Comments inline.

With regards
Kings

On Sat, Jan 8, 2011 at 9:52 AM, kamran shakil <[email protected]>wrote:

> 1> "IF my ASA firewall is in transparent mode, can i have DMZ ??? "
>
Transparent support only two interfaces

>
> 2> "How can I filter an EMAIL ID ([email protected]) using ASA firewall if
> that email user is sending an attachment of 5mb , it should be discarded and
> should not be passed thru the firewall , whether from inside or from
> outside."
>
Put the esmtp policy map in th global policy with "match sender-address
regex" and  match body length gr

>
> 3. Which RFC dictates about DoS attacks , RFC3330 or RFC2827 ? Choose One~
>
You should all of them - RFC 1918, 3330, 2827, 2407 and 3704

>
> 4. FAILOVER interface can be a subinterface or not ?   "i never tried this
> thign with a subinterface, always used real physical interface of ASA"
>
Yes it can

>
>
> waiting replies on this from EXPERTS ~
>
> kamran.
>
> _______________________________________________
> For more information regarding industry leading CCIE Lab training, please
> visit www.ipexpert.com
>
>
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to