Home
Exams
Microsoft
AI-102 (Designing and Implementing)
AI-900 (AI Fundamentals)
AZ-104 (Administrator)
AZ-140 (Configuring and Operating)
AZ-204 (Developing Solutions)
AZ-305 (Designing Infrastructure Solutions)
AZ-400 (DevOps Solutions)
AZ-500 (Security Technologies)
AZ-700 (Designing and Implementing)
All Microsoft Exams
Amazon
CLF-C01 (Cloud Practitioner)
DBS-C01 (Database - Specialty)
DVA-C01 (Developer Associate)
SCS-C01 (Security - Specialty)
SAA-C02 (Solutions Architect Associate)
SAA-C03 (Solutions Architect Associate)
SAP-C01 (Solutions Architect Professional)
SOA-C02 (Certified SysOps Administrator Associate)
DOP-C01 (DevOps Engineer Professional)
All Amazon Exams
Cisco
200-201 (CBROPS)
200-301 (CCNA)
200-901 (DEVASC)
300-410 (ENARSI)
300-415 (ENSDWI)
300-420 (ENSLD)
300-425 (ENWLSD)
300-430 (ENWLSI)
300-715 (SISE)
350-401 (ENCOR)
350-501 (SPCOR)
350-601 (DCCOR)
350-701 (SCOR)
350-801 (CLCOR)
400-007 (CCDE)
All Cisco Exams
CompTIA
220-1101 (A+ Core 1)
220-1102 (A+ Core 2)
CAS-004 (Advanced Security Practitioner)
CS0-002 (CySA+)
CV0-003 (Cloud+)
FC0-U61 (IT Fundamentals)
N10-008 (Network+)
PK0-004 (Project+)
PT0-002 (PenTest+)
SK0-005 (Server+)
SY0-601 (Security+)
XK0-004 (Linux+)
All CompTIA Exams
Google
Associate Cloud Engineer
Cloud Digital Leader
Professional Cloud Architect
Professional Cloud Security Engineer
Professional Data Engineer
All Google Exams
Huawei
H11-851 (HCNA-VC)
H12-211 (HCIA Routing&Switching)
H12-221 (HCNP-RS-IERN)
H12-224 (HCNP-RS Fast Track)
H12-711 (HCNA-Security-CBSN)
H13-612 (HCNA-Storage-BSSN)
H13-629 (HCIE-Storage)
All Huawei Exams
Python
Python Programming (PCAP)
All Python Exams
Juniper
JN0-104 (JNCIA-Junos)
JN0-251 (JNCIA-MistAI)
All Juniper Exams
Fortinet
NSE4_FGT-7.0 (FortiOS 7.0)
NSE4_FGT-7.2 (FortiOS 7.2)
NSE5_FAZ-7.0 (FortiAnalyzer 7.0)
NSE5_FCT-7.0 (FortiClient EMS 7.0)
NSE5_FMG-7.0 (FortiManager 7.0)
NSE7_EFW-7.0 (Enterprise Firewall 7.0)
NSE7_SDW-7.0 (SD-WAN 7.0 )
NSE8_812 (Written Exam)
All Fortinet Exams
Labs
New
CCNA 200-301
Introduction
IOS Operating System
IPv4 Address Configure Serial and Loopback Interfaces
IPv6 Address Configuration, Verification, and Troubleshooting
IPv6 Address Autoconfiguration and EUI-64
Understanding ARP and Proxy ARP
Configuring Standard VLANs
Configuring VTP Clients and Servers
Configuring VTP Transparent Mode
Securing VTP Domains
Switch Access Port Security
Advanced Switch Access Port Security
Advanced Static Switch Access Port Security
Disabling Auto-negotiation of Trunking
Configuring Dynamic Trunking
Configuring Default Gateways
Cisco Discovery Protocol (CDP)
Configuring LLDP on Cisco Devices
Configuring Errdisable Recovery
Configuring Inter-VLAN Routing with Router on a Stick (RoaS)
Inter-VLAN Routing Using Switched Virtual Interfaces (SVI)
Configuring Static Routing via Ethernet Interfaces
Configuring Static Routing via IP addresses
Configuring and Naming Static Routes
Configuring Default Static Routes
Configuring IPv6 Static Routes
Configuring IPv6 Default Routes
Configuring IP Floating Static Routes
Configuring RIP Version 2
RIPv2 Network Summarization Configuration
Toolbox
New
IPv4 Subnet Calculator
IPv4 Wildcard Mask Calculator
HTML Encoder and Decoder
URL Encoder and Decoder
Random Password Generator
Net Sec Tools
New
Cisco Packet Tracer
GNS3
EVE-NG
Wireshark
Postman
Nmap
Curl
Nessus
Burp Suite
Sign Up
Login
Dark Mode
Which action is required for a firewall configuration on a Mobile and Remote Access through Cisco Expressway deployment?
Cisco 350-801 Exam
Questions Number:
66
out of
150
Questions
44.00%
Question 66
Which action is required for a firewall configuration on a Mobile and Remote Access through Cisco Expressway deployment?
A. The external firewall must allow these inbound connections to Expressway: SIP: TCP 5061: HTTPS: TCP 8443; XMPP: TCP 5222; Media: UDP 36002 to 59999.
B. The internal firewall must allow these inbound and outbound connections between Expressway-׀¡ and Expressway-E: SIP: HTTPS (tunneled over SSH between ׀¡ and E): TCP 2222: TCP 7001; Traversal Media: UDP 2776 to 2777 (or 36000 to 36011 for large VM/appliance); XMPP: TCP 7400.
C. Do not use a shared address for Expressway-E and Expressway-׀¡, as the firewall cannot distinguish between them. If static NAT for IP addressing on Expressway-E is used, ensure that any NAT operation on Expressway-׀¡ does not resolve the same traffic IP address. Shared NAT is not supported.
D. The traversal zone on Expressway-׀¡ points to Expressway-E through the peer address field on the traversal zone, which specifies the Expressway-E server address. For dual NIC deployments, set the Expressway-E address using an FQDN that resolves the IP address of the internal interface.
Show Answer
Log In to Comment
Submit
Previous Questions
Next Questions
Question number:
1
-
150
Direct Access