
CiscoCertified CyberOps Associate
Domain 4Objective 3
4.3 Compare Deep Packet Inspection with Packet Filtering and Stateful Firewall Operation 200-201 Practice Questions (Page 5)
Part of the 4.0 Network Intrusion Analysis domain, which accounts for 20% of the 200-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
4concepts
20%of the exam
Questions 21–25
- 21
A firewall administrator needs to block all inbound traffic to a specific internal server on TCP port 3389 (RDP) from the internet, while still allowing internal users to initiate RDP connections to that server from within the LAN. Which rule set achieves this?
Select an answer first - 22
A security architect is designing a defense-in-depth strategy for a financial institution. The strategy must include multiple layers of inspection to protect against advanced threats. The architect is considering placing a packet-filtering firewall, a stateful firewall, and a deep packet inspection device in series. Which statement best describes the security benefit of this layered approach?
Select an answer first - 23
How does a stateful firewall make filtering decisions?
Select an answer first - 24
Which characteristic is typical of a packet filtering firewall?
Select an answer first - 25
A network administrator is configuring a firewall for a small office that only needs to allow web browsing and email. The administrator wants to minimize cost and complexity. Which firewall approach is most appropriate for this environment?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-201” is a trademark of its owner, used for identification only.