer is implementing a new Cisco Secure Firewall. The firewall must filler traffic between the three subnets:

  • LAN 192.168.101.0/24
  • DMZ 192.168.200.0/24
  • WAN 10.0.0.0/30

Which firewall mode must the engineer implement?

Options

  • Atransparent
  • Bnetwork
  • Crouted
  • Dgateway

How the community answered

(35 responses)
  • A
    3% (1)
  • B
    3% (1)
  • C
    89% (31)
  • D
    6% (2)

Explanation

When a firewall must filter traffic between multiple subnets with different IP address ranges (LAN 192.168.101.0/24, DMZ 192.168.200.0/24, and WAN 10.0.0.0/30), the firewall must operate in routed mode. Routed mode makes the firewall a Layer 3 (IP routing) hop between subnets, allowing it to route and filter traffic across different networks. Transparent mode operates at Layer 2 and is used when the firewall must be inserted into an existing network without changing IP addressing - it cannot route between different subnets. 'Network' and 'gateway' are not valid Cisco FTD firewall modes.

Topics

#Firewall Modes#Routed Mode#Cisco Secure Firewall#Network Segmentation

Community Discussion

No community discussion yet for this question.

Full 300-710 Practice