exam questions

Exam 300-710 All Questions

View all questions & answers for the 300-710 exam

Exam 300-710 topic 1 question 152 discussion

Actual exam question from Cisco's 300-710
Question #: 152
Topic #: 1
[All 300-710 Questions]

Which firewall design will allow it to forward traffic at layers 2 and 3 for the same subnet?

  • A. routed mode
  • B. Cisco Firepower Threat Defense mode
  • C. transparent mode
  • D. integrated routing and bridging
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
d0980cc
2 months ago
Selected Answer: A
The design would be to setup the FTD in Routed Mode, create a bridge group and assign an IP address to the BVI (IRB). So the "design" would incorporate both A and D.
upvoted 1 times
...
Silexis
3 months, 1 week ago
Selected Answer: A
Firewall Designs are 2 in case of FTD: Routed and Transparent. Routed mode acts like a Layer 3 hop in the path BUT it can also act as a layer 2 device, functioning like a L2 switch through Bridge Groups, eliminating the need for an external switch (for example 3 pc's connected to 3 firewall ports and having configured the L3 gateway the same firewall). This is why, I think that the correct answer is actually A https://www.cisco.com/c/en/us/td/docs/security/firepower/70/configuration/guide/fpmc-config-guide-v70/transparent_or_routed_firewall_mode_for_firepower_threat_defense.html#id_37129
upvoted 1 times
...
achille5
6 months, 3 weeks ago
Selected Answer: D
L2=mac addressing, L3=ip routing, IRB feature can forward both.
upvoted 3 times
...
z6st2a1jv
1 year ago
Selected Answer: B
transparent firewall does not route L3 traffic even with rbi. Routed firewall with bvi works on L2 and L3.
upvoted 2 times
z6st2a1jv
1 year ago
sorry, I meant to answer A
upvoted 1 times
...
...
pr0fectus
1 year ago
Selected Answer: D
Try looking up Firepower IRB configuration in youtube. There's tons of examples there where such use case has been tackled. So I'd go for D.
upvoted 1 times
...
c946f3e
1 year, 2 months ago
What is IRB in FTD? IRB stands for Integrated Routing and Bridging and is a feature that enables bridging between two or more VLANs and routing between these VLANs as well. Therefore, the feature supported by IRB on Cisco FTD devices is D
upvoted 1 times
...
THEODORABLE
1 year, 5 months ago
I am thinking D, IRB. They are asking which will allow the device to forward traffic at layer 2 or layer 3 for the same subnet not specifically within the same subnet. Forwarding traffic within the subnet at layer 2 and when it needs to leave the subnet it can forward at layer 3 to another IP destinations. I think the term “design” is being used incorrectly in the question—darn ESL question writers!
upvoted 1 times
...
Cokamaniako
1 year, 6 months ago
Selected Answer: C
Firewall design is not IRB, IRB is technology to route/switch traffic. Firewall design is either transparent and routed and in this case the correct answer is Transparent
upvoted 2 times
Kris92
8 months, 2 weeks ago
Agree, but transparent and routed are firewall modes, haven't seen them called designs anywhere in documentation.
upvoted 1 times
...
...
minik
1 year, 6 months ago
Selected Answer: C
Firewall design is routed vs transparent. The question is about forwarding in L2 and L3 for the same subnet (not forwarding in L2 and routing in L3) - so the correct answer is Transparent. Thank you :)
upvoted 2 times
...
Initial14
1 year, 7 months ago
Selected Answer: A
Firewall design is not IRB, IRB is technology to route/switch traffic. Firewall design is either transparent and routed and in this case the correct answer is Routed
upvoted 1 times
Initial14
1 year, 7 months ago
In routed mode you can have BVI and multiple interfaces are in that BVI. BVI the uses technology IRB to switch (l2) or route (l3) traffic.
upvoted 2 times
...
...
Initial14
1 year, 7 months ago
Selected Answer: D
D is the right Answer. With IRB ( BVI) you can switch traffic within LAN and also use BVI as Gateway.
upvoted 1 times
Initial14
1 year, 7 months ago
WRONG :)
upvoted 2 times
...
...
Joe_Blue
1 year, 8 months ago
Selected Answer: D
IRB provides Layer 2 bridging service between hosts that are within a Layer 2 domain. Also, it provides routing service for hosts that are in different subnets within a Layer 3 VPN. https://content.cisco.com/chapter.sjs?uri=/searchable/chapter/content/en/us/td/docs/iosxr/cisco8000/l2vpn/73x/b-l2vpn-cg-cisco8000-73x/m-configure-irb.html.xml
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago