Zone-based Firewall SDM Simlet
Within the “sdm-inspect” policy map, what is the action assigned to the traffic class “sdm-invalid-src”, and which traffic is matched by the traffic class “sdm-invalid-src” ? (Choose two)
A.
traffic matched by ACL 105
B.
traffic matched by the nested �sdm-cls-insp-traffic� class map
C.
drop/log
D.
traffic matched by ACL 104
Explanation:
Under the “Firewall and ACL” tab, search for the “sdm-inspect” policy map we can see the access list 105 is used by this policy map. We can also see the action assigned to the traffic class “sdm-invalid-src” (drop/log).Notice: that the Access list number can be also seen in the C3PLClass MapInspection and the Drop/log action can be seen in the C3PLPolicy MapProtocol Inspection group.
Correct answer is