
CiscoCertified Support Technician (CCST) Networking
Domain 6Objective 1
6.1. Describe How Firewalls Operate to Filter Traffic. 100-150 Practice Questions (Page 5)
Part of the Security domain, which makes up ~13% of our current practice bank. Cisco does not publish an official question count, but from its 50-minute exam (~20–35 total, ~3–5 in this domain), expect 1–2 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)
27questions here
6free pages
6concepts
Questions 21–25
- 21
A company is migrating from a legacy firewall that has a default-allow policy to a new firewall with a default-deny policy. The administrator needs to ensure that all existing business-critical traffic continues to work. What is the most important initial step?
Select an answer first - 22
How do most firewalls evaluate rules when processing traffic?
Select an answer first - 23
A firewall has a default-deny policy and the following rules in order: 1) Permit TCP/443 from any to 10.0.0.10. 2) Deny TCP/443 from 10.0.0.0/8 to 10.0.0.10. 3) Permit TCP/443 from 10.1.0.0/16 to 10.0.0.10. A packet arrives from source 10.1.2.3 to destination 10.0.0.10 on port 443. What action will the firewall take?
Select an answer first - 24
A firewall has a default-allow policy. The administrator wants to block all traffic from a specific subnet (192.168.5.0/24) to the internal network, but allow all other traffic. Which rule should be added?
Select an answer first - 25
A firewall rule is configured to block all traffic destined for TCP port 23. Which service is being blocked?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “100-150” is a trademark of its owner, used for identification only.