350-701 · Question #88
Which two deployment modes does the Cisco ASA FirePOWER module support? (Choose two.)
The correct answer is C. inline mode E. passive monitor-only mode. The Cisco ASA FirePOWER module supports two primary deployment modes for network traffic inspection: inline mode for active threat prevention and passive monitor-only mode for intrusion detection and visibility without blocking traffic. These modes dictate how the module…
Question
Which two deployment modes does the Cisco ASA FirePOWER module support? (Choose two.)
Options
- Atransparent mode
- Brouted mode
- Cinline mode
- Dactive mode
- Epassive monitor-only mode
How the community answered
(50 responses)- A2% (1)
- B2% (1)
- C90% (45)
- D6% (3)
Why each option
The Cisco ASA FirePOWER module supports two primary deployment modes for network traffic inspection: inline mode for active threat prevention and passive monitor-only mode for intrusion detection and visibility without blocking traffic. These modes dictate how the module interacts with network traffic.
Transparent mode is a deployment mode for the underlying Cisco ASA itself, not specifically for the FirePOWER module operating within it.
Routed mode is a deployment mode for the underlying Cisco ASA itself, not specifically for the FirePOWER module operating within it.
Inline mode allows the FirePOWER module to actively inspect and block traffic in real-time by placing it directly in the data path, providing intrusion prevention capabilities.
Active mode is not a standard, distinct deployment mode for the FirePOWER module; 'inline' covers the active prevention aspect.
Passive monitor-only mode allows the FirePOWER module to receive a copy of network traffic (e.g., via a SPAN port) for intrusion detection, visibility, and analysis without being in the active data path or affecting traffic flow.
Concept tested: Cisco ASA FirePOWER deployment modes
Source: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Deployment_Options.html
Topics
Community Discussion
No community discussion yet for this question.