A network engineer is extending a user segment through an FTD device for traffic inspection without creating another IP subnet.
How is this accomplished on an FTD device in routed mode?
Click on the arrows to vote for the correct answer
A. B. C. D.A.
When extending a user segment through an FTD device for traffic inspection without creating another IP subnet on an FTD device in routed mode, the method used is by using a BVI and creating a BVI IP address in the same subnet as the user segment.
A BVI or Bridge Virtual Interface is a virtual interface that allows an FTD device to bridge two interfaces together. A BVI is an interface that is created to assign an IP address to a bridge. By assigning an IP address to the BVI, the device can communicate with other devices in the network.
To create a BVI, you need to perform the following steps:
Once the BVI is created and configured, traffic will flow through the BVI for inspection without the need to create another IP subnet.
Therefore, the correct answer is B. by using a BVI and creating a BVI IP address in the same subnet as the user segment.