exam questions

Exam 350-401 All Questions

View all questions & answers for the 350-401 exam

Exam 350-401 topic 1 question 722 discussion

Actual exam question from Cisco's 350-401
Question #: 722
Topic #: 1
[All 350-401 Questions]

Refer to the exhibit.



Remote users cannot access the Internet but can upload files to the storage server. Which configuration must be applied to allow Internet access?

  • A. ciscoasa(config)# access-list MAIL_AUTH extended permit udp any any eq http ciscoasa(config)# aaa authentication listener http outside redirect
  • B. ciscoasa(config)# access-list MAIL_AUTH extended permit tcp any any eq www ciscoasa(config)# aaa authentication listener http inside redirect
  • C. ciscoasa(config)# access-list MAIL_AUTH extended permit tcp any any eq http ciscoasa(config)# aaa authentication listener http inside port 43
  • D. ciscoasa(config)# access-list HTTP_AUTH extended permit udp any any eq http ciscoasa(config)# aaa authentication listener http outside port 43
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
monoki
Highly Voted 2 years, 1 month ago
Where did the Cisco exams gone? Can't find any in the site anymore.
upvoted 21 times
...
dragonwise
Highly Voted 2 years ago
A. ciscoasa(config)# access-list MAIL_AUTH extended permit udp any any eq http ciscoasa(config)# aaa authentication listener http outside redirect B. ciscoasa(config)# access-list MAIL_AUTH extended permit tcp any any eq www ciscoasa(config)# aaa authentication listener http inside redirect C. ciscoasa(config)# access-list MAIL_AUTH extended permit tcp any any eq http ciscoasa(config)# aaa authentication listener http inside port 43 D. ciscoasa(config)# access-list HTTP_AUTH extended permit udp any any eq http ciscoasa(config)# aaa authentication listener http outside port 43
upvoted 7 times
...
AbdullahMohammad251
Most Recent 7 months, 1 week ago
Selected Answer: A
Option 'C' & 'D' are incorrect, because HTTP uses port number 80. Option 'B' is incorrect, because we want to authenticate outside HTTP traffic against an internal web page (by requesting a username, & a password,) before redirecting traffic to the internet. "inside" is used for traffic originating from our local LAN (storage server) "outside" is used for traffic originating from outside of our local LAN (remote users, or any other user on the internet). https://www.cisco.com/c/en/us/td/docs/security/asa/asa72/configuration/guide/conf_gd/fwaaa.html#:~:text=the%20following%20commands%20authenticate%20all%20inside%20HTTP%20traffic
upvoted 1 times
ali_sh85
5 months, 1 week ago
A is using UDP!!!
upvoted 1 times
...
AbdullahMohammad251
7 months, 1 week ago
The inside network in our example consists of the TACACS+ server and the storage server. Everything else is part of the outside.
upvoted 1 times
...
AbdullahMohammad251
7 months, 1 week ago
HTTP - port 80 HTTPS - port 443
upvoted 1 times
...
...
[Removed]
11 months, 2 weeks ago
B is correct. just a strong feeling no idea why
upvoted 2 times
...
slacker_at_work
1 year, 2 months ago
Selected Answer: B
Asa, I almost forgot it exists.
upvoted 3 times
NetworkJanitor
5 months, 3 weeks ago
nice one
upvoted 1 times
...
...
Asombrosso
1 year, 8 months ago
Selected Answer: B
By a process of elimination
upvoted 3 times
...
JackDRipper
2 years, 1 month ago
Selected Answer: B
See: https://www.cisco.com/c/en/us/td/docs/security/asa/asa72/configuration/guide/conf_gd/fwaaa.html
upvoted 2 times
...
Jeff555566
2 years, 1 month ago
Selected Answer: B
B is the only one that makes any sense - eq www is correct to allow tcp port 80.
upvoted 4 times
...
htz0000
2 years, 1 month ago
i'm in the same state >Where did the Cisco exams gone? Can't find any in the site anymore.
upvoted 3 times
...
kalachuh
2 years, 1 month ago
so all the AAA in different appliance are covered?
upvoted 1 times
...
MOES1349
2 years, 1 month ago
I didn't see ASA in the ENCOR, but if this question came up on the exam and it made me think, don't expect it
upvoted 3 times
...
Badger_27
2 years, 1 month ago
ASA configs now in the Encor exam?
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago