Which action is considered a best practice for the Cisco ASA firewall?

Which action is considered a best practice for the Cisco ASA firewall?
A. Use threat detection to determine attacks
B. Disable the enable password
C. Disable console logging
D. Enable ICMP permit to monitor the Cisco ASA interfaces
E. Enable logging debug-trace to send debugs to the syslog server

cisco-exams

3 thoughts on “Which action is considered a best practice for the Cisco ASA firewall?

  1. Vadim is correct, Cisco website has specified best practice is to disable console logging so the answer should be C

  2. Correct answer is C.
    Best practice: Ensure console logging is disabled or set to critical. Although useful for troubleshooting from the console port, it is possible that excessive log messages on the console could make it impossible to manage the device, even from the console.
    Command:
    no logging console
    – or –
    logging console critical

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.