Traffic through transparent and routed firewall



Q Can we allow any kind of traffic through routed mode using acl
A No

Q Can we allow any kind of traffic through transparent firewall using acl
A Yes

Q Which are the two different types of acl used by transparent firewall
A Extended acl and Ethertype acl

Q Why we use extended acl
A To filter IP traffic

Q Why we use ethertype acl
A To filter NON IP traffic

Q What are the examples of NON IP Traffic
A AppleTalk, IPX, BPDUs and MPLS

Q Which type of traffic is not allowed by transparent firewall
A CDP traffic

Q Which traffic can be allowed on transparent firewall using extended acl
A DHCP traffic, Multicast traffic and traffic of OSPF, RIP, EIGRP OR BGP

Q Why BPDUs packets are allowed by default in transparent firewall 
A To prevent loop

Q How can we block BPDUs in transparent firewall
A Using Ethertype acl


Comments