And secondly, 
Why in the same question that doesn't have any specific requirements of
where to disable proxyarp feature Yusuf disables it on the outside interface
only?

Question 8.2: Preventing unauthorized connections (2 points)
Configure the ASA1/abc1 context to prevent unauthorized connections, meeting
all the following requirements:

-       Configure the ASA1/abc1 context to send TCP resets (the TCP RST flag
in the TCP header) to the denied host for any inbound TCP sessions that are
denied by the firewall.
-       In addition, configure the ASA1/abc1 context to disable the proxy
ARP function and stop responding to any ARP request with its own MAC
address, thus limiting exposure of its MAC address.

And the answer is 

ASA1/abc1# show run sysopt
sysopt noproxyarp outside

Eugene
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to