
CiscoCertified Support Technician (CCST) Networking
Domain 6Objective 1
6.1. Describe How Firewalls Operate to Filter Traffic. 100-150 Practice Questions (Page 1)
Part of the Security domain, which makes up ~13% of our current practice bank. Cisco does not publish an official question count, but from its 50-minute exam (~20–35 total, ~3–5 in this domain), expect 1–2 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)
27questions here
6free pages
6concepts
Questions 1–5
- 1
A security architect is designing a firewall policy for a new DMZ. The DMZ hosts a public web server and an email server. The architect wants to minimize the attack surface while ensuring the servers function. Which policy approach is most appropriate?
Select an answer first - 2
What is the key difference between a default-deny and a default-allow firewall policy?
Select an answer first - 3
A firewall rule is written as: 'Allow TCP from 192.168.1.0/24 to any on port 25.' Which type of traffic does this rule permit?
Select an answer first - 4
A firewall has these rules in order: 1) deny TCP from any to any port 22, 2) allow TCP from 10.0.0.0/8 to any port 22, 3) allow TCP from any to any port 22. A packet arrives from source 10.1.2.3 destined to port 22. What will the firewall do?
Select an answer first - 5
A firewall administrator is troubleshooting why a specific host cannot reach a service. The firewall rules are: 1) deny TCP from any to any port 3389, 2) allow TCP from 10.0.0.0/8 to any port 3389, 3) allow TCP from any to any port 3389. The host at 10.1.1.5 cannot connect to a server on port 3389. What is the most likely cause?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “100-150” is a trademark of its owner, used for identification only.