Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CCIE Security

Domain 1Objective 1

1.1 Deployment Modes on Cisco ASA and Cisco FTD CCIE-SECURITY Practice Questions (Page 3)

Part of the 1.0 Perimeter Security and Intrusion Prevention domain, which accounts for 20% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–1 from this objective — we provide 53 practice questions to prepare you well beyond it. (estimate)

53questions here
11free pages
7concepts
20%of the exam

Questions 11–15

  1. 11foundation · easy

    In single context mode, how many security policies can be configured on the device?

    Select an answer first
  2. 12foundation · easy

    What is a characteristic of multi-context mode on a Cisco ASA?

    Select an answer first
  3. 13foundation · easy

    In multi-context mode, what is the role of the 'admin context'?

    Select an answer first
  4. 14foundation · easy

    What is multi-instance mode on Cisco FTD?

    Select an answer first
  5. 15application · easy

    A company is deploying a new ASA firewall at the edge of its network. The firewall must connect to the ISP router on one interface and to the internal core switch on another interface, with each interface in a different IP subnet. The security team needs to perform NAT for internal users accessing the internet. Which deployment mode should be used?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.