nerdexam
Cisco

350-701 · Question #88

Which two deployment modes does the Cisco ASA FirePOWER module support? (Choose two.)

The correct answer is C. inline mode E. passive monitor-only mode. The Cisco ASA FirePOWER module supports two primary deployment modes for network traffic inspection: inline mode for active threat prevention and passive monitor-only mode for intrusion detection and visibility without blocking traffic. These modes dictate how the module…

Submitted by skyler.x· Mar 30, 2026Network Security

Question

Which two deployment modes does the Cisco ASA FirePOWER module support? (Choose two.)

Options

  • Atransparent mode
  • Brouted mode
  • Cinline mode
  • Dactive mode
  • Epassive monitor-only mode

How the community answered

(50 responses)
  • A
    2% (1)
  • B
    2% (1)
  • C
    90% (45)
  • D
    6% (3)

Why each option

The Cisco ASA FirePOWER module supports two primary deployment modes for network traffic inspection: inline mode for active threat prevention and passive monitor-only mode for intrusion detection and visibility without blocking traffic. These modes dictate how the module interacts with network traffic.

Atransparent mode

Transparent mode is a deployment mode for the underlying Cisco ASA itself, not specifically for the FirePOWER module operating within it.

Brouted mode

Routed mode is a deployment mode for the underlying Cisco ASA itself, not specifically for the FirePOWER module operating within it.

Cinline modeCorrect

Inline mode allows the FirePOWER module to actively inspect and block traffic in real-time by placing it directly in the data path, providing intrusion prevention capabilities.

Dactive mode

Active mode is not a standard, distinct deployment mode for the FirePOWER module; 'inline' covers the active prevention aspect.

Epassive monitor-only modeCorrect

Passive monitor-only mode allows the FirePOWER module to receive a copy of network traffic (e.g., via a SPAN port) for intrusion detection, visibility, and analysis without being in the active data path or affecting traffic flow.

Concept tested: Cisco ASA FirePOWER deployment modes

Source: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Deployment_Options.html

Topics

#Cisco ASA FirePOWER#FirePOWER deployment modes

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice