When considering the design of the E-Commerce topology which of the following are true?
A.
One-armed SLB design with multiple security contexts removes the need for a separate firewall
in the core layer
B.
Two-firewall-layer SLB design considers the aggregation and access layers to be trusted
zones, requiring no security between the web, application, and database zones
C.
One-armed SLB design with two firewall layers ensures that non load-balanced traffic still
traverses the ACE so that the health and performance of the servers is still being monitored
D.
In all cases there will be configuration requirements for direct access to any servers or for
nonload-balanced sessions initiated by the servers
AA firewall context is also placed logically in the Layer 2 path before traffic reaches the
MSFC, eliminating the need for a separate firewall in the core layer. There is firewall protection
from the outside, internally, and for each DMZ. The MSFC is on a secure internal
segment with protection from each connected network.