Which configuration component is used in a firewall security policy?
Choose an answer
Tap an option to check your answer.
Correct answer: numbered sequences of match-action pairs.
Why this is the answer
In Cisco SD-WAN, firewall security policies are defined using numbered sequences of match-action pairs. These sequences process traffic based on criteria (match) and then apply a specific action (e.g., permit, deny, log). The numbered sequence dictates the order of evaluation, with the first match determining the action. Intrusion prevention policies and URL filtering policies are distinct security features that can be integrated or applied alongside firewall policies, but they are not the fundamental structural component of a firewall policy itself. Application match parameters are part of the "match" criteria within a match-action pair, but they are not the overarching configuration component.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed