Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Cisco Certified Design Expert (CCDE v3.1) 400-007 Question # 1 Topic 1 Discussion

Cisco Certified Design Expert (CCDE v3.1) 400-007 Question # 1 Topic 1 Discussion

400-007 Exam Topic 1 Question 1 Discussion:
Question #: 1
Topic #: 1

You were tasked to enhance the security of a network with these characteristics:

A pool of servers is accessed by numerous data centers and remote sites

The servers are accessed via a cluster of firewalls

The firewalls are configured properly and are not dropping traffic

The firewalls occasionally cause asymmetric routing of traffic within the server data center.

Which technology should you recommend to enhance security by limiting traffic that could originate from a hacker compromising a workstation and redirecting flows at the servers?


A.

Poison certain subnets by adding static routes to Null0 on the core switches connected to the pool of servers.


B.

Deploy uRPF strict mode.


C.

Limit sources of traffic that exit the server-facing interface of the firewall cluster with ACLs.


D.

Deploy uRPF loose mode.


Get Premium 400-007 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.