When configuring an application-aware firewall on a WAN Edge via vManage, what inspection does the 'inspect' action perform?
Choose an answer
Tap an option to check your answer.
Correct answer: stateful inspection for TCP and UDP.
Why this is the answer
The inspect action in an application-aware firewall on a Cisco SD-WAN WAN Edge performs stateful inspection for both TCP and UDP traffic. Stateful inspection tracks the state of active connections, ensuring that only legitimate return traffic is allowed back into the network. For TCP, this involves tracking sequence numbers and flags. For UDP, while connectionless, stateful inspection still tracks the flow based on source/destination IP and port, allowing expected return traffic. Incorrect options: Layer 7 inspection for TCP and Layer 4 inspection for UDP: While application-aware firewalls can perform Layer 7 inspection, the inspect action itself primarily refers to stateful inspection, which operates at Layer 3/4. stateful inspection for TCP and stateless inspection of UDP: The inspect action applies stateful principles to UDP flows as well, even if UDP is connectionless. IPS inspection for TCP and Layer 4 inspection for UDP: IPS (Intrusion Prevention System) is a separate security function, not what the basic inspect action primarily denotes.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed