Which ACLs do you implement on your ASA to block the WannaCry attack on your perimeter ASA firewall?
Q70.WannaCry uses the SMB protocol {TCP 445; UDP 137; TCP 139} to propagate through the network.
Which ACLs do you implement on your ASA to block the WannaCry attack on your perimeter ASA firewall?
A . Implement the following ACLs on your ASA
access-list global_acl extended deny tcp eq 445 any eq 445
access-list global_acl extended deny tcp any eq 139 any eq 139
access-list global_acl extended deny udp any eq 138 any eq 138
access-list global_acl extended deny udp any eq 139 any eq 139
access-group global global_acl
B . Implement the following ACLs on your ASA
access-list outside_in extended deny tcp any any eq 445
access-list outside_in extended deny tcp any any eq 139
access-list outside_in extended deny udp any any eq 138
access-list outside_in extended deny udp any any eq 139
access-list outside_in in interface outside
C . Implement the following ACLs on your ASA
access-list global_acl extended deny tcp any any eq 445
access-list global_acl extended deny tcp any any eq 139
access-list global_acl extended deny udp any any eq 138
access-list global_acl extended deny udp any any eq 139
access-list global_acl global
D . Implement the following ACLs on your ASA
access-list global_acl extended deny tcp any any eq 445
access-list global_acl extended deny tcp any any eq 139
access-list global_acl extended deny udp any any eq 138
access-list global_acl extended deny udp any any eq 139
access-group global_acl global
E . Implement the following ACLs on your ASA
access-list global_acl extended deny tcp eq 445 any eq 445
access-list global_acl extended deny tcp any eq 139 any eq 139
access-list global_acl extended deny udp any eq 138 any eq 138
access-list global_acl extended deny udp any eq 139 any eq 139
access-group global_acl global
Answer: D
Latest 400-251 Dumps Valid Version with 124 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund