exam questions

Exam 500-220 All Questions

View all questions & answers for the 500-220 exam

Exam 500-220 topic 2 question 12 discussion

Actual exam question from Cisco's 500-220
Question #: 4
Topic #: 2
[All 500-220 Questions]

Which two features and functions are supported when using an MX appliance in Passthrough mode? (Choose two.)

  • A. intrusion prevention
  • B. site-to-site VPN
  • C. secondary uplinks
  • D. DHCP
  • E. high availability
Show Suggested Answer Hide Answer
Suggested Answer: AB 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
zaazanuna
3 weeks, 5 days ago
Selected Answer: BE
MX devices can be configured in a high-availability pair (warm spare) using one of two MX addressing options (Security & SD-WAN > Configure > Addressing & VLANs): Passthrough or VPN Concentrator mode Routed mode BE
upvoted 1 times
...
Penza
1 month, 2 weeks ago
Selected Answer: AE
A E is correct
upvoted 1 times
...
3ebcffa
2 months, 1 week ago
Selected Answer: AE
It is A and E since we cannot have VLANs configured in passthrough VPN concentrator mode. In fact, I just checked right now that the Site to Site VPN is through the VLANs.
upvoted 2 times
...
ilcarletto
4 months ago
B and E Passthrough mode supportes only Intrusion Detection and NOT Prevention. A is not correct
upvoted 2 times
...
yottabyte_
5 months ago
Selected Answer: AB
A & B In Passthrough Mode, since the Meraki device is not actively performing routing functions or managing network traffic in the same way, High Availability is NOT SUPPORTED.
upvoted 1 times
...
sattori
6 months, 2 weeks ago
Selected Answer: BE
High availability can be inn both mode: Routed mode Passthrough or VPN Concentrator mode.
upvoted 1 times
...
MPIAZZAL
8 months ago
Selected Answer: AE
IPS + HA
upvoted 1 times
...
Gilgamesh_SHA
10 months, 2 weeks ago
Selected Answer: AB
The answer is A & B.
upvoted 1 times
...
5448108
10 months, 3 weeks ago
AB You can enable intrusion prevention by setting the Mode drop-down to Prevention under Security & SD-WAN > Configure > Threat protection > Intrusion detection and prevention. Traffic will be automatically blocked by best effort if it is detected as malicious based on the detection ruleset specified above. Protected Network section is used to controls the IP addresses or subnets of the systems protectied. Entries should be separated by commas or blank space(s). This will narrow down the subnets protected, it will protect only the subnets listed. Note: The Protected Network section is only available for Security Appliances in Passthrough mode. https://documentation.meraki.com/MX/Content_Filtering_and_Threat_Protection/Threat_Protection#:~:text=The%20MX's%20Intrusion%20Detection%20and,to%20ensure%20networks%20are%20safeguarded.
upvoted 2 times
...
jzzmth
11 months, 1 week ago
Selected Answer: AE
Guys, I have this exact scenario in production right now and the answer is AE. We have two MX250s in passthrough mode for Intrusion PREVENTION and they are setup in HA. While they can technically do site-to-site VPN, but if they did, they would be considered CONCENTRATORS and not as pass-thru devices as per all Meraki official documentation as well as the description in the dashboard itself - thus AE is the most correct answer.
upvoted 3 times
...
AnyParka0B
1 year, 1 month ago
Selected Answer: AB
A,B https://documentation.meraki.com/MX/Networks_and_Routing/Passthrough_Mode_on_the_MX_Security_Appliance_and_Z-series_Teleworker_Gateway
upvoted 2 times
...
XalaGyan
1 year, 4 months ago
Selected Answer: BE
i have configured it for production and know that both B and E are possible. two VMX in HA and both in concentrator mode. Answers BE
upvoted 2 times
...
nyashac
1 year, 5 months ago
Selected Answer: AB
When in passthrough mode, the MX is best used for in-line: Layer 3/7 firewall rules, traffic shaping, and analysis Network asset discovery and reporting Intrusion detection Security and content filtering Client and site-to-site VPN
upvoted 2 times
...
rnunes1110
1 year, 6 months ago
Selected Answer: AB
Correct: A and B
upvoted 2 times
...
fredbarron010
1 year, 7 months ago
https://originalcerts.org/ Pass CCNA,CCNP,ITIL,Prince2,CITRIX,JUNIPER,AZURE,IBM,HP exams Pay After Results
upvoted 1 times
...
rnunes1110
1 year, 7 months ago
A and B
upvoted 1 times
...
CaptainPirate
1 year, 10 months ago
Intrusion prevention Yes Site-to-site VPN Yes Secondary uplinks No DHCP No High availability No
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...