Infrastructure ACLs on Cisco IOS Software: True Statements and Benefits

Which Two Statements about Infrastructure ACLs on Cisco IOS Software are True?

Prev Question Next Question

Question

Which two statement about Infrastructure ACLs on Cisco IOS software are true? (Choose two.)

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

BD.

Infrastructure ACLs (Access Control Lists) are used to control the traffic that is handled by the infrastructure of the network, such as routers and switches. Here are the explanations for each statement:

A. Infrastructure ACLs are used to block-permit the traffic in the router forwarding path: This statement is true. Infrastructure ACLs can be used to control the traffic that flows through the router, including traffic that is being forwarded through the router. For example, an infrastructure ACL can be applied to an interface to permit or block specific types of traffic based on the source, destination, or protocol used.

B. Infrastructure ACLs are used to block-permit the traffic handled by the route processor: This statement is also true. Infrastructure ACLs can be used to control the traffic that is processed by the route processor of a router. This includes traffic that is destined for the router itself, such as management traffic, as well as transit traffic that is being routed through the router.

C. Infrastructure ACLs are used to block-permit the transit traffic: This statement is not entirely accurate. While infrastructure ACLs can be used to control transit traffic, they are not limited to just transit traffic. They can be used to control any traffic that is being handled by the infrastructure of the network, including traffic that is destined for the router or traffic that is being forwarded through the router.

D. Infrastructure ACLs only protect device physical management interface: This statement is false. While infrastructure ACLs can be used to protect management interfaces, they are not limited to just management interfaces. They can be applied to any interface on the router, including those used for forwarding traffic. Additionally, infrastructure ACLs can be used to protect other network devices, such as switches or firewalls.

In summary, Infrastructure ACLs are an important tool for network administrators to control and secure the traffic that is handled by the infrastructure of the network. They can be used to block or permit traffic in the router forwarding path or the traffic handled by the route processor, and can protect any interface on the router, not just the management interface.